Job Title: DevSecOps Engineer
Location: Sacramento, CA (Onsite)
Contract:C2C
Primary focus: Establish secure, repeatable, observable, and supportable AWS environments and delivery automation.
Key responsibilities
Define and implement Infrastructure as Code for BOP application infrastructure and environment provisioning.
Establish Development, UAT, and Production deployment patterns with environment-specific configuration and separation of duties.
Implement CI/CD pipelines, versioned artifacts, automated quality and security gates, controlled promotion, and rollback or forward-fix practices.
Develop least-privilege IAM roles and policies, trust relationships, secrets management, encryption, and secure configuration controls.
Implement structured logging, metrics, dashboards, alarms, protected diagnostics, and operational monitoring.
Integrate approved code, dependency, vulnerability, secret, and infrastructure security scanning into delivery pipelines.
Develop deployment, recovery, troubleshooting, and operational runbooks and support production-readiness reviews.
Coordinate with EDD cloud, security, networking, identity, repository, release, and operations teams.
Minimum qualifications
Five or more years of cloud infrastructure, DevOps, DevSecOps, or site reliability engineering experience.
Hands-on experience with AWS serverless services, IAM, Infrastructure as Code, CI/CD, monitoring, and production deployment.
Strong experience with AWS CDK using TypeScript, CloudFormation, or an EDD-approved equivalent.
Experience implementing secure pipelines, automated security controls, secrets management, encryption, and least-privilege access.
Knowledge of operational readiness, incident diagnostics, recovery, environment promotion, and release governance.
Experience working within enterprise security, network, change-management, and compliance processes
By continuing you agree to our Terms & Privacy Policy.