Hybrid Lead DevSecOps Engineer

Posted 9 hours ago

Apply now

About the role

  • Lead DevSecOps Engineer at McKesson driving cloud infrastructure and security initiatives. Focusing on GitHub workflows and Azure, mentoring team members on best practices.

Responsibilities

  • Design and implement Infrastructure as Code (IaC) solutions on Azure using Terraform and Bicep
  • Manage and optimize Azure Kubernetes Service (AKS) clusters, including cluster operations and application deployments
  • Deploy and manage applications using Kubernetes manifests through SCCM (System Center Configuration Manager)
  • Design and implement secure CI/CD pipelines using GitHub Actions with integrated security scanning
  • Implement and maintain GitHub Advanced Security (GHAS) across repositories, including code scanning, secret scanning, and dependency reviews
  • Develop and enforce secure coding practices and security policies within GitHub workflows
  • Build automated security gates and compliance checks in CI/CD pipelines
  • Develop automation scripts using Python and Bash to streamline operations
  • Configure and optimize GHAS features including CodeQL analysis and security advisories
  • Lead incident response for security vulnerabilities identified through GHAS
  • Mentor team members on DevSecOps practices, GitHub security features, and cloud technologies
  • Collaborate with development, security, and operations teams to ensure secure delivery
  • Establish branch protection rules, security policies, and access controls in GitHub

Requirements

  • Bachelor's degree in Computer Science, Engineering, or related field (or equivalent experience)
  • 10+ years of experience in DevOps/DevSecOps roles
  • 3+ years of hands-on experience with Azure and Kubernetes
  • 2+ years of experience with GitHub Actions and GitHub Advanced Security
  • Strong understanding of networking, security, and cloud architecture principles
  • Demonstrated ability to build security into development workflows without impeding velocity

Benefits

  • Competitive compensation package
  • Annual bonus or long-term incentive opportunities

Job title

Lead DevSecOps Engineer

Job type

Experience level

Senior

Salary

$150,500 - $250,800 per year

Degree requirement

Bachelor's Degree

Location requirements

Report this job

See something inaccurate? Let us know and we'll update the listing.

Report job