Summary
Serco is a company providing services across defense, citizen services, and transportation. The Experienced DevSecOps Engineer will integrate security practices into the DevOps lifecycle by designing secure CI/CD pipelines, automating cloud infrastructure, integrating security tools, and collaborating with development, operations, and security teams.
Responsibilities
- Design, implement, and maintain secure CI/CD pipelines
- Integrate security tools and practices into development and deployment workflows (e.g., SAST, DAST, container scanning)
- Collaborate with development, operations, and security teams to ensure secure software delivery
- Automate infrastructure provisioning and configuration using Infrastructure as Code (IaC) tools such as Terraform or CloudFormation
- Monitor systems for security vulnerabilities and respond to incidents
- Conduct threat modeling and risk assessments for new and existing systems
- Stay current with emerging security threats, technologies, and best practices
Skills
- U.S. Citizenship required
- Ability to obtain DoW Secret security clearance
- Bachelor's degree
- Minimum 2 years of experience in DevOps, Security Engineering, Software Engineering, or Cloud Engineering
- Proficiency with Azure
- Experience with any of the following CI/CD tools:
- Jenkins
- GitLab CI
- GitHub Actions
- Cloud-Native
- Familiarity with containerization/orchestration with Docker and Kubernetes
- Strong scripting skills
- The ability to travel up to 10%. (CONUS)
- Certifications such as AWS Certified DevOps Engineer, Microsoft DevOps Engineer Expert, Certified Cloud Native Security Expert (CCNSE), or equivalent experience
- Experience with secrets management tools (e.g., Azure Key vault, AWS Secrets Manager)
- Familiarity with zero-trust architecture and secure software supply chain practices
- Knowledge of security frameworks and compliance standards (e.g., NIST, ISO 27001, SOC 2)
- Strong scripting skills (e.g., Python, Bash)
Qualifications
Must Haves
- U.S. Citizenship required
- Ability to obtain DoW Secret security clearance
- Bachelor's degree
- Minimum 2 years of experience in DevOps, Security Engineering, Software Engineering, or Cloud Engineering
- Proficiency with Azure
- Experience with any of the following CI/CD tools:
- Jenkins
- GitLab CI
- GitHub Actions
- Cloud-Native
- Familiarity with containerization/orchestration with Docker and Kubernetes
- Strong scripting skills
- The ability to travel up to 10%. (CONUS)
Nice to Haves
- Certifications such as AWS Certified DevOps Engineer, Microsoft DevOps Engineer Expert, Certified Cloud Native Security Expert (CCNSE), or equivalent experience
- Experience with secrets management tools (e.g., Azure Key vault, AWS Secrets Manager)
- Familiarity with zero-trust architecture and secure software supply chain practices
- Knowledge of security frameworks and compliance standards (e.g., NIST, ISO 27001, SOC 2)
- Strong scripting skills (e.g., Python, Bash)
Benefits
- Performance-based incentives
- Annual bonuses or long-term incentive opportunities may be available for eligible positions
- Comprehensive health coverage
- Health savings accounts
- Medical, dental, and vision insurance for full-time employees
- Robust vacation and sick leave benefits
- Flexible work arrangements where permitted by role or contract
- 100% remote work arrangement
- 401(k) plan that includes employer matching funds
- Tuition reimbursement program
- Life insurance and disability coverage
- Optional pet insurance, home and auto insurance, additional life and accident insurance, critical illness insurance, group legal, and ID theft protection
- Birth, adoption, and parental leave benefits
- Employee Assistance Plan
- Time off under the Colorado Healthy Families and Workplaces Act for eligible Colorado residents