M

Senior DevSecOps Lead

Movius
On-site
Alpharetta, Georgia, United States
DevSecOps
Movius is revolutionizing the way businesses communicate. We are the leading global provider of secure, cloud-based mobile communications. Our MultiLine™ solution enhances workflows, resolves compliance gaps and unifies cross-channel messaging.  Movius AI-powered solutions enable businesses to build strong and lasting relationships with their customers in a company-owned, controllable system. In today’s on-the-go world, wave goodbye to excessive hardware costs and IT overhead. Welcome to Phone 3.0™.
 
Headquartered in Alpharetta, GA, with offices in Bangalore, India, and London, Movius partners with leading global wireless carriers like T-Mobile, BT, Singtel & more. To learn more about Movius, visit www.movius.ai
As a Senior DevSecOps Lead, you will be responsible for leading the integration of development, architecture and security best practices into our DevSecOps process. You will work closely with cross-functional teams to ensure that automation and security is an integral part of our software development lifecycle. You will champion development best practices, automate build and architecture deployment, orchestrate security testing, and monitor the performance and security of our applications and infrastructure.

Key Responsibilities:
  • Have solid AWS services experience including VPC, EC2, EKS, S3, ASG, Cloudwatch, Lambda, API Gateway, and Load Balancer.
  • Have solid experience in IaC frameworks and tools including TerraForm, Ansible, and Helm.
  • Build a secure, robust, and scalable cloud infrastructure on Amazon Web Services.
  • Lead the design, implementation, and maintenance of secure CI/CD pipelines and automation frameworks.
  • Build tools, automation, and standards to scale the development team.
  • Identify gaps and improvement areas and drive effective automation to solve the key challenges.
  • Collaborate with development and operations teams to integrate security into the software development lifecycle.
  • Perform security assessments, vulnerability scanning, and penetration testing of applications and infrastructure.
  • Develop and maintain security policies, procedures, and standards.
  • Implement and manage security tools and technologies (e.g., WAF, IDS/IPS, vulnerability scanners).
  • Conduct security training and awareness programs for development and operations teams.
  • Stay updated on emerging security threats, vulnerabilities, and best practices.
  • Provide mentorship and guidance to junior team members.
  • Contribute to the development and enforcement of security compliance standards (e.g., OWASP, CIS).
Qualifications:
  • Bachelor’s degree in computer science, Information Security, or a related field (Master's preferred).
  • 6+ years of experience as a DevSecOps Engineer or in a similar role.
  • Strong background in application and infrastructure security.
  • Proficiency in scripting and automation (e.g., Python, Shell scripting).
  • Experience with DevSecOps tools (e.g., BitBucket, Jenkins, GitLab CI/CD).
  • Knowledge of cloud security principles and practices (e.g., AWS).
  • Familiarity with security frameworks and standards (e.g., NIST, OWASP, ISO 27001, SOC 2).
  • Relevant security certifications (e.g., CISSP, Certified Ethical Hacker) are a plus.
  • Excellent problem-solving and analytical skills with a keen attention to detail.
  • Strong communication and collaboration skills.
  • Commitment to staying updated on DevSecOps trends and technologies.