DevSecOps Engineer
Family: Security
Embeds security controls into CI/CD pipelines and developer workflows so vulnerabilities are caught before they reach production.
Day to day
Integrates SAST, DAST, and SCA scanners into pipelines, triages findings with developers, and champions security-as-code practices across engineering teams.
Core skills
- SAST/DAST/SCA
- CI/CD security
- container scanning
- policy-as-code
- threat modeling