×
Register Here to Apply for Jobs or Post Jobs. X
More jobs:

Senior DevSecOps Engineer; opens in tab

Job in New York, New York County, New York, 10261, USA
Listing for: Justworks, Inc.
Full Time position
Listed on 2026-10-07
Job specializations:
  • IT/Tech
    Cybersecurity
Salary/Wage Range or Industry Benchmark: 188000 - 242000 USD Yearly USD 188000.00 242000.00 YEAR
Job Description & How to Apply Below

At Justworks, you’ll enjoy a welcoming and casual environment, great benefits, wellness program offerings, company retreats, and the ability to interact with and learn from leaders in the startup community. We work hard and care about our most prized asset - our people.

We’re helping businesses get off the ground by enabling them to focus on running their business. We solve HR issues. We’re data-driven and never stop iterating. If you’d like to work in a supportive, entrepreneurial environment, are interested in building something meaningful and having fun while doing it, we’d love to hear from you.

We're united by shared goals and shared motivations se are best summed up in our company values, which are reflected in our product and in our team.

If this sounds like you, you’ll fit right in.

Who You Are

You believe the secure path should be the easy path. You've spent your career where security and engineering meet, and you've learned that scanners nobody reads and gates nobody can pass don't make software safer, they make engineers route around you. So you build guardrails instead: pipelines that catch vulnerabilities before a human ever has to, golden paths with security baked in, and automation that turns "did we patch that?"

from a meeting into a dashboard.

You're comfortable in a CI/CD pipeline, an AWS account, and a Kubernetes cluster. You can read application code well enough to tell a real injection risk from scanner noise, and you'd rather fix the template that generated the bug than file 40 tickets about it.

This is a foundational role. You'll be one of the first dedicated Dev Sec Ops  engineers on a platform organization supporting 300+ engineers, working alongside our Developer Experience and SRE teams and partnering closely with the Security organization. You'll shape how secure software gets built here, not just review it after the fact – including how we use AI to find and fix vulnerabilities before they reach production.

Security is primarily responsible for discovering, prioritizing, and reporting on risk posture;
Engineering is primarily responsible for remediation. This role lives at that seam — partnering with Digital Security on coverage, and driving the fixes through Engineering.

This role reports to Platform Engineering but has a dotted line reporting to Digital Security leadership.

What You Will Work On
  • Own security automation across our CI/CD pipelines (Git Hub Actions): SAST, SCA, secrets detection, and container scanning that runs fast and flags things worth fixing.
  • Build security into our golden path templates for Go, Rails, and Vue.js services, so new services start secure by default.
  • Harden our software supply chain: dependency management, artifact signing, SBOM generation, and provenance for what we ship.
  • Implement and tune infrastructure-as-code scanning (Terraform) and Kubernetes policy enforcement, catching misconfigurations before they reach an environment.
  • Coordinate vulnerability exposure remediation across all of Engineering, including code vulnerabilities, infrastructure configuration changes, and patching.
  • Build vulnerability management automation that routes findings to owning teams with context, deduplicates noise, and tracks remediation without spreadsheets.
  • Own implementation of secrets management patterns and tooling, and drive the elimination of long-lived credentials in favor of short-lived, federated identity.
  • Partner with the Security team on cloud security posture across our AWS environments, and make sure Platform's telemetry gives Detection & Response what they need.
  • Support Security's rollout of agentic penetration testing, and build the auto-remediation that turns vulnerability findings into fixes before they can be exploited.
  • Explore and roll out…
Position Requirements
10+ Years work experience
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary