Demo

DevSecOps Engineer

Veracity Software Inc
Charlotte, NC Full Time
POSTED ON 8/6/2026
AVAILABLE BEFORE 10/4/2026
Title: DevSecOps Engineer

Duration: 12 Months

Location: Charlotte, NC - Hybrid Role

Overview

We are seeking an experienced Senior DevSecOps Engineer with a strong background in automation, security-first engineering, application support, and vulnerability management within a regulated enterprise environment. The ideal candidate brings deep expertise in shift-left security practices, container orchestration, CI/CD pipeline engineering, and the ability to embed security controls directly into the software delivery lifecycle. A solid foundation in scripting, hands-on troubleshooting, and comfort operating in a fast-paced Agile environment are essential.

Key Responsibilities

  • Design, build, and maintain CI/CD pipelines using GitHub Actions (reusable/caller workflow pattern) and Harness CD (rolling, canary, and blue-green deployment strategies).
  • Implement event-driven deployment triggers (e.g., Kafka EDA bus integration between CI and CD).
  • Champion shift-left security by embedding SAST, SCA, secret scanning, and code quality gates at PR time, ensuring vulnerabilities are caught before merge, not after deployment.
  • Integrate and manage Checkmarx (SAST), Black Duck (SCA/license compliance), SonarQube (code quality/security hotspots), and GitHub Secret Scanning into CI pipelines as hard-gate merge checks.
  • Perform container image scanning using Prisma Cloud and Artifactory Xray; triage and remediate OS-level and application-layer CVEs.
  • Implement and enforce artifact signing (GPG) and integrity verification as part of the release pipeline.
  • Manage vulnerability lifecycle from scan ingestion through ServiceNow AVR (Application Vulnerability Repository) to remediation closure.
  • Partner with cross functional teams to improve system reliability, performance, and deployment workflows.
  • Collaborate with AppSec and SOC teams on findings from Splunk Enterprise Security rules and AppDynamics threat detection (OWASP attack patterns).
  • Deploy, manage, and troubleshoot workloads on OpenShift Container Platform (OCP) across multi-data-center environments (DEV, UAT, PROD, DR).
  • Author and maintain Helm charts with environment-specific value overlays, including templates for Deployments, StatefulSets, Services, Ingress/Routes, HPA, PodDisruptionBudgets, and NetworkPolicies.
  • Manage Istio service mesh configurations for canary traffic shifting and mTLS enforcement.
  • Automate TLS/mTLS certificate lifecycle using Venafi cert-manager with auto-renewal policies.
  • Build and maintain monitoring stacks using Splunk, Prometheus, Grafana, and AppDynamics for APM, error tracking, and performance baselines.
  • Troubleshoot application issues, resolve incidents, and manage ticket requests across Jira projects in a timely manner.
  • Develop and maintain automation scripts using Python, Bash/Shell, PowerShell, or Perl.
  • Contribute to Agile ceremonies and participate in continuous improvement initiatives.

Required Qualifications

  • 10 years of overall IT experience, including 5 years as a DevOps/DevSecOps Engineer.
  • Strong hands-on experience with GitHub Actions, building reusable workflows, composite actions, and matrix strategies for multi-language CI pipelines.
  • Hands-on experience with Harness CD or equivalent enterprise CD platform (pipeline-as-code, environment promotion, approval gates, rollback strategies).
  • Production experience operating OpenShift Container Platform (OCP) or Kubernetes, including Helm chart authoring, namespace administration, RBAC, SCC enforcement, and troubleshooting pod/node issues.
  • Deep understanding of shift-left security tooling: SAST (Checkmarx or equivalent), SCA (Black Duck/Snyk), secret scanning, and container image scanning (Prisma Cloud/Trivy/Xray).
  • Proficiency in at least two scripting languages: Python, Bash/Shell, PowerShell, or Perl.
  • Experience with Java-based environments (Spring Boot, Gradle) and SQL-driven systems (Oracle preferred).
  • Hands-on experience with HashiCorp Vault or equivalent secrets management platform.
  • Demonstrated ability to troubleshoot complex, multi-tier application issues across containers, networking, databases, and middleware.
  • Strong understanding of GitFlow branching strategies, pull request workflows, mandatory peer review, and code coverage enforcement.
  • Strong communication skills and experience working in an Agile development environment.

Preferred Qualifications

  • Experience in financial services, banking, or other regulated industries (PCI-DSS, SOX, AML/KYC compliance awareness).
  • Exposure to AI/ML technologies or Python based automation.
  • Familiarity with JFrog Artifactory for artifact management, internal registry proxying, and Xray policy enforcement.
  • Hands-on experience with Splunk (log analysis, ES correlation rules) or Grafana/Prometheus for observability.
  • Experience contributing to governance-as-code frameworks or platform engineering teams.
  • Familiarity with CI/CD pipelines, cloud platforms, or containerization tools.

Salary.com Estimation for DevSecOps Engineer in Charlotte, NC
$121,041 to $152,967
If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

What is the career path for a DevSecOps Engineer?

Sign up to receive alerts about other jobs on the DevSecOps Engineer career path by checking the boxes next to the positions that interest you.
Income Estimation: 
$92,369 - $122,605
Income Estimation: 
$117,024 - $149,811
Income Estimation: 
$158,960 - $205,707
Income Estimation: 
$154,509 - $200,187
Employees: Get a Salary Increase
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at Veracity Software Inc

  • Veracity Software Inc Denver, CO
  • Location: Denver, CO Employment Type: Full-Time Openings: 2 The Transmission Line Project Engineering Manager will lead the design and execution of high-vo... more
  • 13 Days Ago

  • Veracity Software Inc Beloit, WI
  • Contract role Location: BELOIT, WI, Onsite We are seeking a dedicated professional to drive operational excellence and enhance productivity for employees a... more
  • 13 Days Ago

  • Veracity Software Inc Washington, DC
  • Seeking a highly skilled Senior EAM Project Manager for a strategic staff augmentation engagement with a premier infrastructure client in the Washington, D... more
  • 14 Days Ago

  • Veracity Software Inc Washington, DC
  • Seeking a highly skilled Senior UKG ProWFM Integration Engineer for a high-impact, long-term engagement with a premier client in the Washington, D.C. area ... more
  • 14 Days Ago


Not the job you're looking for? Here are some other DevSecOps Engineer jobs in the Charlotte, NC area that may be a better fit.

  • STEPS TALENT, LLC Charlotte, NC
  • Position: Senior DevSecOps Engineer Location: Charlotte, NC ( HYBRID: 3 days In-office per week ) Duration: DIRECT HIRE – FULL TIME Summary: We are seeking... more
  • 15 Days Ago

  • Regions Charlotte, NC
  • Thank you for your interest in a career at Regions. At Regions, we believe associates deserve more than just a job. We believe in offering performance-driv... more
  • 2 Months Ago

AI Assistant is available now!

Feel free to start your new journey!