What are the responsibilities and job description for the DevSecOps Engineer position at Global Payments Inc.?
Description
Combines software development, IT operations, and security practices to deliver
a secure and compliant cloud environment. Responsible for implementing and
maintaining GCP security guardrails, integrating security into CI/CD pipelines,
and managing cloud security posture through tooling and automation. Works closely
with engineering and security teams to ensure cloud infrastructure meets
organizational security standards throughout the software delivery lifecycle.
WHAT PART WILL YOU PLAY?
production.
Minimum Qualifications
WHAT ARE OUR DESIRED SKILLS AND CAPABILITIES?
contribute to a more secure cloud environment.
in determining remediation priorities and escalation paths.
Benefits
Global Payments offers a comprehensive benefits package to all of our team
members, including medical, dental and vision care, EAP programs, paid time off,
recognition programs, retirement and investment options, charitable gift matching
programs, and worldwide days of service. To learn more, visit:
https://jobs.globalpayments.com/en/why-global-payments/benefits/
- At this time, we are unable to offer visa sponsorship for this position. Candidates must be legally authorized to work for any employer in the United States on a full-time basis without the need for current or future immigration sponsorship.***
Combines software development, IT operations, and security practices to deliver
a secure and compliant cloud environment. Responsible for implementing and
maintaining GCP security guardrails, integrating security into CI/CD pipelines,
and managing cloud security posture through tooling and automation. Works closely
with engineering and security teams to ensure cloud infrastructure meets
organizational security standards throughout the software delivery lifecycle.
WHAT PART WILL YOU PLAY?
- Design, implement, and maintain GCP security guardrails, policies, and
- Manage and continuously improve GCP Security Command Center configurations
- Operate and administer Wiz to monitor cloud security posture, triage findings,
- Integrate security controls and automated scanning into CI/CD pipelines to
production.
- Build and maintain security-focused Infrastructure as Code using Terraform to
- Develop and enforce GCP organization policies, IAM controls, VPC Service
- Identify and remediate misconfigured cloud resources, excessive permissions,
- Collaborate with DevOps and engineering teams to embed security best practices
- Automate security compliance checks and reporting to provide visibility into the
- Aid in designing cost-optimization strategies for cloud security infrastructure
- Participate in the hiring and interview process for the department.
Minimum Qualifications
- Bachelor degree or equivalent experience in a technical discipline.
- 5 years of experience in DevOps, cloud security, or a related technical field.
- 5 years of hands-on experience with GCP, including IAM, VPC, Security Command
- Experience implementing and managing cloud security posture tools such as Wiz
- Experience developing Infrastructure as Code with Terraform in GCP.
- Demonstrated experience securing CI/CD pipelines in Jenkins, GitHub Actions,
- Familiarity with GCP guardrails including org policies, VPC Service Controls,
- Experience with container security and Kubernetes workload hardening.
- Working experience with firewalls, proxies, and network security controls in
- Experience scripting in Bash, Python, or similar languages to automate security
- Familiarity with GitOps practices and tools such as ArgoCD or similar.
- Experience with monitoring and observability tools including Grafana or similar.
- Understanding of DevSecOps principles and secure software development lifecycle
- Google Cloud security certifications (e.g., Professional Cloud Security
WHAT ARE OUR DESIRED SKILLS AND CAPABILITIES?
- Skills / Knowledge: Solid working knowledge of GCP security services and cloud
contribute to a more secure cloud environment.
- Job Complexity: Works on moderately complex security issues that require analysis
in determining remediation priorities and escalation paths.
- Supervision: Works with general direction and some independence. Collaborates
Benefits
Global Payments offers a comprehensive benefits package to all of our team
members, including medical, dental and vision care, EAP programs, paid time off,
recognition programs, retirement and investment options, charitable gift matching
programs, and worldwide days of service. To learn more, visit:
https://jobs.globalpayments.com/en/why-global-payments/benefits/