A company is looking for a DevSecOps Engineer.
Key Responsibilities
Implement and scale SAST and SCA across diverse and legacy codebases
Generate and maintain Software Bills of Materials (SBOMs) and integrate security tooling into build systems and CI / CD pipelines
Translate regulatory requirements into technical controls and manage a central vulnerability and waiver database
Required Qualifications
Demonstrable background in product security or regulated compliance (e.g., CRA, IEC 62443)
Hands-on experience with SAST and SCA tools (e.g., Veracode, CodeSonar)
Practical experience in generating and maintaining SBOMs
CI / CD build and automation experience across platforms like GitHub and AWS
Working knowledge of C, C++, and Python