R&D DevSecOps Engineering Scientist
The University of Texas at AustinAbout the role
Job Posting Title:
R&D DevSecOps Engineering Scientist----
Hiring Department:
Applied Research Laboratories----
Position Open To:
All Applicants----
Weekly Scheduled Hours:
40----
FLSA Status:
Exempt from FLSA----
Earliest Start Date:
Immediately----
Position Duration:
Expected to Continue----
Location:
PICKLE RESEARCH CAMPUS----
Job Details:
Purpose
Position will integrate security practices directly into the software development lifecycle (SDLC). This position builds and maintains secure development and deployment processes, implements security controls throughout the software lifecycle, ensures compliance with organizational security standards, and enables project teams to adopt DevSecOps practices across their workflows.
Responsibilities
Establish and Enhance Secure CI/CD: Design, implement, and maintain secure continuous integration/deployment pipelines to meet project requirements. Develop and enhance automated build, test, and deployment processes. Integrate automated security scanning tools. Implement Security-as-Code and Policy-as-Code practices into CI/CD to ensure safe and secure code for production. Integrate security gates that block vulnerable code from progressing to production.
Infrastructure & Cloud Security: Implement and maintain security for Infrastructure as Code. Configure and enforce network security policies. Manage secrets securely using enterprise secret management solutions. Harden cloud environments including IAM roles, security groups, and logging. Establish and improve basic IaC approaches across project codebases.
Vulnerability Management & Compliance: Perform regular security scans and assess results across applications and dependencies. Identify, prioritize, track, and help remediate vulnerabilities. Establish vulnerability remediation workflows. Coordinate periodic security testing and assessments. Automate compliance checks for relevant standards. Implement automated compliance controls. Maintain audit trails and documentation for security controls. Support internal and external security audits.
Security Enablement & Collaboration: Partner with development teams to promote secure coding practices and increase DevSecOps adoption across projects. Provide security guidance and training to engineers. Help squads integrate DevSecOps practices into their workflows. Contribute to security policies and standards.
Incident Response: Participate in security incident response and investigation. Support systems administration duties as needed, including privileged user access to support systems at ARL and partner sites.
Other related functions as assigned.
Required Qualifications
Bachelor's degree in engineering, computer or information science, or other applied sciences.
Three years of experience in DevOps, SRE, or security engineering roles
Experience with CI/CD tools such as GitHub Actions, GitLab CI, Jenkins, or ArgoCD
Experience with continuous integration and deployment systems
Proficiency with at least one major cloud platform
Experience with Infrastructure as Code methodologies
Experience with Linux administration
Knowledge of container technologies and container security
Familiarity with security scanning and testing methodologies
Understanding of security best practices for software development
Familiarity with identity and access management principles
Strong problem-solving and analytical skills
Excellent communication skills with ability to explain security concepts to non-technical audiences
Strong documentation skills
Must currently hold, or be able to obtain within the first six months of employment, a DoD 8140 compliant security certification (e.g., Security+)
Applicant must be highly organized, have excellent attention to detail, and possess sound scientific judgment. The position will require effective management of their own time with the ability to plan, coordinate, and execute multiple tasks simultaneously. Regular and punctual attendance in the workplace is required.
US Citizen. Applicant selected will be subject to a government security investigation and must meet eligibility requirements for access to classified information at the level appropriate to the project requirements of the po
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s