Senior DevSecOps Engineer
Listed on 2025-12-01
-
IT/Tech
Cloud Computing, Cybersecurity
What Application Development & Maintenance contributes to Cardinal Health
Information Technology oversees the effective development, delivery, and operation of computing and information services. This function anticipates, plans, and delivers Information Technology solutions and strategies that enable operations and drive business value.
Application Development & Maintenance performs configuration or coding to develop, enhance and sustain the organization's software systems in a cross-functional team environment through adherence to established design control processes and good engineering practices. This job family programs and configures end user applications, systems, databases and websites to achieve the organization's internal needs and externally-facing business needs. Application Development & Maintenance partners with business leaders, investigates user needs and conducts regular assessments, maintenance and enhancements of existing applications.
The Senior Dev Sec Ops Engineer will drive value to Cardinal Health through their deep hands‑on experience with CI/CD software development through Dev Sec Ops governance and practice. The goal is to help the product teams accelerate the time‑to‑value for business enablement, allowing Cardinal Health to continue growing by removing IT as a barrier by adopting Dev Sec Ops automation and cloud‑native implementations.
Responsibilities- Define and implement an enterprise Dev Sec Ops strategy, standards, and governance across SaaS and cloud environments to foster a security-first culture and streamline development workflows.
- Design and automate CI/CD pipelines for Oracle Fusion, OCI, GCP, and related integrations.
- Drive security automation, compliance validation, and continuous monitoring within pipelines and platforms.
- Build and maintain infrastructure‑as‑code and policy‑as‑code frameworks to enable secure, repeatable deployments.
- Collaborate with Cloud and Security teams to ensuresecurity,high availability, disaster recovery, and performance standards.
- Lead incident response, root cause analysis, and system reliability improvements.
- Evaluate and integrate emerging Dev Sec Ops tools and practices to enhance automation, security, and efficiency.
- Provide technical leadership, mentorship, and guidance to engineering teams on Dev Sec Ops and SaaS best practices.
- 8‑12 years of software development and customer engagement experience, preferred
- Bachelor's degree in related field, or equivalent work experience, preferred
- Experience with Dev Sec Ops in Oracle Fusion ERP/SCM/Analytics ecosystems.
- Familiarity with Oracle Cloud Infrastructure (OCI) Dev Ops services, APIs, and automation frameworks.
- Experience with policy‑as‑code and security‑as‑code (OPA, Sentinel, or equivalent).
- Knowledge of enterprise integration patterns between SaaS and hybrid cloud systems.
- Proven experience leading Dev Sec Ops initiatives in enterprise SaaS environments, preferably involving Oracle Cloud Infrastructure and Oracle Fusion applications.
- Hands‑on expertise with CI/CDplatforms(e.g., Jenkins, Concourse, Git Hub Actions) and related automation tools (e.g., Ansible, Maven/Gradle).
- Strong proficiency with infrastructure‑as‑code tools(e.g., Terraform, Cloud Formation).
- Experience with integrations of Veracode and code validation tools.
- Solid understanding of cloud security architecture, including IAM, network segmentation, key/certificate management, and secrets management.
- Deep experience with containerization and orchestration (Docker, Kubernetes, Open Shift).
- Experience in monitoring and observability using tools such as Dynatrace or New Relicand logging solutions (e.g., Splunk).
- Proficiency in Bash, Power Shell, or Python scripting for automation.
- Working knowledge of GCP cloud services and associated CI/CD and security frameworks.
- Strong understanding of governance, risk, and compliance (GRC) practices in regulated environments (e.g., SOX, HIPAA).
- Excellent communication skills and the ability to influence cross‑functional teams and senior leadership.
- Applies advanced knowledge and understanding of concepts, principles, and…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).