DevSecOps Engineer (Senior/Lead) ID28949

Department: Engineering
Specialization: DevOps
Experience: Lead Senior
Technologies: DevOps
Locations: Colombia
Client: Redwood
Special referral bonus: No
Hot position?: Hot
Technical flow: DevOps
Engineering technical flow: DevOps
Non-engineering technical flow: none
  • What you will do

  • Security Integration: Embed security practices into CI/CD pipelines using tools like Bamboo, Jenkins, GitLab CI/CD, or Azure DevOps; Ensure secure coding practices by integrating SAST, DAST, and dependency scanning tools (e.g., Veracode, Checkmarx, OWASP ZAP);
  • Automation of Security Controls: Automate vulnerability scans, configuration checks, and compliance validation using tools like Ansible, Terraform, or CloudFormation; Develop automated workflows for threat detection and remediation using tools like AWS Lambda or Azure Functions;
  • Compliance & Governance: Align DevSecOps processes with PCI DSS, HIPAA, ISO 27001, and GDPR standards; Ensure proper documentation of security policies, audit findings, and compliance reports; Conduct regular risk assessments and gap analyses to identify areas for improvement;
  • Collaboration & Mentorship: Collaborate with DevOps, security, and development teams to promote a culture of security-first practices; Provide mentorship to junior team members and act as the subject matter expert for DevSecOps;
  • Monitoring & Incident Management: Implement security monitoring solutions (e.g., AWS CloudWatch, Azure Sentinel, Splunk) to detect and respond to security threats; Establish incident response workflows and playbooks to ensure quick mitigation of breaches and vulnerabilities;
  • Observability: Implement methodology to better understand the internal state of software systems/interactions; Create solutions to evolve data capture/analysis through various characterization: high cardinality and high dimensionality; Develop methods to explore data in real time;
  • Tools & Frameworks: Leverage tools like Docker, Kubernetes, Vault, and Nexus for secure containerization and secrets management; Apply frameworks like NIST CSF, OWASP, STIG and CIS Benchmarks to standardize security controls;
  • Must haves

  • Education & Experience: Bachelor’s degree with 6–8 years in DevSecOps, security engineering, or related roles;
  • Technical Skills: Proficiency in CI/CD tools, cloud security (AWS/Azure), scripting (Python, Bash), and security automation;
  • Certifications: Preferred certifications include CISSP, CCSP, OSCP, or DevSecOps-specific credentials (e.g., DevSecOps Practitioner);
  • Upper-intermediate English level.

AgileEngine is one of the Inc. 5000 fastest-growing companies in the US and a top-3 ranked dev shop according to Clutch. We create award-winning custom software solutions that help companies across 15+ industries change the lives of millions.

If you like a challenging environment where you’re working with the best and are encouraged to learn and experiment every day, there’s no better place — guaranteed! 🙂

About the project

The benefits of joining us

Professional growth

Accelerate your professional journey with mentorship, TechTalks, and personalized growth roadmaps

Competitive compensation

We match your ever-growing skills, talent, and contributions with competitive USD-based compensation and budgets for education, fitness, and team activities

A selection of exciting projects

Join projects with modern solutions development and top-tier clients that include Fortune 500 enterprises and leading product brands

Flextime

Tailor your schedule for an optimal work-life balance, by having the options of working from home and going to the office – whatever makes you the happiest and most productive.

Your AgileEngine journey starts here

1

Test task

We will review your CV and send you a test task via email

2

Intro Call

Our recruitment team will reach you to discuss available opportunities

WFH or a comfy office? Why not both?

International Projects

3

Technical Interview

You will have an interview with your future team lead

Our geography

UTC-5
WASHINGTON DC USA
UTC-5
MIAMI USA
UTC-6
MEXICOMexico
UTC-5
ColombiaColombia
UTC-3
BrazilBrazil
UTC-3
ArgentinaArgentina
UTC+2
UkraineEurope
UTC+1
PolandEurope
UTC+0
PortugalPortugal
UTC+5:30
IndiaIndia

About AgileEngine

Founded as a dev tool vendor with a 2-person team

2010

Opened a dev center in Ukraine

2012

Pivoted into outsourced product development

2014

Launched mobile and UI labs

2015

Got our first Inc. 5000 award

2016

Opened a dev center in Argentina

2017

Became a top-3 ranked custom software developer in DC, Ukraine, and Argentina

2019

Became the #1 software development company to hire in 2020

2020

Opened new dev centers in Mexico and Colombia, counting 500+ experts

2021

How we lead

A company where experts grow, hone their skills, and do what they love, AgileEngine is guided by these principles:

Stay agile and embrace changes

Thrive in a results-driven culture with individual autonomy

Innovate with fellow experts in a no-blame environment

Learn from mistakes and move on

Foster mutual trust and support

Our geography

UTC-5
WASHINGTON DC USA
UTC-5
MIAMI USA
UTC-6
MEXICOMexico
UTC-5
ColombiaColombia
UTC-3
BrazilBrazil
UTC-3
ArgentinaArgentina
UTC+2
UkraineEurope
UTC+1
PolandEurope
UTC+0
PortugalPortugal
UTC+5:30
IndiaIndia

Apply for this position

Allowed Type(s): .pdf, .doc, .docx