Senior DevSecOps Engineer II

United States

AuditBoard

AuditBoard is trusted by the Fortune 500 for SOX, internal controls, audit management, compliance, and risk management. Learn more.

View company page

Apply now Apply later

Who We Are

Having surpassed $200M ARR and continuing to grow rapidly, AuditBoard is the leading audit, risk, and compliance platform on the market. More than 40% of the Fortune 500, including 6 of the Fortune 10, leverage our award-winning technology to move their businesses forward with greater clarity and agility. And our customers love us: AuditBoard is top-rated on G2.com and Gartner Peer Insights.


At AuditBoard we inspire each other to innovate and are proud of what we are producing. We spend each day thinking of new ways to help our customers and contribute to the greater good of our company and our surrounding communities. We are all about assisting each other and breaking through barriers to create the most loved audit, risk, and compliance platform by our customers. This is how we have become one of the 500 fastest-growing tech companies in North America for the fourth year in a row as ranked by Deloitte! 

Why This Role is Exciting

AuditBoard is looking for a passionate and experienced Security Engineer (DevSecOps) to join our growing team.  As a DevSecOps Engineer, you will play a crucial role in enhancing the security, reliability, and efficiency of our cloud infrastructure and software delivery pipelines.  You will collaborate closely with our Engineering, Operations, and Security Teams to implement best practices for infrastructure as code (IaC), continuous integration / continuous deployment (CICD), and security automation.

This role will also play an instrumental role in the design and enhancement of container security baselines and cloud security assessment tools; analyzing the results to identify meaningful threats and recommend remediation actions.

Key Responsibilities: 

  • Design, implement, and maintain secure, scalable, and highly available cloud infrastructure on AWS and Azure.
  • Implement and review infrastructure as code (IaC) using Terraform to provision and manage cloud resources. 
  • Assist with remediation of discovered security vulnerabilities on cloud platforms such as AWS, Azure, and containerized applications built on Kubernetes. 
  • Implement security best practices throughout the software development lifecycle (SDLC), including code scanning, vulnerability assessment, and compliance checks.
  • Drive enhancements to standard baselines for cloud and container security in line with security frameworks and benchmarks, compliance standards, and regulatory guidelines.
  • Promptly respond to security threats and incidents, acting individually and as part of a team to resolve issues as necessary.
  • Stay current with emerging technologies, industry trends, and security threats to continuously improve our DevSecOps practices and overall security posture.
  •  

Attributes for a Successful Candidate

  • 3 - 5 years working experience within Information Security related fields
  • BS or MS in computer science or related field
  • Experience with scripting languages such as Python, Bash, PowerShell, and infrastructure automation languages such as HCL (Terraform). 
  • Knowledge of operating systems including Linux/Unix and Windows, as well as containerization/virtualization technologies including docker and kubernetes. 
  • Technical understanding and competence with Public Cloud platforms especially AWS and Azure.
  • Proficiency in Git and experience with version control systems.
  • Experience with infrastructure as code (IaC) tools such as Terraform and/or AWS CloudFormation. 
  • Excellent organization, time management, and attention to detail.
  • Must be action-oriented and have a proactive approach to solving issues
  • Ability to work within an on-call shift rotation
Perks*  
  • Launch a career at one of the fastest-growing SaaS companies in North America!
  • Live your best life (LYBL)! $200/mo for anything that enhances your life
  • Remote and hybrid work options, plus lunch in the office
  • Comprehensive employee health coverage (all locations)
  • 401K with match (US) or pension with match (UK)
  • Competitive compensation & bonus program
  • Flexible Vacation (US exempt & CA) or 25 days (UK)
  • Time off for your birthday & volunteering
  • Unlimited access to LinkedIn Learning
  • Employee resource groups
  • Opportunities for team and company-wide get togethers!

 

*perks may vary based on eligibility

 

#LI-Remote

Apply now Apply later
  • Share this job via
  • or

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Job stats:  8  1  0

Tags: Automation AWS Azure Bash Cloud Compliance Computer Science DevSecOps Docker Kubernetes Linux PowerShell Python SaaS Scripting SDLC Security assessment Terraform UNIX Vulnerabilities Windows

Perks/benefits: 401(k) matching Career development Competitive pay Flex hours Flex vacation Salary bonus Unlimited paid time off

Regions: Remote/Anywhere North America
Country: United States

More jobs like this

Explore more InfoSec / Cybersecurity career opportunities

Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.