Staff DevSecOps Engineer, Health

Vaga não está no LinkedIn

🕒 Setembro 18

🦌 Connecticut, New York, +2 estados a mais – Remoto

infoinfo

💵 $130.295 - $260.590 / ano

⏰ Tempo Integral

🔴 Especialista

⛑ DevOps & Engenheiro de Confiabilidade do Site (SRE)

👻 Score fantasma 0%

infoinfo

🗣️🇺🇸🇬🇧 Inglês obrigatório

Candidatar-se
Encontrar Vagas Remotas Similares

📊 Verifique sua pontuação de currículo para esta vaga

Melhore suas chances de conseguir uma entrevista verificando sua pontuação de currículo antes de se candidatar.

Logo of CVS Health

CVS Health

10.000+ funcionários

Fundada em 1963

🏥 Saúde

⚕️ Seguro de Saúde

🛒 Varejo

Healthcare • Healthcare Insurance • Retail

CVS Health é uma empresa líder de saúde nos Estados Unidos, dedicada a ampliar o acesso e a acessibilidade ao cuidado. A empresa adota uma abordagem abrangente que inclui serviços de saúde, seguro saúde e gestão de benefícios farmacêuticos (PBM). Por meio de suas subsidiárias, como Aetna e CVS Caremark, a CVS Health oferece uma variedade de serviços que promovem o bem-estar, a gestão de condições de saúde e a cobertura acessível de medicamentos prescritos. A CVS Health opera farmácias de bairro, oferece serviços de farmácia por correspondência e gerencia programas de medicamentos de especialidade, com o objetivo de tornar o cuidado com a saúde conveniente e acessível para todos. Movida pela missão de conectar pessoas a serviços essenciais de cuidado, a CVS Health está comprometida em fomentar comunidades mais saudáveis e apoiar o bem-estar de todas as pessoas.

Descrição

• Lead technical implementation, migration, automation, mobile application security and standardization across the Health 100 portfolio • Support application onboarding and security enablement for Health 100 initiatives • Help development teams meet security requirements through standard tooling, pipeline integration and repeatable implementation patterns • Translate release-readiness expectations into repeatable technical patterns and evidence • Enable mobile application security testing, secure configuration validation and remediation guidance • Lead DevSecOps implementation initiatives, including technical planning, architecture, delivery, issue resolution and implementation outcomes • Coordinate across application, platform and security teams to remove blockers and sustain adoption • Design, implement and improve CI/CD security controls, pipeline enforcement and automated scanning workflows • Build self-service security solutions and reusable automation • Automate secret-detection and CI/CD security workflows, including Gitleaks or comparable capabilities • Lead security-tool migrations such as Checkmarx to Snyk through stable production operation • Produce and validate post-migration scan results • Standardize tooling configurations across development teams • Drive remediation of critical and high-risk vulnerabilities and monitor remediation against SLAs • Lead prioritization of open-source and software supply chain exposures • Improve SBOM coverage and secure-by-default dependency usage • Engineer controls for public cloud, containers, Kubernetes, Security-as-Code and Infrastructure-as-Code environments • Apply network-security, cloud-architecture and mobile-security expertise to assess risks and guide remediation • Track and report scan coverage, mobile testing coverage, vulnerability aging, SLA adherence, remediation effectiveness, automation adoption, tool coverage and pipeline compliance • Provide executive-ready updates on implementation progress, delivery risk and measurable security outcomes • Mentor engineers, establish reusable engineering patterns and create implementation guidance and education

🎯 Requisitos

• 7+ years of experience in DevSecOps, application security engineering, platform security or software engineering • Experience integrating SAST, SCA, secrets detection, container scanning, IaC scanning or comparable security controls into CI/CD pipelines • Experience leading security implementations or tool migrations in large or complex engineering environments • Proficiency in public cloud platforms such as AWS, Azure or GCP, plus cloud and network security concepts • Experience with Docker, Kubernetes, Security-as-Code and Infrastructure-as-Code • Hands-on scripting or programming experience in Python, Java, JavaScript, Go, Shell or PowerShell • Experience with application vulnerability management, open-source risk and software supply chain security • Experience with mobile application security testing, mobile threat modeling, or remediation of iOS and Android application security findings • Demonstrated ability to use metrics to drive adoption, remediation and measurable technical outcomes • Bachelor's degree in Computer Science, Software Development, Software Engineering or a related field, or equivalent practical experience • Preferred: experience with portfolio-based initiatives or prioritized application sets such as Health 100 • Preferred: hands-on experience with Snyk, Checkmarx, Gitleaks, SBOM tooling or comparable platforms • Preferred: hands-on experience with Data Theorem, MobSF or comparable mobile testing tools • Preferred: expertise architecting public cloud security solutions and scalable engineering processes • Preferred: strong understanding of networking and Software-Defined Networking principles • Preferred: experience with security solutions for data warehouses or big-data platforms, including Snowflake • Preferred: familiarity with HIPAA, HITRUST, PCI, NIST, GDPR or CCPA • Preferred: experience communicating technical security outcomes and risk posture to senior leadership

🏖️ Benefícios

• CVS Health bonus, commission or short-term incentive program in addition to base pay • Equity award program • Medical coverage • Dental coverage • Vision coverage • Paid time off • Retirement savings options • Wellness programs • Other resources supporting physical, emotional, and financial well-being

Candidatar-se

Vagas Similares

🕒 Setembro 18

Tandem Diabetes Care

1001 - 5000

🏥 Saúde

🏭 Manufatura

🔧 Hardware

Principal SRE ensuring reliable cloud infrastructure for Tandem Diabetes Care’s insulin technology. Leading incident response, automation, disaster recovery, and compliance across distributed teams.

🗣️🇺🇸🇬🇧 Inglês obrigatório

🕒 Setembro 17

Bixal

51 - 200

📣 Marketing

📦 Logística

🏥 Saúde

Director of DevSecOps leading secure cloud platforms and DevSecOps practice growth for Bixal’s federal government consulting clients. Recruiting teams, guiding architecture, and supporting compliant delivery and proposals.

🗣️🇺🇸🇬🇧 Inglês obrigatório

🕒 Setembro 17

PhoenixTeam

51 - 200

💳 Fintech

🏠 Imobiliário

🤖 Inteligência Artificial

DevOps Manager modernizing Jenkins-based CI/CD and Fortify quality controls for PhoenixTeam's federal FHA mortgage program. Coordinating releases, documentation, and delivery across development teams.

🇺🇸 Estados Unidos – Remoto (EUA)

⏰ Tempo Integral

🟠 Sênior

🔴 Especialista

⛑ DevOps & Engenheiro de Confiabilidade do Site (SRE)

🗣️🇺🇸🇬🇧 Inglês obrigatório

🕒 Setembro 16

Akamai Technologies

5001 - 10000

🔒 Cibersegurança

Principal SRE architecting reliable network infrastructure for Akamai’s globally distributed cloud and edge platform. Automating operations, defining SLOs, and troubleshooting large-scale network systems.

🇺🇸 Estados Unidos – Remoto (EUA)

💵 $169.300 - $304.700 / ano

💰 Post-IPO Equity em 2001-07

⏰ Tempo Integral

🔴 Especialista

⛑ DevOps & Engenheiro de Confiabilidade do Site (SRE)

🦅 Patrocina Visto H1B

infoinfo

🗣️🇺🇸🇬🇧 Inglês obrigatório

🕒 Setembro 16

CDIT LLC

51 - 200

🤝 B2B

☁️ SaaS

Principal DevOps Architect designing secure AWS infrastructure for global multi-tenant SaaS services. Building Terraform, CI/CD, Kubernetes, observability, and HIPAA-compliant AI/ML platforms.

🇺🇸 Estados Unidos – Remoto (EUA)

⏰ Tempo Integral

🔴 Especialista

⛑ DevOps & Engenheiro de Confiabilidade do Site (SRE)

🗣️🇺🇸🇬🇧 Inglês obrigatório