Fortinet · 1 month ago
Sr. Full Stack Software Developer
Fortinet is a leading cybersecurity company that secures enterprises and government organizations globally. They are seeking a DevOps Software Developer to drive secure, automated, and compliant software delivery across hybrid infrastructure, ensuring the quality and integrity of software artifacts while adhering to ISO 27001 and NIST standards.
Cyber SecurityMobileNetwork SecuritySecurity
Responsibilities
Build & Release Engineering
Design, develop, and maintain automated build and release pipelines for multi-tier applications
Manage version control systems and branching strategies; maintain artifact repositories (e.g., Jfrog Artifactory)
Develop and optimize build scripts and automation tools using Python, Bash, CMake, or Gradle
Implement build verification, automated testing, and code signing for secure releases
Ensure traceability and reproducibility of builds
DevOps & Automation
Architect and maintain CI/CD pipelines with Jenkins, GitLab CI, or GitHub Actions
Use Infrastructure as Code (IaC) tools such as Terraform, Ansible, or Terraform for consistent infrastructure deployment
Automate environment configuration, monitoring, and policy enforcement to meet compliance standards
Integrate security and compliance validation into CI/CD workflows
Support hybrid deployments across on-prem, virtualized, and cloud environments
On-Prem & Virtualization Infrastructure
Manage and maintain on-premises servers and virtualization platforms (VMware vSphere/ESXi, KVM, or OpenStack)
Automate provisioning and orchestration for VMs, containers, and networks
Monitor system performance, resource utilization, and capacity planning
Implement network segmentation, secure connectivity, and identity/access controls in compliance with ISO 27001 Annex A controls
Participate in infrastructure hardening, patch management, and disaster recovery planning
Software Supply Chain Risk Management (SCRM)
Implement secure software supply chain practices per NIST SP 800-161r1 and NIST SP 800-171
Maintain and validate Software Bills of Materials (SBOMs) using tools like BlackDuck
Identify and mitigate vulnerabilities in open-source and third-party dependencies
Enforce artifact provenance, cryptographic integrity checks, and chain-of-custody documentation across builds
Contribute to secure procurement and vendor assurance processes under ISO 27001 and NIST frameworks
Compliance & Security
Implement and maintain compliance with ISO 27001, NIST SP 800-161 and NIST SP 800-171
Integrate security baselines, vulnerability management, and code assurance tools into the DevOps workflow
Maintain audit trails, change records, and compliance documentation for ISO/NIST audits
Collaborate with QA, Security, and Compliance teams to continuously improve the secure development lifecycle (SDLC)
Qualification
Required
Bachelor's degree in Computer Science, Software Engineering, or related field, or equivalent experience
4–8+ years in DevOps, Build/Release Engineering, or Software Development roles
Strong understanding of SDLC, DevSecOps, and CI/CD principles
Proficiency in programming: Python, Bash, Go, or JavaScript
Experience with CI/CD platforms (Jenkins, GitLab CI, Azure DevOps) and IaC tools (Terraform, Ansible)
Practical experience managing on-premises and virtualized infrastructure (VMware, Hyper-V, KVM)
Working knowledge of ISO 27001, and NIST 800-series compliance frameworks
Familiarity with network security, system hardening, and access management across hybrid environments
Preferred
Experience with Kubernetes, container orchestration, and hybrid cloud integration
Knowledge of FedRAMP, CMMC, or other federal cybersecurity frameworks
Familiarity with PKI, code signing, and secure key management
Experience integrating SAST, DAST, dependency scanning, and compliance automation tools
Contribution to continuous improvement of secure SDLC and DevSecOps maturity models
Benefits
Medical
Dental
Vision
Life and disability insurance
401(k)
11 paid holidays
Vacation time
Sick time
Comprehensive leave program
Company
Fortinet
Fortinet is a provider of network security appliances that include firewalls, security gateways, and complementary products. It is a sub-organization of Fortinet Federal.
H1B Sponsorship
Fortinet has a track record of offering H1B sponsorships. Please note that this does not
guarantee sponsorship for this specific role. Below presents additional info for your
reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2025 (200)
2024 (152)
2023 (155)
2022 (175)
2021 (139)
2020 (161)
Funding
Current Stage
Public CompanyTotal Funding
$89MKey Investors
Meritech Capital PartnersDEFTA Partners
2009-11-18IPO
2004-03-03Series Unknown· $50M
2003-08-29Series D· $30M
Recent News
2026-01-12
2026-01-11
Company data provided by crunchbase