Public Service Enterprise Group (PSEG)

Cyber Security Analyst PSEG LI - DevSecOps Engineer

Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • BS degree or higher with 4+ years of experience in DevSecOps Engineering or equivalent experience in lieu of degree
  • Proven track record in building, securing, and maintaining CI/CD pipelines
  • Proficiency with CI/CD platforms like Jenkins, GitHub Actions, or Azure DevOps
  • Experience with Static Application Security Testing (SAST) and Dynamic Application Security Testing (DAST)
  • Demonstrated ability to implement API security solutions
  • Expertise in container security and managing secure artifact repositories
  • Deep background in securing public cloud platforms (AWS, Azure, GCP)

Responsibilities

  • Integrate security controls into CI/CD pipelines for secure delivery
  • Develop and maintain DevSecOps pipelines with security scanning and compliance checks
  • Implement automated security testing including SAST, SCA, and API security testing
  • Operationalize code security capabilities like code scanning and secret detection
  • Support container security practices including image scanning and repository management
  • Collaborate with teams to remediate vulnerabilities identified in automated security tooling
  • Provide training on secure coding practices and DevSecOps principles

Benefits

  • Opportunities for professional development and training
  • Flexible working options including remote work
  • Collaborative and inclusive company culture
  • Health and wellness programs
  • Retirement savings plan options
Full Job Description
Job Summary:

We are seeking an experienced DevSecOps Engineer who can build, integrate, and operationalize security within our DevOps processes and CI/CD pipelines. This role will focus on embedding security controls into the software development lifecycle, securing cloud infrastructure, and ensuring that applications and APIs meet enterprise security and compliance requirements.

Using a modern technology stack and agile approach, you will work closely with development, infrastructure, and cybersecurity teams to integrate automated security testing, vulnerability management, and compliance validation across our development and cloud environments.

Job Responsibilities:

  • Integrate security controls into CI/CD pipelines to enable secure and automated software delivery.
  • Develop and maintain DevSecOps pipelines that incorporate security scanning, code analysis, and compliance checks.
  • Implement automated security testing including:
    • Static Application Security Testing (SAST).
    • Software Composition Analysis (SCA).
    • Container image scanning.
    • API security testing.
  • Integrate and operationalize code security capabilities including code scanning, secret detection, and dependency vulnerability monitoring.
  • Implement and maintain API security controls using tooling to monitor and protect enterprise APIs.
  • Support container security practices including image scanning, artifact security, and repository management (e.g., Sonatype Nexus or equivalent).
  • Work with development teams to remediate vulnerabilities identified through automated security tooling and penetration testing.
  • Implement security best practices for cloud-native architectures, including infrastructure-as-code security validation.
  • Support cloud security posture management (CSPM) initiatives to ensure cloud environments remain compliant with security policies and regulatory requirements.
  • Develop automation scripts and tooling to support DevSecOps processes.
  • Collaborate with security, infrastructure, and development teams to maintain secure deployment pipelines and reduce application security risk.
  • Provide guidance and training to development teams on secure coding practices and DevSecOps principles.


Job Specific Qualifications:

  • BS degree or higher with 4+ years of professional experience in DevOps Engineering or DevSecOps Engineering.
  • In place of a degree, candidates with 8+ years of hands-on experience working with DevSecOps tooling, methodologies, and processes will be considered.
  • CI/CD Pipeline Security: Proven track record building, securing, and maintaining Continuous Integration and Continuous Deployment (CI/CD) pipelines with integrated security controls.
  • CI/CD Platforms: Proficiency with major CI/CD platforms (e.g., Jenkins, GitHub Actions, GitLab CI/CD, Azure DevOps).
  • Application Security Testing: Direct experience with Static Application Security Testing (SAST) and Dynamic Application Security Testing (DAST) methodologies.
  • API Security: Demonstrated ability implementing API security solutions and protecting application endpoints.
  • Container & Artifact Security: Expertise in container security (e.g., Docker, Kubernetes) and managing secure artifact repositories (e.g., JFrog Artifactory, Nexus).
  • Cloud Security: Deep background working with public cloud platforms (AWS, Azure, or GCP) and securing cloud infrastructure.
  • CSPM: Familiarity with Cloud Security Posture Management (CSPM) tools (e.g., Wiz, Prisma Cloud, Orca Security).
  • Core Competencies: Strong professional communication, cross-functional collaboration, and team-building skills.


Desired Skills:

  • Prior work with Infrastructure as Code (IaC) tools, such as Terraform, CloudFormation, or Ansible.
  • Ability to write scripts and automation workflows using Python, Bash, or similar programming languages.
  • Familiarity with automated code scanning, dependency scanning, and secret detection / secret management tools.
  • Direct exposure to Software Composition Analysis (SCA) tools and open-source vulnerability scanning.
  • History of supporting and scaling Secure Software Development Lifecycle (SSDLC) initiatives.
  • Practical knowledge supporting IT compliance and cloud governance frameworks, including NIST, CIS Benchmarks, or SOC 2.
  • Collaborative background interfacing with Vulnerability Management infrastructure or Penetration Testing teams.


Some positions at PSEG require access to information covered by the Department of Energy's regulation 10 CFR 810 (Part 810). If applicable, the successful applicant must prove they are: (1) a citizen or national of the USA; OR (2) a lawful permanent resident of the United States (Non-Conditional Permanent I-551 / Green Card / Permanent Resident Card holder); OR (3) a citizen, national, or permanent resident of a "Generally Authorized" destination on the attached list and not also a citizen, national, permanent resident of any country not listed; OR (4) a "Protected Individual" under the Immigration and Naturalization Act (8 U.S.C 1324b(a)(3)).

As an employee of PSEG Long Island, you should be aware that during storm/outage restoration efforts, you may be required to perform functions different from normal operations and work extended hours beyond your regular work schedule. You may also be required to work on premise or in an alternate location as directed by the company.

If you are a current PSEG employee and offered an opportunity with PSEG Long Island, you will be treated as a new hire. Please note that as a new hire to the Long Island subsidiary, your benefits will change and generally will be consistent with other similarly situated PSEG Long Island new hires. Similarly, for PSEG Long Island employees who accept job opportunities with PSEG or any of its subsidiaries (other than PSEG Long Island), their benefits will change and generally be consistent with other similarly situated new hires of that company.

About Public Service Enterprise Group (PSEG)

PSEG is a diversified energy company. Established in 1903, the company has long had a key role in fueling New Jersey's economy and supporting the state's quality of life. Public Service Electric and Gas (PSE&G) is New Jersey's largest provider of electric and gas service – serving 2.2 million electric customers and 1.8 million gas customers or nearly three out of every four people in the state. PSEG also owns and operates a diverse fleet of power plants with more than 13,000 megawatts of generating capacity located primarily in the Mid-Atlantic and Northeast regions and has solar energy facilities throughout the United States. Another member of the PSEG family of companies, PSEG Long Island, operates the electric transmission and distribution system of the Long Island Power Authority, with 1.1 million customers. PSEG has approximately 12,700 employees, who are carrying forward a proud tradition of dedicated service over more than 100 years.

Public Service Enterprise Group (PSEG) Careers

Join the dynamic team at Public Service Enterprise Group (PSEG), a leading integrated energy company with a proud history and a promising future. At PSEG, we are committed to innovation, leadership, and sustainability, making it an ideal place for professionals looking to make a significant impact.

Work You’ll Do

Embark on a fulfilling career journey with PSEG and be part of a culture that values diversity, leadership, and professional growth. Our team is dedicated to transforming the energy sector through innovative solutions and sustainable practices.

Explore Job Opportunities

PSEG offers a wide range of job opportunities across various disciplines. Whether you're a seasoned professional or a recent graduate, PSEG provides the perfect platform to enhance your skills and advance your career. Explore positions in engineering, customer service, IT, and more, where you can contribute to groundbreaking projects and initiatives.

Internship Programs

Kickstart your career with PSEG’s internship programs. Gain hands-on experience, work with seasoned professionals, and develop skills that will set you apart in the job market. Our internships offer a unique insight into the energy industry and provide a pathway to future employment opportunities within the company.

Benefits and Growth

At PSEG, we believe in nurturing our team's potential by offering competitive benefits, extensive diversity training, and opportunities for career advancement. We support our employees' professional and personal growth through continuous learning and leadership development programs.

Join Our Team

We are hiring! Search open positions that match your skills and interests. PSEG is looking for passionate, curious, and solution-driven team players. Prepare your resume, ace the interview, and join a company that is dedicated to your growth and success.

Networking and Professional Development

Enhance your career through PSEG’s robust professional networking opportunities. Connect with industry leaders, participate in seminars and workshops, and collaborate with a team that’s at the forefront of the energy sector’s transformation.

Stay Connected

Keep up to date with the latest at PSEG: - **Career Tips**: Get insider perspectives and industry-leading insights you can put to use today—all from the people who work here. - **Job Alert Emails**: Personalize your subscription to receive job alerts and the latest news tailored to your preferences. Discover the exciting and rewarding opportunities that await at Public Service Enterprise Group (PSEG). Join PSEG and be part of a company that’s powering progress and empowering your future.
Learn more about Public Service Enterprise Group (PSEG)
Size
12,684 employees
Market Cap
$30.3 billion
Industry
Net Income
$1.9 billion
Founded
1903
5 Year Trend
+1.6%
Revenue
$9.6 billion
NASDAQ

Similar Jobs

More Jobs at Public Service Enterprise Group (PSEG)

More Information Technology Jobs

Find similar Cyber Security Analyst PSEG LI - DevSecOps Engineer jobs: