{"id":1319368,"url":"https://alion.io/job/exelixis-senior-staff-engineer-devsecops","title":"Senior Staff Engineer - DevSecOps","company":{"id":1917987,"name":"Exelixis","domain":"exelixis.com","url":"https://alion.io/company/exelixis-com","size_band":"1001-5000","is_staffing_agency":false,"employer_type":"direct","is_intermediary":false,"listed_via":null,"ats_vendor":"Workday","truth_index":null},"role":"Security","role_family":"Security","seniority":"staff","employment_type":"full_time","work_mode":"on_site","remote_scope":null,"remote_scope_basis":null,"remote_working_hours":null,"hiring_geo_confidence":"structured","locations":["Alameda, United States"],"countries":["US"],"hiring_countries":[],"hiring_countries_total":0,"salary":{"min":219000,"max":311000,"currency":"USD","period":"year","gross":null,"usd_annual":311000},"salary_estimate":null,"experience_years_min":9,"visa_sponsorship":false,"relocation_package":false,"has_equity":false,"technologies":[{"name":"Agile","optional":false},{"name":"AWS","optional":false},{"name":"Azure","optional":false},{"name":"CI/CD","optional":false},{"name":"GDPR","optional":false},{"name":"GitHub","optional":false},{"name":"IAM","optional":false},{"name":"Zero Trust","optional":false}],"status":"live","first_seen_at":"2026-09-22T00:00:00Z","employer_posted_date":"2026-09-22","last_verified_at":"2026-10-02T21:28:03Z","board_verified":true,"closed_at":null,"days_open":11,"trust":{"level":"ok","repost_count":null,"flags":[],"days_open":11},"description":"SUMMARY/JOB PURPOSE (Basic purpose of the job):\nProtect the organization’s digital infrastructure, data, and systems from internal and external cybersecurity threats by implementing, managing, and continuously improving security practices, tools, and operations with a focus on cloud applications and infrastructure.\nESSENTIAL DUTIES/RESPONSIBILITIES:\nDesign and implement robust security architectures for cloud environments following best practices, industry standards, and regulatory requirements.\nLead cross-functional collaboration on technology initiatives to strengthen security across systems and operations, ensuring alignment with organizational objectives and industry best practices.\nLead the investigation and resolution of complex security events and incidents, including malware outbreaks, unauthorized access attempts, and significant security breaches. Develop and implement response strategies, coordinate cross-functional teams, and ensure lessons learned are integrated into security policies and controls.\nAnalyze security logs and events from various sources to proactively develop and implement security measures that address current and emerging threats.\nProvide updates to leaders on latest threat landscape, emerging trends, and propose cybersecurity solutions to proactively identify and mitigate potential security risks.\nEnhance the organization’s security posture by assessing vulnerabilities and recommending solutions to address identified weaknesses.\nCollaborate with internal teams, vendors, and partners to provide guidance and expertise on security best practices and incident response.\nEnsure compliance with industry standards and organizational policies, including SOX and FDA regulatory requirements, by following established procedures and controls.\nSUPERVISORY RESPONSIBILITIES:\nNo supervisory responsibilities.\nEDUCATION/EXPERIENCE/KNOWLEDGE & SKILLS:\nEducation:\nBachelor’s degree in related discipline and 9 years of related experience; or\nMaster’s degree in related discipline and 7 years of related experience; or\nEquivalent combination of education and experience\nCISSP, CISM, CEH, OSCP, GIAC or similar cybersecurity certification preferred\nExperience:\nExperience with operation and implementation of cybersecurity tools.\nExperience in designing, implementing, and managing security controls within cloud platforms, such as IAM, VPC, Zero Trust principles, IaC, IAAS, Security Groups, Key Management Services, SDLC, Ci/Cd pipelines and Network Security.\nExperience in IT Security or related infrastructure administration role in an enterprise environment. Technical lead or management experience preferred.\nExperience in investigations and response to cyber events and incidents.\nExperience in enhancing organizational security awareness and resilience.\nExperience with cloud, system, and application security.\nExperience administering IT systems.\nExperience working in Agile environments and using ticketing systems (e.g., JIRA, JSM).\nExperience in regulated industries (e.g., biotech, pharma) with knowledge of GxP and SOX compliance preferred.\nKnowledge, Skills and Abilities:\nAdvanced analytical, problem solving, organizational, and communication skills.\nGeneral knowledge of Agile, and Design-Thinking, User-centric Design methodologies.\nAble to plan, prioritize, and execute projects with minimum supervision and high reliability.\nStrong understanding of PII, PHI, and Sensitive Data concepts\nKnowledge of applicable laws and regulations such as GDPR and CPRA.\nStrong analytical, problem solving, organizational, and communication skills.\nAbility to work effectively with customers to solve business challenges while balancing the need for confidentiality, integrity, and availability.\nAbility to multitask and work collaboratively.\nAbility to work with ambiguity.\nAbility to work with confidential data.\nAbility to continuously learn and improve.\nAbility to work with minimal guidance, to adapt to frequent priority changes, and response to ad-hoc requests\nArchitect secure cloud infrastructure using guardrails and golden paths using IaC patterns across AWS and Azure.\nIntegrate SAST, SCA, DAST, and dependency scanning into GitHub pipelines and provide help and support\nAWS Certified Security - Specialty preferred\nWork Environment/Physical Demands :\nOur office is a modern, open space that fosters collaboration and creativity. Teams work closely together, sharing ideas and solutions in a supportive atmosphere. We provide all necessary equipment, including dual monitors and ergonomic chairs, to ensure a comfortable workspace.\nOccasional travel (5%).\nOn-call availability for critical escalations.\nOur compensation reflects the cost of labor across several U.S. geographic markets, and we pay differently based on those defined markets. The base pay range for this position is $219,000 - $311,000 annually. The base pay range may take into account the candidate’s geographic region, which will adjust the pay depending on the specific work location. The base pay offered will take into account the candidate’s geographic region, job-related knowledge, skills, experience and internal equity, among other factors.In addition to the base salary, as part of our Total Rewards program, Exelixis offers comprehensive employee benefits package, including a 401k plan with generous company contributions, group medical, dental and vision coverage, life and disability insurance, and flexible spending accounts. Employees are also eligible for a discretionary annual bonus program, or if field sales staff, a sales-based incentive plan. Exelixis also offers employees the opportunity to purchase company stock, and receive long-term incentives, 15 accrued vacation days in their first year, 17 paid holidays including a company-wide winter shutdown in December, and up to 10 sick days throughout the calendar year.If you have a disability and need an accommodation in relation to the recruiting process, please email us at: .\nWORKING CONDITIONS:\nOur office is a modern space that fosters collaboration and creativity. Teams work closely together, sharing ideas and solutions in a supportive atmosphere. We provide all necessary equipment, including dual monitors and ergonomic chairs, to ensure a comfortable workspace.\nDISCLAIMER:\nThe preceding job description has been designed to indicate the general nature and level of work performed by employees within this classification. It is not designed to contain or be interpreted as a comprehensive inventory of all duties, responsibilities and qualifications required of employees assigned to the job.\nWe are an Equal Opportunity Employer and do not discriminate against any employee or applicant for employment because of race, color, sex, age, national origin, religion, sexual orientation, gender identity, status as a veteran, and basis of disability or any other federal, state or local protected class.","description_format":"text","description_chars":6947,"description_truncated":false,"requirements":{"experience_years_min":9,"management_years_min":null,"team_size_min":null,"manages_managers":false,"education":{"level":"bachelor","optional":false},"security_clearance":false,"languages":[]},"benefits":["401k plan","Equity"],"hiring_locations":[],"hiring_excludes":[],"relocation_offered":false,"industries":["DevSecOps","Biotechnology","Health Care","Information Security"],"lifecycle":[{"event":"open","at":"2026-09-26T20:23:28Z"}],"liveness":{"score":40,"band":"fade","label":"Fading","p_open":1,"p_active":0.731,"p_room":0.55,"age_days":10,"expected_fill_days":8,"reasons":["conf:7","velocity","win:tail"],"computed_at":"2026-10-02T05:45:00Z"},"pay":{"stated_usd_annual":311000,"is_top_pay":true},"html_url":"https://alion.io/job/exelixis-senior-staff-engineer-devsecops","json_url":"https://alion.io/job/exelixis-senior-staff-engineer-devsecops.json","meta":{"generated_at":"2026-10-03T00:42:31Z","cache_seconds":300,"methodology":"https://alion.io/methodology","terms":"https://alion.io/terms","contact":"https://alion.io/contact","api":"https://alion.io/developers","usage":{"tier":"crawler","counted_by":"address","units_charged":1,"used_today":363,"day_limit":5000,"remaining_today":4637,"minute_limit":60,"resets_at":"2026-10-04T00:00:00Z"}}}