Full-Time

Devsecops Engineer

Confirmed live in the last 24 hours

Avathon

Avathon

201-500 employees

Automotive & Transportation
Industrial & Manufacturing
Government & Public Sector
Energy
AI & Machine Learning

Compensation Overview

$110k - $144kAnnually

Mid, Senior

Austin, TX, USA

Category
DevOps & Infrastructure
Site Reliability Engineering
DevOps Engineering
Required Skills
Python
JavaScript
C#
Jenkins
REST APIs
CircleCI
Requirements
  • 3+ years of experience as either an Application Security Engineer or DevSecOps Engineer
  • Experience working with development teams to build secure software: threat modeling, security education, code reviews
  • Strong understanding of the OWASP Top 10.
  • Experience writing shell scripts and/or working with common CI/CD tools (i.e. Jenkins, Github Actions, CircleCI, etc)
  • Proficiency in reading, writing, and auditing Python, Javascript, or C# and the ability to pick up new languages/technologies
  • Knowledge of web service technologies and RESTful APIs
  • Excellent written and verbal communication skills, interpersonal and collaborative skills
  • Strong problem-solving skills and are proactive about getting things done
  • An understanding of/experience with encryption technologies (SSH, SSL, TLS, etc.) and common authentication and authorization protocols (OAuth2, OIDC, RBAC, ABAC)
  • A strong understanding of microservices-based architectures
Responsibilities
  • Work closely with engineers, data scientists, product owners, and members of the security team to ensure and enable secure design, development, implementation, and monitoring of web applications and APIs in accordance with information security policy and associated compliance controls
  • Collaborate with engineering teams to integrate security tooling into both new and existing Avathon software build pipelines
  • Engage with engineering teams to analyze, prioritize, and provide remediation guidance for security scan results
  • Lead teams through threat modeling exercises
  • Participate in code reviews, ensuring security best practices are in place
  • Conduct technical Root Cause Analysis on vulnerabilities and helping to identify areas for further research, education or testing
  • Educate and evangelizing to engineers and managers secure development best practices, common pitfalls, and the Secure Software Development Lifecycle (SSDLC) process
  • Assist cross functional teams efforts to embed logging, monitoring and auditing in applications
  • Manage vulnerabilities for Avathon software and working with engineering teams to identify, prioritize, and mitigate vulnerabilities

Company Stage

N/A

Total Funding

N/A

Headquarters

Pleasanton, California

Founded

2013

Simplify Jobs

Simplify's Take

What believers are saying

  • Increased demand for AI-driven predictive maintenance boosts cost savings and efficiency.
  • AI integration with IoT devices enhances real-time data analysis in industrial settings.
  • AI-powered video analytics transform security, providing accurate insights for businesses.

What critics are saying

  • Over-reliance on partnerships may limit Avathon's independent innovation capabilities.
  • Rapid AI development could render Avathon's offerings obsolete if not updated.
  • Regulatory scrutiny on AI in surveillance may impact Avathon's CP PLUS partnership.

What makes Avathon unique

  • Avathon partners with BlackBerry to enhance critical event management using AI.
  • Collaboration with CP PLUS integrates AI with CCTV for improved public safety in India.
  • Avathon's AI platform leads in industrial operations, offering predictive maintenance solutions.

Help us improve and share your feedback! Did you find this helpful?