Source Job

India

  • Remediate platform-level security vulnerabilities using tools like Snyk and SAST/DAST.
  • Manage identity and access management and support security audits.
  • Implement security controls in CI/CD pipelines and manage Adobe Cloud Manager.

DevSecOps CI/CD

20 jobs similar to Sr. AEM DevSecOps Engineer

Jobs ranked by similarity.

Ireland

  • Design and implement security controls across CI/CD pipelines, cloud infrastructure, and software development workflows.
  • Integrate security testing tools including SAST, DAST, dependency scanning, and vulnerability management.
  • Partner with Engineering, Infrastructure, and Security teams to implement secure development practices.

Kaseya is the leading provider of AI-powered IT management and cybersecurity software, serving Managed Service Providers (MSPs) and internal IT organizations worldwide. Backed by Insight Partners, the company supports customers in more than 20 countries, manages over 15 million endpoints, and fosters a culture of innovation, accountability, and results.

US Canada Unlimited PTO

  • Identify and eliminate bottlenecks across engineering and the business using DevOps and agile thinking.
  • Build and maintain CI/CD pipelines and infrastructure-as-code, and harden AI-generated apps from non-engineering teams.
  • Strengthen DevSecOps practices including scanning, vulnerability management, and compliance workflows.

Mangomint is a fast-growing SaaS company on a mission to make every salon and spa more profitable. They are a primarily remote, ambitious, and collaborative team with thousands of customers, aiming to become the #1 market leader.

UK Global

  • Lead and own the ongoing operation and maintenance of Samsara’s vulnerability management program.
  • Collaborate with engineering teams to track and support the remediation of identified vulnerabilities.
  • Champion Samsara’s cultural principles in daily work.

Samsara is the pioneer of the Connected Operations Cloud, enabling organizations to harness IoT data for actionable insights. As a recently public company with a global team, they foster a culture of rapid career development and encourage employees to architect their own careers.

  • Owns product, cloud, engineering, vendor, AI-tooling, and compliance security functions.
  • Builds practical guardrails for AI tools, agents, MCPs, data leakage, and automation.
  • Understands OWASP, IAM, secrets, cloud security, vulnerability management, CI/CD, incident response, and frameworks like SOC 2, ISO 27001, GDPR, or HIPAA.

PlayPower Labs is a company focused on building practical security functions without slowing down teams. The organization values security sharpness, usefulness, and a product-minded approach, with a culture that balances protection and agility.

US

  • Own the roadmap for secure SDLC controls and partner with Engineering to roll out practical security standards.
  • Drive adoption of key controls across repositories and pipelines, including scanning and code review.
  • Support vulnerability management and prepare audit-ready documentation.

YipitData is a leading market research and analytics firm for the disruptive economy, providing data-driven insights to top investment funds and Fortune 500 companies. They recently raised $475M and have a culture of ownership, rapid growth, and high impact.

US

  • Enable software engineering teams to continuously improve the security posture of products and SaaS environments through AppSec and DevSecOps expertise.
  • Serve as the go-to AppSec expert, mentoring engineers on secure design patterns and coding practices while collaborating on threat models and design reviews.
  • Lead automation of vulnerability management tooling across CI/CD pipelines, perform security code reviews, and contribute to compliance strategies.

Hypori is a high-growth cybersecurity SaaS company transforming how organizations think about secure mobility. Backed by $55M in funding from investors including UBS and AE Industrial Partners, the company is expanding into new commercial and regulated markets.

US Unlimited PTO 16w maternity 8w paternity

  • Own the vision, roadmap, and delivery strategy for the Polaris platform, translating business, engineering, compliance, and security requirements into prioritized epics, features, and user stories.
  • Lead CI/CD modernization and secure software delivery initiatives across Azure-based pipelines, championing DevSecOps best practices including automated testing, security scanning, artifact validation, and release governance.
  • Lead end-to-end execution of large-scale initiatives across Engineering, Security, Release Management, and Infrastructure teams, facilitating Agile ceremonies and managing dependencies.

Veeam is the Data and AI Trust Company, specializing in helping organizations ensure their data and AI are fully understood, secured, and resilient to enable the acceleration of safe AI at scale. Headquartered in Seattle with offices in more than 30 countries, Veeam protects over 550,000 customers worldwide, who trust Veeam to keep their businesses running.

US

  • Embed security into every stage of software delivery across multi-cloud environments (AWS, Azure) as a hands-on technical leader.
  • Architect secure, scalable infrastructure, set engineering standards, and mentor a team of DevSecOps engineers.
  • Champion a shift-left security culture, integrate AI-powered tooling, and partner with cross-functional teams to align secure cloud solutions with business objectives.

ComPsych is the worldwide leader in organizational mental health, well-being, and absence management, dedicated to igniting human potential in workplaces across the globe. For over 40 years, they have combined technology with human expertise to support more than 75,000 customers worldwide, touching over 160 million lives across 200 countries.

US

  • Lead implementation and optimization of AppSec tools such as SAST, DAST, and SCA across client environments.
  • Conduct manual application and API security assessments, identifying vulnerabilities and recommending remediation strategies.
  • Advise clients on secure SDLC practices and integrate security tools into CI/CD pipelines.

The company is a cybersecurity consulting firm that helps organizations design and operationalize application security programs. It operates with a remote-first culture and a collaborative, client-facing team.

US

  • Develop, automate, and maintain CI/CD pipelines for optimal software releases.
  • Collaborate with cross-functional teams to integrate DevOps practices with security.
  • Support cloud infrastructure using AWS services such as API Gateway, Lambda, S3, EKS, RDS, and Cognito.

LMI is a digital solutions provider dedicated to accelerating government impact with innovation and speed. The company serves defense, space, healthcare, and energy sectors with a focus on agility and collaboration.

US Unlimited PTO 16w maternity 16w paternity

  • Champion a security-first mindset within Engineering to set the security posture of platform infrastructure.
  • Design and build automation that makes compliance evidence continuous and translates HITRUST controls into tests.
  • Embed security into the platform by default through guardrails, policy-as-code, and well-documented patterns.

Redox accelerates healthcare transformation with useful data via its interoperability platform. The fully remote US-based team operates with radical transparency and ownership.

Europe

  • Build and operate secure agent runtimes with sandboxing, runtime isolation, and RBAC.
  • Design and maintain integration surfaces with MCP-style adapters and gateways across marketplace teams.
  • Implement observability and cost control including traces, telemetry, and cost-per-workflow.

Zartis is a global AI transformation and technology consulting partner that designs, builds, and scales technology solutions for ambitious organizations. With engineering hubs across EMEA and LATAM and long-term partnerships in financial services, healthcare, and energy, they foster an inclusive culture based on trust and innovation.

US Canada Unlimited PTO

  • Own and improve the secure software development lifecycle, perform application security reviews, threat modeling, and deep code-level analysis for high-impact product, platform, and AI features.
  • Drive vulnerability management across internal reviews, bug bounty, pentests, and other research signals, ensuring findings are validated, prioritized, and tracked through remediation.
  • Configure and improve AppSec tooling and integrations, and use AI to automate and scale security processes while validating outputs with strong engineering judgment.

Apollo.io is the leading go-to-market solution for revenue teams, trusted by over 500,000 companies and millions of users globally. Founded in 2015, the company is one of the fastest growing companies in SaaS, raising approximately $250 million to date and valued at $1.6 billion.

US

  • Lead integration of security across the SDLC, embedding automated testing into CI/CD pipelines.
  • Secure cloud-native AWS architectures and enforce least privilege access and runtime protections.
  • Perform threat modeling, automate compliance, and innovate with AI security standards.

TrueML is a mission-driven financial software company that uses machine learning to improve customer experiences for distressed borrowers. The team includes data scientists, financial services experts, and customer experience fanatics building inclusive financial technology.

Spain

  • Play a key role in protecting and strengthening large-scale cloud-native applications that power next-generation AI infrastructure.
  • Work at the intersection of software engineering and cybersecurity, ensuring security is embedded throughout the software development lifecycle.
  • Collaborate cross-functionally to identify and remediate vulnerabilities in complex distributed systems.

Our partner is a company building large-scale cloud-native applications that power next-generation AI infrastructure. They have a high-impact security engineering environment with a collaborative and innovative culture focused on trust, learning, and impact.

US Unlimited PTO 14w maternity 14w paternity

  • Own the end-to-end software delivery lifecycle, designing and operating the DevSecOps pipeline from code intake to secure production deployment.
  • Define and scale hosting architecture in DoD IL-5/IL-6 environments, integrating security and compliance directly into the delivery process.
  • Lead transition from existing government-furnished environments to a scalable, long-term production system with zero-downtime deployments.

Red Cell Partners is an incubation firm building and investing in rapidly scalable technology-led companies in healthcare, cyber, and national security. DEFCON AI, a portfolio company, leverages AI and optimization for resilient complex systems; the overall firm culture is mission-driven and fast-paced.

India

  • Strengthen security, reliability, and scalability of an AI-powered patent search platform.
  • Advance secure-by-design engineering and embed security across the development lifecycle.
  • Support rapid software delivery with robust infrastructure and compliance frameworks.

Smart Working connects skilled professionals with global teams for full-time, long-term remote roles. It is one of the highest-rated workplaces on Glassdoor, fostering a genuine community that values growth and well-being.

US Unlimited PTO

  • Engage with customers via Zoom and email as a technical consultant, providing product and best-practice guidance during the post-sales journey.
  • Deliver customer-specific enablement through webinars, hands-on labs, office hours, and on-demand engagements in a pooled support model.
  • Build and maintain specialty competency in DevSecOps tools and GitLab use cases through training, certification, and creating reusable examples.

GitLab provides an intelligent DevSecOps platform that helps organizations increase developer productivity, improve operational efficiency, and accelerate digital transformation. With over 50 million registered users and trust from more than 50% of the Fortune 100, GitLab fosters a high-performance culture driven by values, AI adoption, and continuous knowledge exchange.

Canada United States

  • Partner with engineering teams to review cloud and compute architecture design changes.
  • Develop or adopt open-source tools to monitor and harden cloud infrastructure and detect intrusions.
  • Drive the definition and implementation of security policies and monitor conformance.

Quora operates a global knowledge sharing platform with over 300M monthly unique visitors and Poe, a platform for AI language model interaction. It is a privately held, remote-first company with a culture rooted in transparency, idea-sharing, and experimentation.

US

  • Design and maintain reusable Terraform and Ansible modules for Azure and GCP, enforcing configuration standards and policy-as-code.
  • Build and optimize Jenkins and GitHub Actions CI/CD pipelines, implementing deployment strategies and security scanning.
  • Contribute to portal application code (modern JS/TS frontend, REST API) and wire applications into the platform with monitoring and observability.

BETSOL accelerates cloud transformation for enterprises across 17+ countries using AI and cloud-native solutions. The company holds several engineering patents, is recognized with industry awards, and maintains a net promoter score 2x the industry average.