Job Title: DevSecOps Engineer

Location: Sacramento, CA (Onsite)

Contract:C2C

Primary focus: Establish secure, repeatable, observable, and supportable AWS environments and delivery automation.

Key responsibilities

Define and implement Infrastructure as Code for BOP application infrastructure and environment provisioning.

Establish Development, UAT, and Production deployment patterns with environment-specific configuration and separation of duties.

Implement CI/CD pipelines, versioned artifacts, automated quality and security gates, controlled promotion, and rollback or forward-fix practices.

Develop least-privilege IAM roles and policies, trust relationships, secrets management, encryption, and secure configuration controls.

Implement structured logging, metrics, dashboards, alarms, protected diagnostics, and operational monitoring.

Integrate approved code, dependency, vulnerability, secret, and infrastructure security scanning into delivery pipelines.

Develop deployment, recovery, troubleshooting, and operational runbooks and support production-readiness reviews.

Coordinate with EDD cloud, security, networking, identity, repository, release, and operations teams.

Minimum qualifications

Five or more years of cloud infrastructure, DevOps, DevSecOps, or site reliability engineering experience.

Hands-on experience with AWS serverless services, IAM, Infrastructure as Code, CI/CD, monitoring, and production deployment.

Strong experience with AWS CDK using TypeScript, CloudFormation, or an EDD-approved equivalent.

Experience implementing secure pipelines, automated security controls, secrets management, encryption, and least-privilege access.

Knowledge of operational readiness, incident diagnostics, recovery, environment promotion, and release governance.

Experience working within enterprise security, network, change-management, and compliance processes

Similar jobs

DevSecOps Engineer

Apply Now
Back to search page