Ranked among the largest public accounting firms in the United States, Cherry Bekaert provides digitally driven and industry-aligned solutions to elevate clients to market leaders
Azure DevSecOps Engineer
Location
United States
Posted
3 days ago
Salary
$111K - $147K / year
Seniority
Mid Level
No structured requirement data.
Job Description
Azure DevSecOps Engineer
Cherry Bekaert
Role Description We are seeking a highly skilled Azure DevSecOps Engineer to design, implement, and support secure, automated cloud infrastructure using Infrastructure as Code (IaC) principles. This role will be responsible for driving automation, embedding security into the software delivery lifecycle, and enabling scalable, compliant Azure environments. The ideal candidate combines deep expertise in Terraform, Azure DevOps, and CI/CD automation with strong knowledge of cloud security, governance, and operational support. Key Responsibilities - Infrastructure as Code (IaC) – Terraform Focus - Design, build, and maintain reusable Terraform modules for Azure infrastructure provisioning (networking, compute, identity, storage) - Ensure all infrastructure is version-controlled, auditable, and deployed via automated pipelines - Implement policy-as-code and security baselines within Terraform configurations - Perform code reviews and enforce IaC standards across engineering teams - DevSecOps & CI/CD Automation - Design and maintain secure CI/CD pipelines using Azure DevOps, GitHub Actions, or similar tools - Integrate automated security scanning (SAST, DAST, IaC scanning) into deployment pipelines - Build and support automated deployment orchestration (blue/green, canary, rollback strategies) - Automate provisioning, configuration, and deployment workflows to reduce manual effort - Azure Cloud Engineering - Architect, deploy, and manage secure Azure cloud environments - Implement governance controls including RBAC, Azure Policy, and identity management - Design scalable and resilient infrastructure aligned with business and security requirements - Optimize cloud environments for performance, cost, and reliability - Security & Compliance - Embed security controls and compliance checks into infrastructure and pipelines - Conduct vulnerability assessments and remediate risks proactively - Manage secrets, certificates, and keys using secure vault solutions (e.g., Azure Key Vault) - Ensure adherence to regulatory and organizational security standards - Automation Support & Operational Excellence - Provide automation and platform support for build, release, and infrastructure pipelines - Troubleshoot CI/CD, IaC deployments, and cloud infrastructure issues - Develop and maintain self-service automation tools for engineering teams - Monitor systems, respond to incidents, and continuously improve reliability - Collaboration & Enablement - Partner with Dev, Sec, and IT teams to integrate security into development workflows - Provide guidance and best practices on DevSecOps and IaC adoption - Support onboarding of applications into standardized DevSecOps pipelines - Document processes, patterns, and reusable frameworks Qualifications - 5+ years experience in DevOps / DevSecOps / Cloud Engineering - Strong hands-on experience with: - Terraform (required) - Azure (IaaS, PaaS, identity, networking) - CI/CD tools (Azure DevOps, GitHub Actions, Jenkins) - Experience implementing Infrastructure as Code in enterprise environments - Proficiency in scripting/automation (PowerShell, Bash, or Python) - Experience with security integration in CI/CD pipelines - Strong understanding of cloud security, IAM, and compliance frameworks Preferred Qualifications - Experience with: - Azure Kubernetes Service (AKS), containers, or microservices - Policy-as-code tools (OPA, Sentinel, Checkov) - Monitoring tools (Azure Monitor, Log Analytics, Prometheus) - Certifications: - Microsoft Azure certifications (e.g., AZ-400, AZ-500) - HashiCorp Terraform Associate - Experience in regulated environments a plus (SOX, SOC2, etc.) Key Skills - Infrastructure as Code (Terraform) - Azure DevOps / CI-CD automation - Cloud security & DevSecOps practices - Scripting & automation - Monitoring, troubleshooting, and incident response - Cross-team collaboration and communication What Success Looks Like - Fully automated, secure Azure infrastructure deployments - Reduced manual provisioning and faster release cycles - Embedded security controls across pipelines and IaC - Improved reliability and scalability of cloud platforms - Strong adoption of DevSecOps and automation practices across teams Benefits - Competitive compensation packages based on performance - Comprehensive, high-quality benefits program including: - Annual bonus - Medical, dental, and vision care - Disability and life insurance - Generous Paid Time Off - Retirement plans - Paid Care Leave - Flexibility to do impactful work and enjoy life outside of work - Opportunities to connect and learn from professionals from different backgrounds and cultures
Related Guides
Related Categories
Related Job Pages
More DevOps Engineer Jobs
Senior Cloud DevOps Engineer
OneStream SoftwareA comprehensive cloud-based platform to modernize the Office of the CFO.
• Develop and maintain Infrastructure-as-Code such as Terraform, PowerShell, ARM, Bicep, Bash, and YAML languages • Deliver high-quality implementations in a timely manner • Design and maintain CI/CD pipelines supporting secure, reliable, and repeatable deployments • Update technical documentation, workflows, and knowledge base articles • Build knowledge in focused areas of the OneStream platform and deployment stack • Participate in collaborative engineering, peer reviews, and knowledge sharing initiatives • Collaborate with other teams to define, estimate, and implement requirements for new automations or services needed for development • Apply software engineering best practices to infrastructure and automation development • Optimize cloud environments for scalability, reliability, and cost efficiency • Participate in troubleshooting and resolution of complex production issues across cloud platforms and services • Work with Compliance and Security teams to ensure compliance with required controls
• Champion a security-first mindset within Engineering to help set the security posture of our platform infrastructure — supply chain hardening, secrets management, IAM/IRSA, container image integrity, and vulnerability remediation across our AWS/EKS environment • Design and build automation that makes compliance evidence continuous, not manual — translating HITRUST controls into passing tests and structured outputs that flow into our compliance tooling (Vanta) • Embed security into the platform by default: make the secure path the easy path for application engineers, through guardrails, policy-as-code, and well-documented patterns • Partner with our Security team to translate threat assessments and control gaps into engineering proposals with clear scope, tradeoffs, and recommended paths forward • Lead platform security initiatives from design to operationalization — requirements, technical design, code and code review, deployment, and documentation • Contribute hands-on to the broader platform: CI/CD pipelines, container orchestration, observability, and developer tooling — this is an IC role, not a governance role • Participate in on-call rotation and own the systems you build, including production incidents • Mentor engineers on security practices and raise the security baseline across the team
Senior Reliability Operations Engineer
Serve RoboticsMeet the future of sustainable, self-driving delivery.
• Serve as the primary incident lead during your region’s daytime hours, coordinating technical investigations, centralizing communication, and engaging the appropriate engineering and SRE teams when escalation is required. • Respond to escalations from Tier 1 support, using runbooks, metrics, logs, and system diagnostics to investigate and remediate issues or determine when escalation to Tier 3 is necessary. • Develop and update runbooks, workflows, and operational documentation to ensure consistent and reliable responses to recurring issues, collaborating with product teams to expand coverage over time. • Write, maintain, and enhance automation scripts and tools that streamline common remediation steps, improve response times, and reduce manual operational overhead. • Use metrics, logs, and tracing tools (Grafana/Prometheus, GCP Monitoring, OpenTelemetry) to proactively identify problems, validate system behavior, and support continuous improvement of detection mechanisms. • Act as the central point of communication during active incidents, ensuring timely updates and clear routing to the correct product engineering and SRE stakeholders. • Collaborate with reliability and product teams to share insights, recommend improvements, and help refine processes that enhance the stability and operability of our systems. • Participate in a shared weekend on-call rotation to help maintain operational coverage for production systems, responding to incidents and escalations as needed and coordinating with engineering teams when issues arise. • Help establish operational best practices, refine workflows, and prepare the foundation for a broader reliability operations function.
• Lead incident investigations during your region’s daytime hours, providing timely updates, escalating appropriately, and supporting senior engineers leading the response. • Respond to escalations from Tier 1 support using established runbooks, metrics, logs, and diagnostics to remediate issues or escalate to Tier 3 when needed. • Update runbooks and operational documentation based on new issues, discoveries, and feedback, ensuring clarity and consistency across all procedures. • Run existing automations and collaborate with senior team members to enhance tooling and scripts that streamline troubleshooting and remediation tasks • Use observability tools such as Grafana/Prometheus, GCP Monitoring, and OpenTelemetry to interpret metrics, logs, and traces, helping identify anomalies and validate system performance. • Provide concise, accurate updates during incidents, ensuring information reaches the correct engineering and SRE contacts and supporting structured incident coordination. • Participate in discussions around root causes, share operational insights, and contribute to process improvements that enhance system stability and supportability. • Participate in a shared weekend on-call rotation to help maintain operational coverage for production systems, responding to incidents and escalations as needed and coordinating with engineering teams when issues arise. • Proactively strengthen workflows, adopt best practices, and build the foundation of the Reliability Operations function as it evolves.



