World Wide Technology Logo

World Wide Technology

Senior DevSecOps Engineer

Posted Yesterday
Be an Early Applicant
Remote
Hiring Remotely in United States
100K-130K Annually
Senior level
Remote
Hiring Remotely in United States
100K-130K Annually
Senior level
The Senior DevSecOps Engineer will embed automated security tooling into client environments, assess CI/CD pipelines, and translate security findings into actionable remediation for engineering teams.
The summary above was generated by AI
Job Summary & Responsibilities

Qualifications

  • 4–7 years hands-on with CI/CD platforms — specifically security integration, not just DevOps
  • Deep familiarity with SAST/DAST/SCA tooling and the tradeoffs between them in different pipeline contexts
  • IaC security scanning (Terraform, Bicep, CloudFormation via Checkov, tfsec, or equivalents)
  • Secrets management: HashiCorp Vault, AWS Secrets Manager, GitHub Advanced Security secret scanning
  • Container and image scanning: Trivy, Grype, Clair, or equivalents
  • Can write pipeline-as-code — not just configure existing pipelines
  • Experience translating security findings for developer audiences, not just security teams
  • Bonus: AI-generated code scanning, SBOM tooling (Syft, CycloneDX), software supply chain security (SLSA)
  • Bonus: prior consulting or professional services background — client management and scoping matter

Want to learn more about Consulting & Security Services? Check us out on our platform:

https://www.wwt.com/consulting-services

 

Certain states and localities require employers to post a reasonable estimate of salary range. A reasonable estimate of the current base pay range for this position is $100,000 to $130,000 annually. Actual salary will be based on a variety of factors, including shift, location, experience, skill set, performance, licensure and certification, and business needs. The range for this position in other geographic locations may differ. Certain positions may also be eligible for variable incentive compensation, such as bonuses or commissions, that is not included in the base pay. 

The well-being of WWT employees is essential. So, when it comes to our benefits package, WWT has one of the best. We offer the following benefits to all full-time employees:

  • Health and Wellbeing: Health, Dental, and Vision Care, Onsite Health Centers, Employee Assistance Program, Wellness program
  • Financial Benefits: Competitive pay, Profit Sharing, 401k Plan with Company Matching, Life and Disability Insurance, Tuition Reimbursement
  • Paid Time Off: PTO and Sick Leave (starting at 20 days per year) & Holidays (10 per year), Parental Leave, Military Leave, Bereavement
  • Additional Perks: Nursing Mothers Benefits, Voluntary Legal, Pet Insurance, Employee Discount Program

We strive to create an environment where all employees are empowered to succeed based on their skills, performance, and dedication. Our goal is to cultivate a culture of belonging that encourages innovation, collaboration, and respect for all team members, ensuring that WWT remains a great place to work for All!

If you have any questions or concerns about this posting, please email [email protected].

 

 

#LI-TB1


Preferred Qualifications

Why WWT?

At World Wide Technology, we work together to make a new world happen. Our important work benefits our clients and partners as much as it does our people and communities across the globe. WWT is dedicated to achieving its mission of creating a profitable growth company that is also a Great Place to Work for All. We achieve this through our world-class culture, generous benefits and by delivering cutting-edge technology solutions for our clients.

Founded in 1990, WWT is a global technology solutions provider leading the AI and Digital Revolution. WWT combines the power of strategy, execution and partnership to accelerate digital transformational outcomes for organizations around the globe. Through its Advanced Technology Center, a collaborative ecosystem of the world's most advanced hardware and software solutions, WWT helps clients and partners conceptualize, test and validate innovative technology solutions for the best business outcomes and then deploys them at scale through its global warehousing, distribution and integration capabilities.

With over 12,000 employees across WWT and Softchoice and more than 60 locations around the world, WWT's culture, built on a set of core values and established leadership philosophies, has been recognized 14 years in a row by Fortune and Great Place to Work® for its unique blend of determination, innovation and creating a great place to work for all.

Want to work with highly motivated individuals on high-performance teams? Join WWT today!

What is the Solutions Consulting & Engineering (SC&E) Team and why join? 

Solutions Consulting & Engineering is an organization that is Customer Focused and Solutions Led. We deliver end-to-end and emerging solutions to drive customer satisfaction, increase profitability and growth.  Our success is enabled by our world-class management consulting, delivery excellence and engineering brilliance. Our goal is to bring together business acumen with full-stack technical know-how to develop innovative solutions for our clients' most complex challenges. 

Role Summary

WWT Digital is building a joint AI + Security practice and needs a Senior DevSecOps Engineer to anchor delivery of our CI/CD Security Baseline offering (DIG-APS-01). You will work alongside WWT's Global Security team and our AI-native delivery squads to embed automated security tooling into client SDLC environments — from initial assessment through hardened pipeline design and handoff. This is a client-facing, hands-on engineering role.

Responsibilities

  • Assess and instrument client CI/CD pipelines (GitHub Actions, GitLab CI, Jenkins, Azure DevOps) with SAST, DAST, SCA, and secrets scanning tools
  • Implement SBOM generation workflows and license compliance gates
  • Configure and tune tooling (Snyk, Semgrep, Checkov, Trivy, SonarQube, OWASP ZAP, Veracode, or equivalents) to reduce false positive rates and drive developer adoption
  • Define security gates, policy-as-code frameworks, and break/fix thresholds appropriate to client risk tolerance
  • Translate findings into remediation roadmaps that engineering teams can act on without security expertise
  • Work with WWT Security architects on shared delivery engagements and co-present findings to client CISOs and engineering leadership

Top Skills

Aws Secrets Manager
Bicep
Checkov
Ci/Cd Platforms
Clair
CloudFormation
Dast
Grype
Hashicorp Vault
Owasp Zap
Pipeline-As-Code
Sast
Sca Tooling
Semgrep
Snyk
Sonarqube
Terraform
Trivy
Veracode

Similar Jobs

3 Days Ago
Remote
VA, USA
Senior level
Senior level
Software • Consulting • Cybersecurity
The Senior Application Developer will design, develop, and maintain applications in a DevSecOps environment, focusing on cloud infrastructure, security, and application performance while fostering collaboration across teams.
Top Skills: Aws Ec2Aws S3GitJavaJbossJIRAMySQLNumpyPandasPostgresPythonSpring BootSQLWildfly
8 Days Ago
In-Office or Remote
Senior level
Senior level
Healthtech • Pharmaceutical
The Senior DevSecOps Engineer will implement and maintain application security testing tools, integrate them into CI/CD pipelines, and manage secure software delivery processes for the organization.
Top Skills: Application Security TestingAzure DevopsCi/CdDastDevsecopsGithub ActionsIastJfrog ArtifactoryPythonSastScaSnyk
12 Days Ago
Remote
USA
Senior level
Senior level
News + Entertainment
Design and implement security guardrails across AWS and GCP, embed policy-as-code in Terraform, integrate security into CI/CD, build detection and SOAR playbooks, lead threat modeling, and partner with engineering to reduce MTTD/MTTR and scale compliance.
Top Skills: AWSAws Secrets ManagerAzure AdCi/CdCrowdstrikeDastDependency ScanningEdr/XdrElastic SiemGCPGcp Secret ManagerGithub ActionsGoogle WorkspaceIntuneJAMFMicrosoft DefenderMitre Att&CkOktaPythonSastScimSentineloneSIEMSoarSsoTerraformVault

What you need to know about the San Francisco Tech Scene

San Francisco and the surrounding Bay Area attracts more startup funding than any other region in the world. Home to Stanford University and UC Berkeley, leading VC firms and several of the world’s most valuable companies, the Bay Area is the place to go for anyone looking to make it big in the tech industry. That said, San Francisco has a lot to offer beyond technology thanks to a thriving art and music scene, excellent food and a short drive to several of the country’s most beautiful recreational areas.

Key Facts About San Francisco Tech

  • Number of Tech Workers: 365,500; 13.9% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Google, Apple, Salesforce, Meta
  • Key Industries: Artificial intelligence, cloud computing, fintech, consumer technology, software
  • Funding Landscape: $50.5 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Sequoia Capital, Andreessen Horowitz, Bessemer Venture Partners, Greylock Partners, Khosla Ventures, Kleiner Perkins
  • Research Centers and Universities: Stanford University; University of California, Berkeley; University of San Francisco; Santa Clara University; Ames Research Center; Center for AI Safety; California Institute for Regenerative Medicine

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account