Demo

Senior DevSecOps Engineer

Purple Drive Technologies LLC
Boston, MA Other
POSTED ON 1/9/2026 CLOSED ON 3/4/2026

What are the responsibilities and job description for the Senior DevSecOps Engineer position at Purple Drive Technologies LLC?

Job Details

Job Title: Senior DevSecOps Engineer

Location: Boston, MA

Employment Type: Full-Time

Experience: 10 Years (Overall IT), 3-7 Years in Security/DevSecOps



Job Summary

We are seeking a Senior DevSecOps / Application Security Engineer to embed security across the software development lifecycle (SDLC) and cloud-native environments. This role will focus on integrating security into CI/CD pipelines, cloud infrastructure, containers/Kubernetes, and automation frameworks, ensuring scalable, compliant, and secure delivery of applications.

The ideal candidate has strong hands-on experience in application security, cloud security, DevSecOps practices, and security automation, and thrives in a highly collaborative engineering environment.



Key Responsibilities

Secure SDLC & Application Security

  • Embed security controls across all phases of the SDLC.

  • Perform threat modeling, secure code reviews, and risk assessments.

  • Implement and manage SAST, DAST, and SCA tools, and guide development teams on remediation.

  • Enforce secure coding standards and promote a security-first engineering culture.




CI/CD Pipeline Security

  • Design, build, and maintain secure CI/CD pipelines using tools such as GitHub Actions, GitLab CI, Jenkins, and Azure DevOps.

  • Automate security scanning, policy enforcement, and compliance checks within pipelines.

  • Integrate secrets management and environment hardening into CI/CD workflows.




Cloud & Infrastructure Security

  • Review and secure Infrastructure as Code (IaC) using Terraform, CloudFormation, ARM, or Pulumi.

  • Enforce cloud security best practices across AWS, Azure, and/or Google Cloud Platform.

  • Deploy and manage cloud-native security services such as AWS GuardDuty, Azure Defender, and Google Cloud Platform Security Command Center (SCC).




Container & Kubernetes Security

  • Build and manage secure container images and implement vulnerability scanning using tools like Trivy, Aqua, Clair, or Prisma Cloud.

  • Enforce Kubernetes security controls, including RBAC, network policies, and pod security standards.

  • Monitor Kubernetes clusters and remediate security vulnerabilities.




Security Automation & Tooling

  • Develop automation scripts and workflows using Python, Bash, Go, or PowerShell.

  • Integrate SIEM/SOAR platforms with CI/CD and cloud environments.

  • Automate vulnerability management and remediation processes.




Compliance & Governance

  • Support compliance initiatives aligned with NIST, ISO 27001, SOC 2, PCI-DSS, and internal security policies.

  • Implement policy-as-code using tools such as OPA, Conftest, and cloud policy engines.

  • Produce audit-ready documentation, metrics, and security reports.




Monitoring & Incident Response

  • Integrate security telemetry into CI/CD pipelines and cloud platforms.

  • Respond to and triage security incidents related to applications, pipelines, and cloud workloads.

  • Conduct root-cause analysis and implement preventive security controls.




Required Skills & Qualifications

  • 10 years of overall IT experience, with 3-7 years in Cybersecurity, DevSecOps, or Cloud Security roles

  • Strong scripting and programming skills (Python, Go, Bash, or PowerShell)

  • Hands-on experience securing CI/CD pipelines

  • Deep understanding of OWASP Top 10, CWE, CVEs

  • Strong experience with container and Kubernetes security

  • Knowledge of microservices, APIs, and distributed systems

  • Solid understanding of cloud networking, IAM, secrets management, and encryption

  • Experience with AWS, Azure, or Google Cloud Platform security services




Nice-to-Have Skills

  • Experience with SIEM/SOAR platforms

  • Exposure to multi-cloud security environments

  • Prior experience supporting regulated or compliance-heavy environments




Soft Skills

  • Strong collaboration and communication skills

  • Ability to influence engineering teams on security best practices

  • Proactive mindset with strong problem-solving abilities


Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.

Hourly Wage Estimation for Senior DevSecOps Engineer in Boston, MA
$51.00 to $64.00
If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

What is the career path for a Senior DevSecOps Engineer?

Sign up to receive alerts about other jobs on the Senior DevSecOps Engineer career path by checking the boxes next to the positions that interest you.
Income Estimation: 
$117,024 - $149,811
Income Estimation: 
$137,568 - $176,908
Income Estimation: 
$164,835 - $201,088
Income Estimation: 
$102,189 - $143,024
Income Estimation: 
$135,994 - $168,063
Income Estimation: 
$161,209 - $233,553
This job has expired.
Employees: Get a Salary Increase
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at Purple Drive Technologies LLC

  • Purple Drive Technologies LLC Montvale, NJ
  • We are seeking an experienced MuleSoft Technical Lead with strong expertise in designing, developing, and delivering enterprise integration solutions using... more
  • Just Posted

  • Purple Drive Technologies LLC Dallas, TX
  • Must Have Technical/Functional Skills: ServiceNow Developer, Test support, Strong documentation and problem-solving skills Exposure in building ServiceNow ... more
  • Just Posted

  • Purple Drive Technologies LLC Dallas, TX
  • We are seeking an experienced Oracle ORMB Functional Lead to drive business analysis, functional solutioning, and customer engagement activities for a heal... more
  • Just Posted

  • Purple Drive Technologies LLC Dallas, TX
  • Location:On-Site 4 days/week. Dallas, Columbus, or Phoenix office. Must Haves: 10 years of experience in API development and integration, with deep experti... more
  • Just Posted


Not the job you're looking for? Here are some other Senior DevSecOps Engineer jobs in the Boston, MA area that may be a better fit.

  • Lila Sciences Cambridge, MA
  • Your Impact at Lila The Senior DevSecOps Engineer will lead the integration of security best practices into our software development and deployment pipelin... more
  • 4 Days Ago

  • Draper Cambridge, MA
  • Overview Draper is an independent, nonprofit research and development company headquartered in Cambridge, MA. The 2,000 employees of Draper tackle importan... more
  • 18 Days Ago

AI Assistant is available now!

Feel free to start your new journey!