DevSecOps Engineer
Listed on 2026-08-22
-
IT/Tech
Cybersecurity, Cloud Computing: Infrastructure & Operations
Title
Dev Sec Ops Engineer
DepartmentEngineering
LocationNiwot/Hybrid
Reports ToSenior Firmware Engineering Manager
About UsEstablished in 1972, Particle Measuring Systems is a global leader for micro-contamination monitoring equipment improving the performance of clean manufactures in the semiconductor and pharmaceutical industries. We’re a growing technology company in Niwot, Colorado, the heart of the Rocky Mountains. We offer an exceptional and rewarding work environment in a great place to live. Our employees enjoy challenging projects in the development and manufacture of light scattering particle counters and diverse technologies and applications.
YourImpact
We are looking for a Dev Sec Ops Engineer who will contribute to the success of our Engineering team by designing, implementing, and managing secure development, testing, compliance, and release processes. In this role, you will help ensure the efficient, secure, and reliable delivery of firmware and software products while collaborating with cross-functional teams to drive continuous improvement, operational excellence, and security-first development practices.
The RoleThe Dev Sec Ops Engineer plays a critical role in building and maintaining secure cloud infrastructure, CI/CD pipelines, automated testing environments, and security compliance processes. This position partners closely with software, firmware, quality, and cybersecurity teams to integrate security throughout the software development lifecycle and support the successful delivery of high-quality products.
Job Responsibilities- Design, implement, and maintain secure cloud environments and CI/CD pipelines that integrate automated security testing, vulnerability management, compliance controls, and continuous security monitoring
- Implement and promote security and compliance practices, including vulnerability scanning, dependency analysis, Software Bill of Materials (SBOM) management, threat modeling, and secure coding standards using SAST, DAST, and SCA tools
- Collaborate with firmware and software development teams to improve workflows, release strategies, automated testing environments, and secure development practices
- Automate provisioning and configuration of servers, containers, and infrastructure components using Infrastructure as Code (IaC) and configuration management tools
- Manage software artifacts and third-party dependencies through binary repository management solutions
- Implement and maintain monitoring, logging, and observability solutions to ensure the availability, performance, and security of CI/CD infrastructure
- Participate in the vulnerability management lifecycle, including investigation, prioritization, and remediation support for security vulnerabilities and incidents
- Troubleshoot and resolve issues related to development environments, automated testing systems, release processes, and security incidents
- Provide technical guidance and mentorship across teams, promoting knowledge sharing, continuous improvement, and secure software development practices
- Continuously evaluate processes and tools to improve efficiency, quality, reliability, and security
- This job description is not intended to be all-inclusive. Responsibilities may evolve over time, and other related duties may be assigned to meet the ongoing needs of the company
- Bachelor of Science in Computer Science or related Engineering field
- Proven experience as a Dev Sec Ops Engineer, Security-Focused Dev Ops Engineer, or similar role
- Development experience in either embedded firmware or software
- Familiarity integrating SAST, DAST, SCA and SBOM tools into CI/CD pipelines
- Hands-on experience working with binary repositories
- Proficiency with AWS or other major cloud platforms
- Proficiency in IaC and configuration management tools
- Strong scripting skills in languages like Bash, Python, or Power Shell
- Familiar with build tools such as CMake, Make, or custom tool chains
- Experience with containerization technologies such as Docker
- Working knowledge of CI/CD tools like Jenkins, Bitbucket Pipelines and Git Hub Actions
- Familiarity with Cyber Security practices including cybersecurity principles, vulnerability management, and Dev Sec Ops practices
- Familiarity with monitoring and logging tools such as Prometheus and Grafana
- Excellent problem-solving and troubleshooting skills, with the ability to analyze complex systems and identify root causes
- Working knowledge of shift-left principles and practices
- Strong communication and collaboration skills, capable of working effectively within a team
- Understanding of Agile, Dev Ops and Dev Sec Ops methodologies and their application in software development processes
- Expertise in Git and the Atlassian suite of software development tools including Bitbucket pipelines
- Experience integrating security scanning tools into CI/CD pipelines
- Familiarity with software composition analysis (SCA) and open-source compliance practices
- Familiarity with DORA metrics
- Certifications in…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).