Job Title: Devsecops Engineer
Experience: 8+
Location: Phoenix, AZ
Responsibilities
- Lead and own the end-to-end deployment strategy across the bank’s hybrid public cloud and on-premises environments.
- Design, build, and maintain CI/CD pipelines to enable repeatable, version-controlled releases, including rollback mechanisms and change management.
- Package and deploy platform components using containerization and orchestration technologies (e.g., Docker, Kubernetes, Helm), as well as VM-based approaches where necessary.
- Develop and manage infrastructure-as-code (IaC) solutions and automation using tools such as Terraform and CloudFormation for provisioning environments, networking, and configuration.
- Implement end-to-end release orchestration, including disaster recovery (DR) capabilities.
- Implement and enforce secure configuration management practices, including TLS, secrets management, certificate lifecycle management, RBAC/IAM, and least-privilege access controls.
- Establish and maintain observability frameworks, including metrics, logging, distributed tracing, alerting, dashboards, and on-call runbooks.
- Modernize and refactor existing CI/CD shared libraries into tool-agnostic, reusable components.
- Define and implement reliability best practices, including backup and recovery, disaster recovery planning, capacity management, performance optimization, and incident response.
- Develop and maintain comprehensive deployment documentation for internal stakeholders.
- Collaborate effectively with both internal teams and external partners to ensure successful delivery and operations.
Requirements & Qualifications
- Minimum 5+ years of experience in the IT field or in a related discipline
- Proven experience owning end-to-end delivery lifecycle from development through production (build, release, rollback, and monitoring).
- Strong proficiency in scripting languages such as Python and Bash.
- Experience delivering multi-service applications (Java, Python, Node.js) with standardized CI/CD processes, versioning, and rollback capabilities.
- Ability to read and debug application code to resolve issues related to build, configuration, and runtime environments.
- Hands-on experience deploying applications on container orchestration platforms (e.g., EKS, OpenShift).
- Practical experience with both containerized and VM-based deployment models.
- Solid understanding of networking fundamentals, including DNS, TLS, reverse proxies, load balancing, and firewall configurations.
- Experience with CI/CD tools (e.g., Jenkins, GitHub Actions, Harness) and automated release processes.
- Strong experience in automating System Recovery process and DR processes.
- Experience with Harness templates, pipelines and platform management.
- Expertise in infrastructure-as-code and configuration management tools (e.g., Azure ARM, Terraform, Ansible, CloudFormation).
- Strong knowledge of security best practices, including secrets management, certificate handling, IAM/RBAC policies, patching, and auditing.
- Experience building observability solutions and operational runbooks (logs, metrics, alerts, incident management).
- Ability to design and operate within restricted network environments (e.g., proxy configurations, no-egress setups, air-gapped systems).
Excellent analytical, troubleshooting, and problem-solving skills.