×
Register Here to Apply for Jobs or Post Jobs. X

Senior DevSecOps Engineer - GitOps & Secure CI​/CD

Job in Berkeley Heights, Union County, New Jersey, 07922, USA
Listing for: Mphasis
Full Time position
Listed on 2026-05-27
Job specializations:
  • IT/Tech
    Cybersecurity, Systems Engineer, Cloud Computing
Salary/Wage Range or Industry Benchmark: 80000 - 100000 USD Yearly USD 80000.00 100000.00 YEAR
Job Description & How to Apply Below

We are seeking a ArgoCD, Jenkins, Artifactory, Dev Sec Ops  Resource having 8+ years of professional experience to build secure CI/CD pipelines using Jenkins and Artifactory, implementing Git Ops deployments with ArgoCD on Kubernetes, and integrating automated security scans (SAST, DAST, SCA) to "shift-left" security. The engineer will manage infrastructure as code, enhance vulnerability management, and automate security guardrails.

This role requires close collaboration with cross‑functional teams, adherence to Engineering standards, Architecture patterns and Agile practices, and ownership of service quality and delivery.

Key Responsibilities
  • Pipeline Orchestration (Jenkins):
    Architect and maintain end-to-end CI/CD pipelines using Jenkins (often leveraging Shared Libraries or Jenkins MPL) to automate builds, testing, and security scanning.
  • CI/CD & Git Ops:
    Design, implement, and maintain CI/CD pipelines using Jenkins and Git Ops workflows with ArgoCD for Kubernetes environments.
  • Git Ops & Continuous Delivery (ArgoCD):
    Implement and optimize declarative, Git Ops-based deployment workflows using ArgoCD to manage the state of Kubernetes clusters.
  • Artifact Management:
    Manage and optimize Artifactory for securing and storing container images, libraries, and binary artifacts.
  • Artifact Management (JFrog Artifactory):
    Manage the full lifecycle of software binaries and dependencies; integrate Artifactory with automation to ensure only scanned, approved artifacts reach production.
  • "Shift-Left" Security:
    Embed automated security tools—such as SAST (Static Analysis), SCA (Software Composition Analysis), and DAST (Dynamic Analysis)—directly into Jenkins pipelines to identify vulnerabilities early.
  • Infrastructure as Code (IaC):
    Automate security guardrails and infrastructure provisioning using Terraform, Helm, or similar tools.
  • Infrastructure as Code (IaC):
    Provision and secure cloud infrastructure using Terraform or Pulumi, ensuring all resources follow "least-privilege" and compliance standards.
  • Security Integration (Dev Sec Ops ):
    Integrate automated SAST, DAST, SCA, and container scanning tools into pipelines, maintaining high signal-to-noise ratios.
  • Vulnerability Management:
    Perform threat modeling, manage secrets, and respond to vulnerabilities (CVEs).
  • Policy-as-Code:
    Implement automated compliance checks using tools like Open Policy Agent (OPA) or Kyverno.
  • Monitoring & Compliance:
    Monitor and scale infrastructure, ensuring compliance with standards such as SOC2, HIPAA, or GDPR.
Mandatory Technical Skills & Competencies
  • Experience in Dev Ops, Platform Engineering, or Sec Ops.
  • Strong understanding of containerization and orchestration (Kubernetes).
  • Hands‑on experience implementing automated security controls Tools:
    ArgoCD, Jenkins, Artifactory, Kubernetes, Docker, Terraform.
  • Security: SAST/DAST tools, vulnerability management, secrets management (e.g., Vault), network security.
  • Security Tooling:
    Hands‑on experience with scanners like Snyk, Sonar Qube, Trivy, or Prisma Cloud.
  • Containerization:
    Deep understanding of Docker and Kubernetes (EKS, GKE, or AKS) for orchestrating microservices.
  • Scripting/

    Languages:

    Proficiency in Python, Bash, or Groovy.
  • Artifact Tools:
    Advanced experience with JFrog Artifactory for repository management and build info tracking.
  • Experience with GCP services
    .
  • Knowledge of monitoring tools such as Prometheus, Grafana, or ELK stack
    .
  • Understanding of distributed tracing and logging
    .
  • Cloud concepts like fundamentals, App Configuration / App Settings, Key Vault, Cache, Service Bus (queues/topics), Event driven architecture, Blob Storage, cloud security, scalability, and resiliency patterns.
  • Understanding of Microservice Development design, implementation, Middleware (Kafka), filters, exception handling, logging, Authentication and authorization (JWT/OAuth concepts), Performance optimization and secure coding practices.
  • Agile and Collaboration Tools:
    Sprint planning, work item tracking, and agile delivery, Technical documentation and knowledge sharing.
Soft Skills
  • Strong problem-solving and analytical skills.
  • Clear communication with technical and non‑technical stakeholders.
  • Ownership mindset and production‑grade engineering discipline.

Ability to work independently and within cross‑functional teams.

#J-18808-Ljbffr
Position Requirements
10+ Years work experience
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary