What You'll Do:
- Own and drive the AppSec/DevSecOps program roadmap across engineering, defining strategy for embedding security into the SDLC through shift-left practices and automation.
- Design, build, and maintain DevSecOps tooling in Kubernetes and GCP, including support for AI/ML workloads.
- Lead integration of security into CI/CD pipelines, implementing code scanning, secret detection, and infrastructure policy enforcement.
What You'll Bring:
- 10+ years of experience in Security Engineering, DevSecOps, or SRE, with a track record of leading security initiatives across multiple teams.
- Deep expertise securing Kubernetes environments, including container images, network policies, and supply chain protections.
- Strong experience with Application Security tooling integrated into CI/CD pipelines such as GitHub Actions and ArgoCD.
What Sets You Apart:
- Experience building or scaling an AppSec or DevSecOps program from early maturity, including paved roads and adoption measurement.
- Familiarity with commercial security platforms like Orca Security or Aikido Security.
- Experience securing ML toolchains and familiarity with AI-specific threats such as data leakage and model inversion.
Censys
Censys provides real-time internet intelligence and threat insights to global governments and over 50% of the Fortune 500. We are a security company with a culture of innovation and trust, and we serve leading threat intelligence providers worldwide.