
206094 - DevSecOps
Orion Innovationabout 4 hours ago
Columbus, OH, USASenior / Staff+
H1B Sponsor
Responsibilities
- Architect enterprise-grade DevSecOps solutions inline with industry standards.
- Discover and assess CI/CD and IaC requirements and develop blueprints for target architecture.
- Lead the assessment of current state DevOps maturity and align to industry maturity models.
- Develop ways of working for Continuous Integration and Continuous Delivery with automated DevSecOps platforms.
- Set up CI/CD pipelines, IaC for infrastructure provisioning, and integrate security and quality in the pipeline.
- Design end-to-end CI/CD pipelines with quality and security integration.
- Implement SAST, DAST, SCA tools and integrate them into the CI/CD pipeline.
- Design and architect the DevSecOps ecosystem from scratch.
- Work closely with customer application and infrastructure teams.
- Implement reusable pipeline and IaC templates.
- Lead the onboarding of applications on the Core DevOps platform.
- Design CI/CD and IaC infrastructure and create standardized blueprints.
- Develop Golden paths for Pipeline and IaC.
- Create target architecture for enabling DevSecOps for applications and infrastructure.
- Work with the Observability team for DevSecOps integration with AIOps platform.
- Design and build dashboards for end-to-end value stream visibility.
- Implement identity, RBAC, and security controls for DevSecOps tools.
- Create runbooks and SOP for application onboarding.
- Develop wave plans for enterprise rollout of the DevSecOps platform and practices.
Requirements
- Proven hands-on experience with multiple CI/CD platforms like Azure DevOps, GitHub actions, GitLab.
- Strong knowledge of Azure, AWS, and GCP cloud infrastructure.
- Experience with integration of security tools like Trivy, Synk, SonarQube, Veracode, Fortify.
- Strong in IaC tools like Terraform for infrastructure provisioning.
- Strong knowledge of application onboarding at scale on the DevSecOps platform.
- Familiarity with configuration management tools like Ansible.
- Familiarity with GitOps tools like ArgoCD.
- Strong analytical skills and understanding of DevSecOps practices.
- Excellent communication and documentation skills.
- Experience working with application teams to develop target state DevSecOps architecture.