610,861open jobs
33,147companies
86,102added this week
Browse all
Location
In office
Seniority
Middle · 3+ years exp
Overview
Company
Impact
Profile match
A leader in grid reliability and resiliency, Electric Power Engineers (EPE) has partnered with power and energy clients across the globe for over 50 years. EPE's client-centric approach delivers unmatched expertise throughout the project lifecycle, with a platform of comprehensive services and proprietary solutions spanning utility engineering, grid and resource integration, reliability and compliance, digitalization, and grid analytics, as well as innovative software partnership with its sister company ENER-I.AI, Inc. Committed to designing and developing the grid of the future, EPE's highly experienced team of detail-oriented consultants are passionate about helping clients address complex engineering and grid modeling challenges, bridge gaps, and gain visibility into the evolving complexities of the grid.

Overview

We are designing the grid of the future!

We are seeking an experienced DevSecOps Engineer to strengthen the security of our cloud platforms, software delivery pipelines, and production environments. The ideal candidate will combine deep AWS, Terraform, Kubernetes, and automation expertise with a strong security engineering mindset. This role will embed security throughout the software and infrastructure lifecycle, automate security controls, reduce cloud and application risk, and help engineering teams ship securely without creating unnecessary delivery friction.

The DevSecOps Engineer will partner closely with software engineering, Site Reliability Engineering, platform, security, compliance, and product teams to establish secure-by-default patterns, improve visibility into risk, and ensure that security controls are measurable, scalable, and operationally sustainable.

Responsibilities

How you can make an impact:

  • Cloud Security Engineering: Design, implement, and maintain security controls across AWS environments, including IAM, VPC networking, encryption, secrets management, logging, account governance, and service configuration.
  • Infrastructure as Code Security: Build and maintain secure Terraform modules and policies that enforce approved infrastructure patterns, least privilege, encryption, logging, tagging, network controls, and configuration standards.
  • Secure CI/CD: Integrate security checks into CI/CD pipelines, including static analysis, dependency scanning, container scanning, secrets detection, infrastructure-as-code scanning, policy validation, and deployment gates.
  • Kubernetes & Container Security: Harden EKS and Kubernetes environments through secure workload configuration, RBAC, admission controls, image security, runtime protections, network policies, secrets management, and cluster lifecycle best practices.
  • Identity & Access Management: Develop and enforce least-privilege IAM patterns, role-based access controls, service identities, access review processes, and automated remediation for excessive or unused permissions.
  • Vulnerability Management: Establish processes and automation for identifying, prioritizing, tracking, and remediating vulnerabilities across cloud infrastructure, containers, dependencies, operating systems, and application platforms.
  • Security Automation: Build Python, Bash, or other automation to detect misconfigurations, validate controls, collect evidence, remediate security findings, and reduce repetitive security operations work.
  • Cloud Detection & Monitoring: Implement and improve security monitoring, logging, alerting, and detection capabilities using AWS-native and third-party tooling, including CloudTrail, GuardDuty, Security Hub, CloudWatch, SIEM platforms, or similar technologies.
  • Software Supply Chain Security: Improve software supply chain integrity through dependency controls, artifact signing, provenance, trusted build pipelines, image registries, SBOM practices, and secure release processes.
  • Secrets & Key Management: Establish secure patterns for credentials, API keys, certificates, encryption keys, and secrets using services such as AWS KMS, Secrets Manager, Parameter Store, and related tooling.
  • Security Incident Response: Support investigation and response for cloud and application security incidents, including containment, root-cause analysis, evidence collection, remediation, and post-incident corrective actions.
  • Compliance & Control Automation: Translate security and compliance requirements into technical controls and automated evidence collection for frameworks such as SOC 2, ISO 27001, PCI DSS, or related standards.
  • Security Architecture & Reviews: Perform security reviews for infrastructure changes, new services, deployment patterns, and application architectures; identify risk and recommend practical mitigations.
  • Developer Enablement: Create reusable security patterns, documentation, guardrails, and tooling that make the secure implementation the easiest implementation for engineering teams.
  • Continuous Improvement: Track security posture, recurring findings, control effectiveness, and operational trends to identify opportunities for better automation, prevention, and risk reduction

Qualifications

Bring your passion, here's what’s needed:

  • Experience: 3+ years of experience in DevSecOps, cloud security, DevOps, platform engineering, Site Reliability Engineering, or a related discipline, including significant responsibility for production cloud environments.
  • AWS: Strong hands-on experience securing AWS services and architectures, including IAM, Organizations, VPC, EC2, S3, RDS, EKS, Lambda, Route 53, CloudTrail, KMS, GuardDuty, Security Hub, and related services.
  • Terraform: Advanced proficiency with Terraform, including secure reusable modules, state management, policy enforcement, code review, drift management, and infrastructure lifecycle controls.
  • Kubernetes: Strong understanding of Kubernetes and EKS security, including RBAC, pod security, admission controls, secrets, network policies, workload identity, image security, and cluster hardening.
  • Security Engineering: Strong knowledge of cloud security principles, least privilege, defense in depth, encryption, network segmentation, secrets management, vulnerability management, threat modeling, and secure configuration.
  • Programming & Automation: Proficiency in Python, Bash, Go, or another general-purpose language used to build security automation and operational tooling.
  • CI/CD Security: Experience integrating security controls into delivery pipelines using platforms such as GitHub Actions, Jenkins, GitLab CI, Argo CD, or similar tooling.
  • Security Tooling: Experience with tools for SAST, SCA, container scanning, IaC scanning, secrets detection, CSPM, SIEM, or cloud-native security monitoring.
  • Linux & Containers: Strong Linux, Docker, and container fundamentals with the ability to troubleshoot security and configuration issues across hosts and workloads.
  • Incident Response: Experience investigating security events or production incidents and contributing to containment, root-cause analysis, remediation, and follow-up actions.
  • Compliance: Working knowledge of security control frameworks and audit expectations, including evidence collection, access reviews, logging, change controls, and technical control validation.
  • Communication: Strong written and verbal communication skills, with the ability to explain security risk and recommended controls to both technical and non-technical stakeholders.

Preferred Qualifications

  • AWS security-focused certifications such as AWS Certified Security - Specialty, AWS Certified Solutions Architect - Professional, or AWS Certified DevOps Engineer - Professional.
  • Experience with policy-as-code tools such as Open Policy Agent (OPA), Conftest, Sentinel, Kyverno, or Gatekeeper.
  • Experience with CSPM/CNAPP platforms, vulnerability scanners, SIEM platforms, or cloud security posture management tooling.
  • Familiarity with supply chain security technologies and standards such as SBOMs, SLSA, artifact signing, provenance, and Sigstore/cosign.
  • Experience with GitOps practices and tools such as Argo CD or Flux.
  • Knowledge of security frameworks and standards such as CIS Benchmarks, NIST CSF, NIST 800-53, SOC 2, ISO 27001, or PCI DSS.

Be a part of an innovative team shaping the grid of the future through advanced energy intelligence. For more than half a century, Electric Power Engineers (EPE) has partnered with power and energy clients across the globe, providing consulting expertise and energy intelligence software solutions for complex engineering and grid modeling challenges. As leaders in the renewables space, we are focused on building a modern, secure, and resilient grid. Join us in making an impact on the communities we serve and the environment in which we live. Together we can transform the future of energy.

How we support you:

  • Comprehensive health and wellness benefits including medical, dental, and vision with 100% premium coverage for you
  • Generous PTO and paid holidays
  • MyShare Employee Ownership Program
  • Work with industry leaders
  • 401K, up to a 4% match (100% vested from day 1)

Location: This position will be lRemote.

Travel: Occasional travel may be needed (10% or less)

EPE is an equal opportunity/AA/Disability/Veteran employer. The EEO is the Law poster, and its supplement are available using the following links: EEOC is the Law Poster

Third-Party Recruiting Notification

EPE does not accept unsolicited resumes from third-party recruiters. Any unsolicited third-party resumes forwarded by recruiters to EPE via our career page or to any of our managers or employees will be considered public information, may be treated as a direct application from the person identified in the resume, and will not be eligible for placement fee payment to the agency. EPE will not pay a fee to a third-party recruiter or agency without a previously signed third-party agreement and has not coordinated their recruiting activity with the appropriate member of the Talent Acquisition team.

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
610,861 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account Continue with Google
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
In your city
$135k – $150k per year • Remote/Hybrid • Bachelor's Degree • Princeton
Python
SQL
Databases
Snowflake
Databricks
Microsoft Fabric
DevOps
Rest API
Terraform
Ansible
Helm
Azure DevOps
GitHub Actions
Prometheus
Azure
CI/CD
GitOps
ArgoCD
Jenkins
Docker
Kubernetes
Ubuntu
Grafana
Configuration Management
Bicep
Azure AKS
CentOS Stream
FinOps
IAM
API Gateway
Cybersecurity
HashiCorp Vault
Microsoft Defender for Cloud
Cryptography
Vault
Apply
In office • 10+ years exp
Python
SQL
Python
pySpark
Databases
Apache Iceberg
Delta Lake
Apache Hudi
AI/ML
Spark
DevOps
Rest API
Terraform
Azure DevOps
GitHub Actions
AWS CDK
CloudFormation
Azure
CI/CD
Git
AWS
Amazon S3
IAM
Amazon CloudWatch
Amazon EventBridge
AWS Step Functions
Analytics
Tableau
ETL/ELT
AWS Glue
Dimensional Modeling
Apply
$105k – $189k per year (Estimated) • In office • 7+ years exp • Bachelor's Degree • Princeton
Python
Java
SQL
Apex
Apex
MuleSoft
Databases
Apache Kafka
Frontend
GraphQL
DevOps
Rest API
GCP
GitHub Actions
Azure
CI/CD
Jenkins
Git
AWS
Docker
Kubernetes
SLI/SLO/SLA
IAM
QA
Swagger
Apply
Network Engineer 1 hour ago
$103k – $185k per year (Estimated) • Remote • 5+ years exp • Bachelor's Degree • Palo Alto
Python
AI/ML
Anomaly Detection
DevOps
Terraform
Ansible
GCP
VMWare
CloudFormation
Datadog
Azure
AWS
SLI/SLO/SLA
Amazon CloudWatch
Cybersecurity
SOC 2
HIPAA
Zero Trust
Least Privilege
Apply
In office • Full-Time • 5+ years exp • Bachelor's Degree
Python
SQL
Databases
Databricks
MS SQL
Azure SQL Database
Microsoft Fabric
AI/ML
Copilot
DevOps
Azure DevOps
Azure
Git
Analytics
Tableau
Power BI
ETL/ELT
Azure Data Factory
Looker
Microsoft Excel
Dimensional Modeling
Management
Agile
Apply
In office • 5+ years exp
Apply
Remote/Hybrid • 5+ years exp • Bachelor's Degree
PowerShell
DevOps
Azure
Windows Server
Incident Management
Cybersecurity
ISO 27001
Microsoft Defender
SOC 2
Microsoft Entra ID
Management
SharePoint
Apply
In office • 8+ years exp • Bachelor's Degree
Design
AutoCAD
Apply
$78k – $198k per year (Estimated) • Remote • 4+ years exp • Bachelor's Degree
Python
Apply
$72k – $146k per year (Estimated) • Remote • 3+ years exp • Bachelor's Degree
Python
SQL
Apply
See all jobs
This is one of many
610,861 more open roles from verified company boards, updated every day.