Lumen Solutions Group Inc. · 4 months ago
DevSecOps Engineer
Lumen Solutions Group Inc. is seeking a highly skilled DevSecOps Engineer to lead the integration of security into cloud-native development and operations workflows. This role involves designing secure CI/CD pipelines, automating infrastructure provisioning, and collaborating with teams to enforce security standards.
Information Technology & Services
Responsibilities
Design and implement secure CI/CD pipelines using AWS Code Pipeline, Code Build, and Code Deploy
Configure and manage blue/green deployments for zero-downtime releases
Automate infrastructure provisioning using Terraform and AWS CDK (Python)
Integrate security scanning tools (SAST, DAST, SCA) into build and deployment workflows
Collaborate with development and operations teams to enforce secure coding and deployment standards
Monitor and respond to vulnerabilities across applications and infrastructure
Ensure compliance with security policies and cloud governance frameworks
Maintain documentation for security processes, configurations, and deployment strategies
Qualification
Required
Strong hands-on experience with AWS services, including: Code Pipeline, Code Build, Code Deploy, IAM, EC2, Lambda, S3, CloudFormation
Proficiency in Python, especially for infrastructure automation using AWS CDK
Experience with Terraform for infrastructure-as-code
Familiarity with Bitbucket for source control and pipeline management
Knowledge of containerization and orchestration (Docker, Kubernetes)
Experience with security tools (e.g. Checkmarx, SonarQube)
Understanding of security frameworks (e.g., OWASP, NIST, CIS)
Encourage Contractors trained in SAFe
Request that contractors have camera available and on majority of the time
Set expectations that they are part of Agile team on which we need them to embrace self-management and self-organization in terms of their iteration commitments, capacity planning, capacity allocation, etc
Preferred
AWS Certified DevOps Engineer
Certified DevSecOps Professional (CDP)
CISSP or equivalent security certification