We are looking for a dedicated DevSecOps Engineer to join our team and play a key role in integrating development, security, and operations to enhance our end-to-end system security. In this position, you will be responsible for designing and implementing scalable, functional, and secure systems, while continuously improving the security posture of both our development and production environments. You will work closely with both development and operations teams to ensure security best practices are embedded throughout the software lifecycle.
The ideal candidate will have a strong DevOps background with a deep emphasis on security, strong analytical skills, and a passion for solving complex IT and security challenges. As a Senior Systems Security Engineer, you will lead the design and deployment of our security infrastructure, manage complex security projects, set strategic direction for security practices, and mentor junior engineers. If you thrive in a collaborative environment and are committed to advancing security in every phase of the development process, we encourage you to apply.
Responsibilities:- Design and implement secure automation solutions for development, testing, and production environments.
- Manage and maintain infrastructure security and monitoring systems.
- Develop and maintain CI/CD pipelines across multiple environments.
- Understand and remediate system vulnerabilities and security issues.
- Collaborate with team members to improve the company's engineering tools, systems, procedures, and data security.
- Create and maintain security-related documentation.
- Stay current with security industry trends, including emerging threats and security solutions.
- Support incident response and problem management teams by providing containment actions and incident analysis.
- Developing strategies for security and scalability.
Qualifications You Must Have:- Bachelor's degree in Systems Security, Network Engineering, Information Technology, or related Engineering discipline.
- 8+ years of experience in IT security or a related field.
- Relevant experience can be considered as a substitute for the required educational qualifications. In the absence of a degree, a minimum of 12 years of related experience is required.
- Certified Information Systems Security Professional (CISSP) is required.
- Higher level relevant degree may substitute for experience.
- Expert understanding of cybersecurity principles and practices.
- Experience with security frameworks and standards such as National Institute of Standards and Technology (NIST), ISO 27001.
- Proven work experience as a DevSecOps Engineer or similar role in development, operations, and security.
- Knowledge of cloud technologies and architectures (Azure / AWS).
- Experience in secure coding practices and automating security testing tools.
- Proficient with containerization technologies like Docker and orchestration tools like Kubernetes.
- Experience with automation scripts and configuration management tools.
- Excellent communication skills with the ability to explain complex security topics in an understandable manner.
- Ability to obtain/maintain a Top Secret U.S. Security Clearance is required.
Qualifications We Prefer:- Information Systems Security Engineer Professional (ISSEP), Certified Authorization Professional (CAP), or Certified Information Security Manager (CISM) Certification.
- Security+, Certified Information Systems Auditor (CISA), or CompTIA Advanced Security Practitioner (CASP+) Certification.
- Microsoft Certified Solutions Expert (MCSE) or Linux.
- Experience in the aerospace or defense industry.
Essential Functions:- Ability to work primarily at a computer for extended periods.
- Capability to participate in on-call rotation for incident response.
- Must be able to lift up to 25 lbs occasionally.
- Ability to work in an office or hybrid environment.
- Occasional travel may be required.
This posting will be open for application for a minimum of 5 days and may be extended based on business needs.
Estimated Starting Salary Range: $143,487.14 - $197,294.82. Compensation varies depending on a wide array of factors, such as candidates' key skills, relevant work experience, and education/training/certifications. The disclosed range estimate may be adjusted for any applicable geographic differential associated with the location at which the position may be filled.
SNC offers annual incentive pay based upon performance that is commensurate with the level of the position.
SNC offers a generous benefit package, including medical, dental, and vision plans, 401(k) with 150% match up to 6%, life insurance, 3 weeks paid time off, tuition reimbursement, and more.