Senior DevSecOps Engineer – Real Estate

Senior DevSecOps Engineer – Real Estate

Senior DevSecOps Engineer – Real Estate

Truelogic

1 hora atrás

Nenhuma candidatura

Sobre

  • About Truelogic
  • At Truelogic we are a leading provider of nearshore staff augmentation services headquartered in New York. For over two decades, we’ve been delivering top-tier technology solutions to companies of all sizes, from innovative startups to industry leaders, helping them achieve their digital transformation goals.
  • Our team of 600+ highly skilled tech professionals, based in Latin America, drives digital disruption by partnering with U.S. companies on their most impactful projects. Whether collaborating with Fortune 500 giants or scaling startups, we deliver results that make a difference.
  • By applying for this position, you’re taking the first step in joining a dynamic team that values your expertise and aspirations. We aim to align your skills with opportunities that foster exceptional career growth and success while contributing to transformative projects that shape the future.
  • Our Client
  • Leading home equity platform for homeowners and home buyers seeking an alternative to traditional home financing. Our flagship product, the Home Equity Investment (HEI), empowers homeowners to unlock their equity in order to eliminate debt, get through periods of financial hardship, and diversify their wealth – without adding to their monthly expenses.
  • Job Summary
  • As a DevSecOps Engineer, you’ll play a key role in strengthening the security posture of our software development and deployment lifecycle. You’ll partner closely with Engineering, DevOps, and Product teams to embed security best practices into CI/CD pipelines, infrastructure, and codebases. This is a hands-on technical role ideal for someone who is passionate about automation, security-by-design, and improving developer enablement through secure systems and processes.
  • In addition to core DevSecOps initiatives, this role supports day-to-day Security Operations tasks such as triaging phishing reports, investigating alerts, and assisting with incident response
  • Responsibilities
  • Secure Development & Engineering Support
  • Provide AppSec consulting and guidance to engineering teams on
  • remediation of vulnerabilities and secure coding practices.
  • Manage and tune SAST, SCA, and secret-scanning tools; assist with findings
  • triage and developer enablement.
  • Implement and maintain supply chain security measures, including SBOM
  • generation and dependency integrity checks.
  • Collaborate with DevOps to integrate security checks into CI/CD pipelines and
  • infrastructure-as-code (IaC)
  • Configure and manage key security and cloud-native tools (AWS Security
  • Hub, GuardDuty, Inspector, Config, etc.).
  • Partner with teams to harden configurations for WAF, VPN/ZTNA, and endpoint
  • security.
  • Contribute to infrastructure automation and policy-as-code implementations
  • for security baselines.
  • Qualifications and Job Requirements
  • 5+ years of experience in DevSecOps, Application Security, or related roles.
  • Strong understanding of cloud environments (AWS preferred) and associated
  • native security services.
  • Experience with CI/CD tools (e.g., GitHub Actions, Jenkins, CircleCI) and
  • integrating security into pipelines.
  • Hands-on experience with SAST/SCA tools (e.g., SonarQube, Snyk, Semgrep,
  • Trivy) and vulnerability management platforms.
  • Familiarity with IaC (Terraform, CloudFormation) and security configuration
  • management.
  • Comfort with scripting and automation (Python, Bash, or similar).
  • Strong communication skills and the ability to collaborate effectively with
  • other departments asynchronously or via Slack.
  • Demonstrated familiarity with AI-based coding tools, MCP servers, and secure
  • implementation considerations preferred.
  • Working knowledge of SIEM platforms and log analysis tools a plus (e.g.,
  • Splunk, Panther, Coralogix).
  • Knowledge of security frameworks and best practices a plus (NIST CSF, CIS
  • Benchmarks, OWASP Top 10).
  • Self-directed, curious, and able to manage priorities in a fast-paced
  • environment.
  • What We Offer
  • 100% Remote Work: Enjoy the freedom to work from the location that helps you thrive. All it takes is a laptop and a reliable internet connection.
  • Highly Competitive USD Pay: Earn an excellent, market-leading compensation in USD, that goes beyond typical market offerings.
  • Paid Time Off: We value your well-being. Our paid time off policies ensure you have the chance to unwind and recharge when needed.
  • Work with Autonomy: Enjoy the freedom to manage your time as long as the work gets done. Focus on results, not the clock.
  • Work with Top American Companies: Grow your expertise working on innovative, high-impact projects with Industry-Leading U.S. Companies.
  • Why You’ll Like Working Here
  • A Culture That Values You: We prioritize well-being and work-life balance, offering engagement activities and fostering dynamic teams to ensure you thrive both personally and professionally.
  • Diverse, Global Network: Connect with over 600 professionals in 25+ countries, expand your network, and collaborate with a multicultural team from Latin America.
  • Team Up with Skilled Professionals: Join forces with senior talent. All of our team members are seasoned experts, ensuring you're working with the best in your field.
  • Apply now!