DevSecOps Engineer
CESO, Inc. · Columbus, OH, United States
About The Role
Are you seeking purpose, challenge, and talented colleagues? We develop leaders and empower our associates to use their skills and talents to positively impact the world through service – to our coworkers, clients, and communities. We subscribe to the mission of “empowering our people to impact communities by bringing clients’ visions to life,” so if this speaks to you, let’s connect!
At CESO, a DevSecOps Engineer is responsible for designing, building, securing, automating, and maintaining the company's cloud infrastructure and application hosting environments. This position serves as the bridge between infrastructure, software development, and cybersecurity, ensuring that applications and services are secure, scalable, reliable, and operationally efficient. The DevSecOps Engineer owns Azure infrastructure standards, CI/CD pipelines, infrastructure automation, security controls, observability, disaster recovery planning, and environment management across development, testing, and production environments. This position plays a critical role in establishing secure development practices, protecting enterprise systems, and enabling rapid delivery of business applications and AI solutions.
Primary Responsibilities
- Develop and maintain infrastructure standards, governance policies, naming conventions, tagging strategies, and environment management practices.
- Build, maintain, and optimize CI/CD pipelines and automated deployment processes that support application and infrastructure delivery, including environment provisioning, approval gates, rollback strategies, and release management procedures.
- Own Azure networking architecture, including virtual networks, private endpoints, VPN connectivity, DNS, network segmentation, and secure remote access.
- Manage Azure RBAC, managed identities, service principals, privileged access, and least-privilege security models.
- Partner with software engineering teams to implement secure coding practices, application security controls, and security-focused development workflows.
- Configure and manage SAST, DAST, dependency scanning, code quality controls, and vulnerability management processes.
- Design and support perimeter security solutions including Web Application Firewalls (WAF), Azure Front Door, Application Gateway, and related technologies.
- Implement monitoring, logging, observability, alerting, and telemetry solutions using Azure Monitor, Application Insights, Log Analytics, and related platforms.
- Design and maintain high availability, backup, geo-replication, disaster recovery, and business continuity solutions.
- Maintain architecture documentation, operational runbooks, deployment procedures, and technical reference materials.
- Provide analytical and problem-solving expertise to evaluate opportunities, and decisions and communication them to relevant parties within the organization.
- Collaborate effectively with technical and non-technical stakeholders to gather requirements, align priorities, and deliver solutions.
- Perform other duties as assigned.
Position Requirements
- Bachelor's degree in Computer Science, Information Technology, Cybersecurity, Engineering, or equivalent experience is required.
- Minimum of 3 years of experience in Azure administration, cloud engineering, DevOps, infrastructure engineering, cybersecurity, or related disciplines is required.
- Experience designing and supporting Azure environments, cloud infrastructure, and enterprise application hosting platforms is required.
- Azure Administrator, Azure Security Engineer, Azure DevOps Engineer, Cybersecurity, or related industry certifications are preferred.
- Experience with Azure Front Door, Application Gateway, Web Application Firewall (WAF), Azure Bastion, Azure VPN Gateway, and ExpressRoute is required.
- Experience implementing SAST, DAST, vulnerability management, dependency scanning, and application security programs is required.
- Experience supporting and securing modern application architectures, including React, Node.js, .NET, Power Platform, Azure App Services, Azure Functions, APIs, and related cloud technologies is required.
- Experience managing multi-environment deployment strategies and automated environment provisioning is required.
- Experience building and maintaining CI/CD pipelines using GitHub Actions, Azure DevOps, or similar platforms is required.
- Strong understanding of Azure networking concepts, including virtual networks, private endpoints, VPNs, firewalls, routing, and security groups is required.
- Strong understanding of cloud security, identity management, RBAC, secrets management, and security best practices is required.
- Working knowledge of software engineering practices, source control management, and application lifecycle management is required.
- Experience implementing Azure Sentinel, SIEM solutions, security monitoring, and incident response processes is preferred.
- Experience supporting AI, Azure OpenAI, Copilot, or cloud-based AI application environments is preferred.
- Experience with Infrastructure-as-Code technologies such as Bicep, Terraform, ARM Templates, Pulumi, or similar tools is preferred.
Benefits and Perks
- Flexible and Hybrid Work Schedule
- Paid Time Off – Credited to You 100% Upfront
- 401K with a Company Match
- Rewards and Recognition Program
- Training and Development to Foster Professional Growth
- Paid Holidays
- Medical / Dental / Vision Coverage
- Welcome Box
- Casual Dress Code
- Reimbursement for Professional Licenses
- Paid Time Off for Community Team Service Events
- Voluntary or Supplemental Short-Term / Long-Term Disability
- Employee Assistance Program
- Company Paid Bonding and Recovery
- Employee Events such as Lunches and Outings to Foster a Positive Work Environment
Similar roles you might like
See all →This is an external listing. JobSpring does not represent or verify the employer. Report this listing
