×
Register Here to Apply for Jobs or Post Jobs. X
More jobs:

DevSecOps Engineer; Health

Job in Los Angeles, Los Angeles County, California, 90079, USA
Listing for: CVS Health Corporation
Full Time position
Listed on 2026-10-02
Job specializations:
  • IT/Tech
    Cybersecurity
Salary/Wage Range or Industry Benchmark: 130000 - 261000 USD Yearly USD 130000.00 261000.00 YEAR
Job Description & How to Apply Below
Position: Staff DevSecOps Engineer (Health 100)

We’re building a world of health around every individual — shaping a more connected, convenient and compassionate health experience. At CVS Health®, you’ll be surrounded by passionate colleagues who care deeply, innovate with purpose, hold ourselves accountable and prioritize safety and quality in everything we do. Join us and be part of something bigger – helping to simplify health care one person, one family and one community at a time.

Staff

Engineer, Dev Sec Ops  Security Engineering

Health 100 Focus | Security Implementation, Migration and Automation Leadership

Role Overview

The Staff Engineer, Dev Sec Ops  Security Engineering, is responsible for leadingtechnicalimplementation, migration, automation, mobile application security and standardizationacross the Health 100 portfolio. This roletranslates applicationsecuritystrategy into scalable engineering solutions that strengthen release readiness, improvevulnerability remediation,expand security and mobile testing coverage, and enable secure-by-default delivery across engineering teams.

Who You Are
  • A senior technical employee with deep expertise in application security, Dev Sec Ops , automation and secure delivery practices.

  • Experiencedtranslatingsecuritystrategy into implementations that development teams can adopt consistently.

  • Strong in automation, tooling integrationandprocess improvementthat reduce manualeffortand improve engineering outcomes.

  • Comfortable using metrics to communicate technical risk, delivery progress and measurable outcomes.

  • Able to balance hands-on engineering depth with cross-functional influence across application,platform,cloudand security teams.

Role Responsibilities
1. Health 100 Security Enablement
  • Support application onboarding andsecurityenablementfor

    Health 100 initiatives.

  • Help development teams meet security requirements throughstandardtooling, pipelineintegration and repeatable implementation patterns.

  • Translate release-readiness expectations into repeatable technical patterns and evidence.

  • Ensuremobile applications are included in Health 100 security enablementthrough mobile application security testing,secureconfigurationvalidationandclear remediation guidance.

2. Security Implementation & Major Initiatives
  • Lead Dev Sec Opsimplementationinitiatives  aligned to security goals and engineering priorities.

  • Own technical planning, architecture, delivery,issueresolutionand implementation outcomes.

  • Coordinate across application,platform and security teams to remove blockers and sustain adoption.

3. Pipeline Enforcement & Automation
  • Design, implementandimproveCI/CD security controls,pipeline enforcement and automated scanning workflows.

  • Partner with developmentandplatform teams to embed security controlswithoutcreating unnecessary delivery friction.

  • Build self-service security solutions and reusable automation that reduce manual intervention and improve engineering efficiency.

  • Automatesecret-detection and CI/CD security workflows, including Gitleaks or comparable capabilities.

4. Security Tool Migration & Standardization
  • Lead security-tool migrations, including transitions such as Checkmarx to Snyk, from design through stable production operation.

  • Produce and validate initial post-migration scan results to demonstrate successful implementation and integration.

  • Standardize tooling configurations across development teams to improve consistency, ease ofuseand policy alignment.

  • Partner with platform teams to reduce legacy pipeline risk, fragmentedconfigurationsand duplicated manual processes.

5. Vulnerability Reduction & SLA Compliance
  • Drive remediation of critical and high-risk vulnerabilities across Health 100 applications with clear technical ownership and follow-through.

  • Monitor remediation against established SLAs andidentifyaging,recurrenceand systemic issues.

  • Lead technical prioritization of high-impact open-source and software supply chain exposures affecting multiple applications.

  • Provide remediation guidance and scalable fixes that teams can adopt consistently.

6. Supply Chain, Cloud & Container Security
  • Improve open-source visibility through SBOM coverage and related software supply chain practices.

  • Drive secure-by-default dependency usage and remediation of high-risk third-party components.

  • Engineer controls for public cloud, container, Kubernetes, Security-as-Codeand Infrastructure-as-Code environments.

  • Applynetwork-securityandcloud-architectureexpertiseto design practical, resilient solutions.

  • Applymobile security expertise to assessiOS and Android applicationrisk,…

To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary