We are hiring for a
Senior DevSecOps & AI Engineer. This role focuses on
application security, DevSecOps, cloud security, and AI/LLM security across enterprise applications and platforms.
The ideal candidate will have 6+ years of security engineering experience with strong expertise in offensive security, vulnerability management, and security automation.
What You Bring
- 6+ years of experience in Application Security, DevSecOps, Offensive Security, or Security Engineering
- Strong experience with SAST, DAST, secure code review, and vulnerability management
- Hands-on penetration testing experience across web, API, mobile, cloud-native, and AI-powered applications
- Experience with AI/LLM security, including prompt injection, prompt manipulation, and jailbreak testing
- Strong understanding of SDLC, SSDLC, DevSecOps, and MLOps practices
- Experience securing cloud-native and AI-enabled applications
- Strong Python scripting and security automation experience
- Experience with Azure cloud security
- Experience with Kubernetes, container security, and container image analysis
- Experience with SCA and open-source security
- Experience with GitHub security controls
- Experience with threat modeling and risk assessment
- Bachelor s or master s degree in Computer Science, Information Security, Cyber Security, or a related discipline
- Any 2 3 of the specified security or cloud security certifications
What You'll Do
- Perform security assessments and penetration testing across web, API, mobile, cloud-native, and AI-powered applications
- Conduct secure code reviews and identify application security weaknesses
- Validate findings from SAST, DAST, SCA, and container security tools
- Perform vulnerability analysis, root cause investigation, and remediation validation
- Assess AI and LLM applications for security vulnerabilities and misuse scenarios
- Evaluate AI deployment architectures and recommend security controls
- Integrate security controls into CI/CD pipelines and deployment workflows
- Automate security validation, reporting, and vulnerability workflows using Python
- Perform Azure cloud security assessments
- Review Kubernetes and containerized workloads for security risks
- Prioritize vulnerabilities based on exploitability, business risk, and operational impact
- Track security findings through closure and verify remediation effectiveness
- Support security governance, compliance, and audit activities
- Work with development, DevOps, architecture, and product teams on security best practices
- Provide guidance on secure coding and vulnerability remediation
- Mentor engineering teams on security-first development practices
Nice to have
- CISSP
- CSSLP
- Microsoft Azure Security Engineer (AZ-500)
- Certified DevSecOps Professional
- Azure or AWS Cloud Security certifications