Senior DevSecOps Engineer II
Canada
AuditBoard
AuditBoard is trusted by the Fortune 500 for SOX, internal controls, audit management, compliance, and risk management. Learn more.Who We Are
Having surpassed $200M ARR and continuing to grow rapidly, AuditBoard is the leading audit, risk, and compliance platform on the market. More than 40% of the Fortune 500, including 6 of the Fortune 10, leverage our award-winning technology to move their businesses forward with greater clarity and agility. And our customers love us: AuditBoard is top-rated on G2.com and Gartner Peer Insights.
At AuditBoard we inspire each other to innovate and are proud of what we are producing. We spend each day thinking of new ways to help our customers and contribute to the greater good of our company and our surrounding communities. We are all about assisting each other and breaking through barriers to create the most loved audit, risk, and compliance platform by our customers. This is how we have become one of the 500 fastest-growing tech companies in North America for the fourth year in a row as ranked by Deloitte!
Why This Role is Exciting
AuditBoard is looking for a passionate and experienced Security Engineer (DevSecOps) to join our growing team. As a DevSecOps Engineer, you will play a crucial role in enhancing the security, reliability, and efficiency of our cloud infrastructure and software delivery pipelines. You will collaborate closely with our Engineering, Operations, and Security Teams to implement best practices for infrastructure as code (IaC), continuous integration / continuous deployment (CICD), and security automation.
This role will also play an instrumental role in the design and enhancement of container security baselines and cloud security assessment tools; analyzing the results to identify meaningful threats and recommend remediation actions.
Key Responsibilities:
- Design, implement, and maintain secure, scalable, and highly available cloud infrastructure on AWS and Azure.
- Implement and review infrastructure as code (IaC) using Terraform to provision and manage cloud resources.
- Assist with remediation of discovered security vulnerabilities on cloud platforms such as AWS, Azure, and containerized applications built on Kubernetes.
- Implement security best practices throughout the software development lifecycle (SDLC), including code scanning, vulnerability assessment, and compliance checks.
- Drive enhancements to standard baselines for cloud and container security in line with security frameworks and benchmarks, compliance standards, and regulatory guidelines.
- Promptly respond to security threats and incidents, acting individually and as part of a team to resolve issues as necessary.
- Stay current with emerging technologies, industry trends, and security threats to continuously improve our DevSecOps practices and overall security posture.
Attributes for a Successful Candidate
- 3 - 5 years working experience within Information Security related fields
- BS or MS in computer science or related field
- Experience with scripting languages such as Python, Bash, PowerShell, and infrastructure automation languages such as HCL (Terraform).
- Knowledge of operating systems including Linux/Unix and Windows, as well as containerization/virtualization technologies including docker and kubernetes.
- Technical understanding and competence with Public Cloud platforms especially AWS and Azure.
- Proficiency in Git and experience with version control systems.
- Experience with infrastructure as code (IaC) tools such as Terraform and/or AWS CloudFormation.
- Excellent organization, time management, and attention to detail.
- Must be action-oriented and have a proactive approach to solving issues
- Ability to work within an on-call shift rotation
- Launch a career at one of the fastest-growing SaaS companies in North America!
- Live your best life (LYBL)! $200/mo for anything that enhances your life
- Remote and hybrid work options, plus lunch in the office
- Comprehensive employee health coverage (all locations)
- 401K with match (US) or pension with match (UK)
- Competitive compensation & bonus program
- Flexible Vacation (US exempt & CA) or 25 days (UK)
- Time off for your birthday & volunteering
- Unlimited access to LinkedIn Learning
- Employee resource groups
- Opportunities for team and company-wide get togethers!
*perks may vary based on eligibility
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Automation AWS Azure Bash Cloud Compliance Computer Science DevSecOps Docker Kubernetes Linux PowerShell Python SaaS Scripting SDLC Security assessment Terraform UNIX Vulnerabilities Windows
Perks/benefits: 401(k) matching Career development Competitive pay Flex hours Flex vacation Salary bonus Unlimited paid time off
More jobs like this
Explore more InfoSec / Cybersecurity career opportunities
Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.
- Open Penetration Tester jobs
- Open Cloud Security Architect jobs
- Open Security Operations Engineer jobs
- Open Principal Security Engineer jobs
- Open Information Security Officer jobs
- Open Information Security Specialist jobs
- Open Senior Cyber Security Engineer jobs
- Open Senior Product Security Engineer jobs
- Open Chief Information Security Officer jobs
- Open Cyber Security Architect jobs
- Open IT Security Engineer jobs
- Open Senior Penetration Tester jobs
- Open Staff Security Engineer jobs
- Open Cyber Security Specialist jobs
- Open Security Specialist jobs
- Open Ethical hacker / Pentester H/F jobs
- Open Senior Network Security Engineer jobs
- Open Cybersecurity Consultant jobs
- Open Security Consultant jobs
- Open IT Security Analyst jobs
- Open Senior Information Security Analyst jobs
- Open Security Operations Analyst jobs
- Open Manager Pentest H/F jobs
- Open Information Security Architect jobs
- Open Information System Security Officer jobs
- Open Agile-related jobs
- Open Risk assessment-related jobs
- Open SOC-related jobs
- Open Analytics-related jobs
- Open Network security-related jobs
- Open CISA-related jobs
- Open ISO 27001-related jobs
- Open GCP-related jobs
- Open IAM-related jobs
- Open Application security-related jobs
- Open Pentesting-related jobs
- Open Threat intelligence-related jobs
- Open Vulnerability management-related jobs
- Open DevOps-related jobs
- Open DoD-related jobs
- Open Security Clearance-related jobs
- Open APIs-related jobs
- Open CEH-related jobs
- Open Security assessment-related jobs
- Open SaaS-related jobs
- Open Malware-related jobs
- Open Kubernetes-related jobs
- Open Java-related jobs
- Open EDR-related jobs
- Open TS/SCI-related jobs