DevSecOps Engineer
Listed on 2026-07-09
-
IT/Tech
Cybersecurity, Security Management & Operations
Company Description
Harmony Healthcare IT (HHIT) is a data management firm that moves and stores patient, employee, and business records for healthcare organizations. To strengthen care delivery and improve lives, vital information is preserved and managed by HHIT in a way that keeps it accessible, releasable, usable, interoperable, secure, and compliant. HHIT has established core values for the workplace. This helps to maintain a culture of excellence and provides guidance in our daily work.
HHIT’score values
- Do the right thing
- Be easy to work with
- Exceed expectations
- Serve Humbly
- Never stop improving
The Dev Sec Ops Engineer is responsible for strengthening the organization's security posture by integrating security across the software development lifecycle, Dev Ops processes, and cloud environments. Serving as a liaison between Security and Development teams, this role facilitates vulnerability management, coordinates remediation efforts, enhances automated security controls within CI/CD pipelines, and promotes secure development practices. The engineer collaborates with development, operations, and QA teams to implement secure‑by‑design principles, conduct threat modeling, manage Dev Sec Ops security tools, monitor security alerts and incident response activities, and drive continuous security improvements through automation, risk reduction, security metrics, stakeholder engagement, and secure authentication practices.
PrimaryResponsibilities
- Contribution to and assessment of security posture and risk across the company
- Serve as the liaison between Security and Development teams by facilitating vulnerability management activities, integrating and enhancing automated security scanning within CI/CD pipelines, monitoring compliance with secure development standards, assessing application vulnerability exploitability, false positives, and remediation priority, and coordinating remediation efforts while tracking risk reduction and policy adherence.
- Collaborate with development teams to integrate security into the SDLC. Provide secure coding guidance, perform threat modeling during design phases, and ensure security requirements are addressed from planning through deployment.
- Facilitate and enhance CI/CD security controls through automated scanning, policy enforcement, and secure deployment guardrails.
- Evaluate, deploy, and manage security tools relevant to Dev Sec Ops (static/dynamic code analysis, vulnerability scanners, cloud security platforms, etc.).
- Develop automation scripts and workflows to streamline security tasks such as patch management, intrusion detection, and compliance checks in code.
- Monitor and investigate security alerts across applications and infrastructure, perform initial incident triage and containment, escalate complex issues to SOC and senior security team members, and contribute to post‑incident reviews and security improvements. Participate in on‑call response as needed.
- Continuously monitor and improve the security posture of systems and Dev Ops processes, track key security metrics, recommend security enhancements based on emerging threats and best practices, and maintain security documentation aligned with organizational and compliance requirements.
- Work cross‑functionally with development, operations, and QA teams to promote secure development practices, facilitate security reviews and stakeholder meetings.
- Manage and promote secure authentication practices, including key management, secrets management, token security, and credential protection, while ensuring compliance with company policies and standards.
- Other duties as assigned
- Excellent communication skills, both written and spoken
- Strong interpersonal, time management, organizational, problem solving and analysis skills
- Drive to complete project work on time
- Ability to effectively prioritize and handle multiple tasks and projects
- Participation in on‑call rotation
- Bachelor’s degree in Computer Science, Cybersecurity or related field (or equivalent experience).
- ~3‑5 years of combined experience in cybersecurity or Dev Ops, with at least 2+ years focused on Dev Sec…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).