DevSecOps Engineer
Boston, MA
Applications have closed
Starburst
Starburst, a single point of access to all your data. Built on open source Trino (formerly, PrestoSQL), discover & consume data without costly migrations.As a DevSecOps Engineer at Starburst you will:
- Collaborate closely with our development and infrastructure teams to integrate security into every phase of the software development lifecycle
- Infrastructure as Code (IaC): Develop and maintain infrastructure as code scripts and templates to enable automated provisioning and management of infrastructure components, using Pulumi
- Integrate security practices into the development and operations process to ensure continuous delivery of secure and resilient software
- Identify and remediate security vulnerabilities in applications and infrastructure components, using Wiz and cloud native tools
- Build and implement security solutions across the product lifecycle by completing architecture review requests
- Implement code signing and mature our secrets management program
- Improve perimeter security by managing our Cloudflare WAF
- Make suggestions, and guide discussions on how to improve security posture in AWS/Azure/GCP
Some of the things we look for:
- Demonstrated experience with securing cloud environments (Familiarity with Amazon AWS policy, configuration, and security management tools)
- Azure and GCP cloud experience preferred
- Programming experience (Preference for Java, Python, Typescript)
- Experience managing infrastructure as code templates and scripts (e.g., Terraform, Pulumi) to provision and configure infrastructure components securely
- Demonstrated experience with secure development, coding, and engineering practices. Comfortable suggesting and making developer-led security improvements
- Demonstrated ownership and grit: these are core values we take seriously at Starburst
- Ability to execute - an ideal candidate can set clear plans of action and see complex security projects through to completion, especially while working at the pace of a startup
- Strong ability to work with multiple stakeholders to understand the best way to secure software for intricate and complex features. A willingness to collaborate with cross-functional engineering teams is essential
Where could this role be based?
- We are looking for someone located on the East Coast.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Analytics AWS Azure Cloud Cloudflare DevSecOps GCP Java Open Source Python SDLC Terraform TypeScript Vulnerabilities
Perks/benefits: Career development Equity Flex hours Flex vacation Startup environment
More jobs like this
Explore more InfoSec / Cybersecurity career opportunities
Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.
- Open Information Security Specialist jobs
- Open Consultant infrastructure sécurité H/F jobs
- Open Senior Information Security Analyst jobs
- Open IT Security Analyst jobs
- Open Consultant SOC / CERT H/F jobs
- Open Senior Information Security Engineer jobs
- Open Information Security Officer jobs
- Open Security Operations Engineer jobs
- Open Analyste CERT / Incident Responder junior (H/F) jobs
- Open Ingénieur DevSecops H/F jobs
- Open Staff Security Engineer jobs
- Open Cybersecurity Consultant jobs
- Open Senior Security Architect jobs
- Open Chief Information Security Officer jobs
- Open Analyste CERT / Incident Responder senior (H/F) jobs
- Open Information Systems Security Officer (ISSO) jobs
- Open Senior Security Analyst jobs
- Open o365 Security Architect jobs
- Open Principal Security Engineer jobs
- Open Senior Cyber Security Engineer jobs
- Open Staff Product Security Engineer jobs
- Open Electronic Warfare Advanced Tactical Trainer jobs
- Open Security Researcher jobs
- Open Product Security Engineer jobs
- Open Cyber Security Architect jobs
- Open SOC-related jobs
- Open GCP-related jobs
- Open Risk assessment-related jobs
- Open Governance-related jobs
- Open Network security-related jobs
- Open Pentesting-related jobs
- Open ISO 27001-related jobs
- Open Analytics-related jobs
- Open CISM-related jobs
- Open IAM-related jobs
- Open SaaS-related jobs
- Open Threat intelligence-related jobs
- Open Security Clearance-related jobs
- Open Malware-related jobs
- Open Vulnerability management-related jobs
- Open CISA-related jobs
- Open Java-related jobs
- Open Security assessment-related jobs
- Open DevOps-related jobs
- Open Kubernetes-related jobs
- Open Forensics-related jobs
- Open DoD-related jobs
- Open APIs-related jobs
- Open Splunk-related jobs
- Open EDR-related jobs