SIGN IN
Application Security/ DevSecoOps Engineer jobs in United States
cer-icon
Apply on Employer Site
company-logo

TEKsystems · 9 hours ago

Application Security/ DevSecoOps Engineer

TEKsystems is a leading provider of business and technology services, and they are seeking an Application Security/ DevSecOps Engineer to oversee security within their development operations. This role involves ensuring a security-first mindset while working on the migration of CI/CD practices and building security frameworks for DevOps Engineers.
Information Technology
check
H1B Sponsor Likelynote

Responsibilities

Champion Secure-by-Design and Defense-in-Depth principles throughout the software development lifecycle
Apply OWASP (e.g., Top 10, ASVS) and MITRE ATT&CK/CWE frameworks to evaluate and communicate threats and control gaps
Code Review
SAST and SCA Auditing
CNAPP Auditing
Integration of Scanning Tools into CI/CD Pipeline
Act as SME in various cross-functional team calls
Prioritization of backlog and sprint selection for security items
Security oversight of the continuous delivery, continuous integration (CI/CD) pipeline
Combination of static and dynamic application security testing (SAST/DAST), to identify code bugs and application issues
Software composition analysis (SCA) to track all open-source components in the developer’s code base
Threat modelling to identify architectural design faults and potentially exposed targets of attack
Evaluate and advise on service deployment into a microservices architecture (Kubernetes), and operational functions relative to security best practices and compliance requirements
Maintain security issue tracking and reporting using Azure DevOps (ADO) currently prior to moving to GitHub
Develop and maintain documentation of target state designs and security roadmaps

Qualification

Application securitySAST/SCA technologiesCloud security solutionsPenetration testingAWSAzure CloudKubernetesCode reviewThreat modelingManual security testingDocumentation

Required

Champion Secure-by-Design and Defense-in-Depth principles throughout the software development lifecycle
Apply OWASP (e.g., Top 10, ASVS) and MITRE ATT&CK/CWE frameworks to evaluate and communicate threats and control gaps
Code Review
SAST and SCA Auditing
CNAPP Auditing
Integration of Scanning Tools into CI/CD Pipeline
Act as SME in various cross-functional team calls
Prioritization of backlog and sprint selection for security items
Security oversight of the continuous delivery, continuous integration (CI/CD) pipeline
Combination of static and dynamic application security testing (SAST/DAST), to identify code bugs and application issues
Software composition analysis (SCA) to track all open-source components in the developer's code base
Threat modelling to identify architectural design faults and potentially exposed targets of attack
Evaluate and advise on service deployment into a microservices architecture (Kubernetes), and operational functions relative to security best practices and compliance requirements
Maintain security issue tracking and reporting using Azure DevOps (ADO) currently prior to moving to GitHub
Develop and maintain documentation of target state designs and security roadmaps
Application security
Penetration test

Preferred

Reading / reviewing .NET / C#, JavaScript / TypeScript
Azure or AWS Cloud
Azure DevOps or similar SCM / bug tracking
SAST / SCA technologies
CNAPP or other cloud posture tools (CSPM)
Manual security testing (pen testing) of web applications (burp suite)

Benefits

Medical, dental & vision
Critical Illness, Accident, and Hospital
401(k) Retirement Plan – Pre-tax and Roth post-tax contributions available
Life Insurance (Voluntary Life & AD&D for the employee and dependents)
Short and long-term disability
Health Spending Account (HSA)
Transportation benefits
Employee Assistance Program
Time Off/Leave (PTO, Vacation or Sick Leave)

Company

TEKsystems

company-logo
At TEKsystems, they understand people. Every year they deploy over 80,000 IT professionals at 6,000 client sites across North America,

H1B Sponsorship

TEKsystems has a track record of offering H1B sponsorships. Please note that this does not guarantee sponsorship for this specific role. Below presents additional info for your reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2025 (46)
2024 (52)
2023 (33)
2022 (22)
2021 (36)
2020 (53)

Funding

Current Stage
Late Stage

Leadership Team

leader-logo
Ryan Skains
Vice President, TEKsystems Global Services
linkedin
Company data provided by crunchbase