1,432,466open jobs
84,441companies
218,461added this week
Browse all
Salary
$180k – $185k per year
Location
In office (Hollywood)
Seniority
Architect · 4+ years exp

Confirmed on the employer's own hiring board on Oct 10, 2026. First seen by Alion on Sep 17, 2026. INSPYR Solutions scores B on the Alion truth index.

Overview
Company
Impact
Profile match
INSPYR Solutions is a US technology staffing and IT solutions firm that places contract and permanent IT professionals with client companies and also delivers professional services, project work and business talent solutions. It operates through offices across the country, with addresses in Texas, Virginia, Tennessee and New Hampshire, and recruits for clients in finance, energy, technology and healthcare, including large employers around Redmond, Menlo Park, Houston and Charlotte. Its openings cover AI and ML architects, data and platform engineers, network engineers, QA automation engineers, Oracle and NetSuite specialists, IT project managers and field technicians.

Title: DevSecOps Architect

Location: Hollywood- onsite (flex 1 day remote)

Duration: Direct Hire

Compensation: $ 180,000- $185,000

Work Requirements: U.S. Citizen, GC Holders, or Authorized to Work in the U.S.

DevSecOps Architect

As the DevSecOps Architect, you will define, build, and champion the integration of security into every stage of the Secure Software Development Lifecycle (S-SDLC), embedding automated security controls, governance, and compliance into CI/CD pipelines, cloud infrastructure, and application delivery processes across the enterprise.

Reporting to the Director II of Cybersecurity Architecture, Engineering & IAM, this role requires a deeply technical, security-minded architect and engineer who bridges the worlds of software development, cloud operations, and cybersecurity. You will design and implement secure-by-default development frameworks, automate security testing and compliance enforcement, and drive a cultural shift toward shared security ownership, ensuring that every application and infrastructure deployment across all Rock business units is built secure from the ground up.

This is a shift-left architecture role. The ideal candidate does not sit at the end of the pipeline reviewing what others have built, they embed themselves into the engineering lifecycle, define the standards developers work within, and build the tooling and automation that makes security the path of least resistance. You architect at scale, write production-grade code, and measure your impact in vulnerabilities prevented, not just discovered.

Responsibilities

Security Architecture & Secure SDLC

  • Design and implement an enterprise DevSecOps architecture that embeds security controls, automated testing, and compliance validation into every phase of the software development lifecycle, from code commit through production deployment
  • Define and maintain secure coding standards, application security reference architectures, and security design patterns that development teams adopt as foundational building blocks, not optional guidelines
  • Architect threat modeling frameworks and processes that enable development teams to proactively identify and mitigate security risks during design and development phases, before code is written
  • Establish and govern security gate criteria within CI/CD pipelines, ensuring that code, container images, infrastructure-as-code templates, and third-party dependencies meet security and compliance thresholds before promotion to production
  • Own the security architecture review process for new applications, platforms, and major system changes, providing timely, actionable guidance that accelerates delivery rather than blocking it

Pipeline Engineering & Automation

  • Design, build, and maintain secure CI/CD pipelines integrating automated security tooling across the full spectrum: static application security testing (SAST), dynamic application security testing (DAST), software composition analysis (SCA), container scanning, infrastructure-as-code (IaC) scanning, and secrets detection
  • Develop and maintain custom pipeline integrations, security automation scripts, and policy-as-code frameworks using Python, PowerShell, Go, or similar languages, enforcing security controls programmatically at scale
  • Implement automated compliance-as-code solutions that continuously validate infrastructure and application configurations against regulatory requirements (PCI-DSS, SOX, tribal gaming regulations) and internal security policies, eliminating manual evidence collection
  • Engineer automated remediation workflows that detect, alert, and resolve common security misconfigurations and vulnerabilities without manual intervention, reducing mean time to remediate across the portfolio
  • Build developer-facing security tooling and integrations that surface security findings directly within developer workflows (IDE plugins, pull request gates, ticketing integrations), making security feedback immediate and actionable

Cloud & Infrastructure Security

  • Architect and enforce security guardrails across cloud environments (Azure, AWS, Google Cloud), including network segmentation, identity and access policies, encryption standards, logging configurations, and monitoring baselines
  • Design and implement secure infrastructure-as-code (Terraform, Ansible, ARM/Bicep, CloudFormation) templates and modules that serve as hardened, reusable baselines for all cloud and on-premises deployments
  • Oversee container and Kubernetes security architecture, including image hardening, runtime protection, network policies, secrets management, and admission control policies
  • Collaborate with cloud engineering, infrastructure, and platform teams to ensure IaaS, PaaS, and serverless workloads across Linux and Windows environments are deployed and operated in accordance with zero-trust principles and enterprise security standards
  • Define and maintain cloud security posture management (CSPM) standards, continuously monitoring for drift and enforcing guardrails that prevent insecure configurations from reaching production

Application Security & Vulnerability Management

  • Lead the application security program in partnership with development teams - conducting architecture reviews, code reviews, and penetration testing coordination to identify and remediate vulnerabilities before they reach production
  • Evaluate, implement, and manage application security tooling across SAST, DAST, SCA, container, and cloud posture domains, ensuring comprehensive, continuous coverage across the full application and infrastructure portfolio
  • Drive adoption of secure software supply chain practices, including software bill of materials (SBOM) generation, dependency management, artifact signing, provenance verification, and third-party component vetting
  • Establish a vulnerability management lifecycle with defined SLAs, risk-based prioritization, and integration into development sprints - ensuring findings are remediated by development teams, not just reported by security
  • Lead red team coordination and penetration testing engagements, translating findings into architectural improvements and developer education, not just remediation tickets

Culture, Enablement & Continuous Improvement

  • Champion a DevSecOps culture of shared security responsibility across development, operations, and security teams, breaking down silos and fostering collaboration through training, enablement, and embedded security practices
  • Develop and deliver security training programs, workshops, secure coding guidelines, and self-service tooling that empower developers to build securely and independently - without requiring security team involvement for every decision
  • Establish DevSecOps metrics and KPIs (mean time to remediate, vulnerability escape rate, pipeline security coverage, compliance drift, developer security adoption) to measure program effectiveness and drive continuous improvement
  • Research, prototype, and evaluate emerging DevSecOps capabilities, including AI-powered security testing, LLM/generative AI security controls, and intelligent vulnerability prioritization, piloting innovations that deliver measurable security outcomes
  • Mentor and provide technical guidance to security engineers, developers, and operations staff, raising the security proficiency and awareness of the broader technology organization
  • Stay at the forefront of DevSecOps, application security, cloud-native security, and AI-powered security testing trends, continuously identifying opportunities to adopt emerging technologies and practices for competitive advantage

Qualifications & Experience

  • 8-10+ years of combined experience in cybersecurity, software engineering, DevOps/platform engineering, or cloud architecture, with at least 4+ years focused on DevSecOps, application security, or security engineering in enterprise environments
  • Demonstrated success designing and implementing enterprise DevSecOps programs, including secure CI/CD pipelines, automated security testing, and policy-as-code frameworks at scale
  • hands-on experience with Python, Go, PowerShell, or similar languages, with the ability to build custom security tooling, pipeline integrations, and automation frameworks from scratch Strong software development proficiency,
  • hands-on experience architecting and securing workloads in IaaS, PaaS, serverless, and containerized (Docker, Kubernetes) environments on Azure and/or AWS across Linux and Windows Deep infrastructure expertise
  • Extensive experience with CI/CD platforms (GitHub Actions, Azure DevOps, GitLab CI, Jenkins) and infrastructure-as-code tools (Terraform, Ansible, ARM/Bicep, CloudFormation)
  • Strong working knowledge of application security testing tools and practices: SAST, DAST, SCA, container scanning, IaC scanning, and secrets detection, and the vulnerability management lifecycle end-to-end
  • Deep understanding of cloud security architecture, zero-trust principles, identity and access management, network security, and data protection across hybrid and multi-cloud environments
  • Experience with secure software supply chain practices: SBOM, artifact signing, dependency governance, and third-party risk management
  • Familiarity with regulatory and compliance frameworks relevant to gaming and hospitality (PCI-DSS, SOX, tribal gaming regulations, GLBA), preferred but not required
  • Relevant certifications preferred: CISSP, CISM, CSSLP, GWEB, Microsoft SC-series, Azure Solutions Architect/DevOps Engineer, AWS Security Specialty/DevOps Engineer, Certified Kubernetes Security Specialist (CKS), or equivalent

Professional Skills

  • Translate complex security requirements into practical, developer-friendly architectures, tooling, and automated controls that integrate seamlessly into existing development and operations workflows, without creating friction
  • Operate as a hands-on technical leader who architects solutions and personally writes, reviews, and ships high-quality code and automation, not a delegator or reviewer only
  • Influence and drive cultural change

About INSPYR Solutions

Technology is our focus and quality is our commitment. As a leading global expert in delivering flexible technology and talent solutions, we strategically align industry and technical expertise with our clients’ business objectives and cultural needs. Our tailored offerings include a wide variety of professional services, project solutions, managed services, and talent resources, all bolstered by our strategic partnerships with cutting-edge technology services. By always striving for excellence and focusing on the human aspect of our business, we work seamlessly with our talent and clients to match the right solutions to the right opportunities. Learn more about us at www.inspyrsolutions.com.

INSPYR Solutions provides Equal Employment Opportunities (EEO) to all employees and applicants for employment without regard to race, color, religion, sex, national origin, age, disability, genetics, or any other protected status. INSPYR Solutions complies with all applicable laws governing nondiscrimination in employment in every location in which the company has facilities. Applicants requiring reasonable accommodation during the application or interview process should contact [email protected] for assistance.

Information collected and processed through your application with INSPYR Solutions (including any job applications you choose to submit) is subject to INSPYR Solutions' Privacy Policy and INSPYR Solutions' AI and Automated Employment Decision Tool Policy: https://www.inspyrsolutions.com/policies/. By submitting an application, you are consenting to being contacted by INSPYR Solutions through phone, email, or text.

26-159434

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
1,432,466 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account Continue with Google
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Security
Similar stack
Same company
Hollywood
≈ $148k – $314k per year (Estimated) • In office • 10+ years exp • Jersey City
AI/ML
Machine Learning
Cybersecurity
Threat Modeling
DLP
Management
Outlook
Agile
Apply
≈ $136k – $289k per year (Estimated) • In office • 5+ years exp • Columbus
Python
DevOps
CI/CD
AWS
Cybersecurity
Threat Modeling
Management
Agile
Apply
$98k – $182k per year • In office • Secret • Master's Degree • Orlando
Python
C++
DevOps
Terraform
Ansible
OpenShift
GitLab CI
CI/CD
Docker
Kubernetes
Nexus Repository
Linux
Management
Agile
Apply
$121k – $224k per year • In office • Secret • Master's Degree • Orlando
Python
C++
DevOps
Terraform
Ansible
OpenShift
GitLab CI
CI/CD
Docker
Kubernetes
Nexus Repository
Linux
Management
Agile
Apply
≈ $122k – $258k per year (Estimated) • In office • 10+ years exp • Jersey City
AI/ML
Machine Learning
Cybersecurity
Threat Modeling
DLP
Management
Outlook
Agile
Apply
$130k – $140k per year • In office • 6+ years exp • Hollywood
Python
Go
JavaScript
TypeScript
SQL
PowerShell
Node JS
AI/ML
Machine Learning
Frontend
Vue.js
GraphQL
Angular
React.js
DevOps
Rest API
Terraform
Ansible
Azure
CI/CD
Windows Server
AWS
Docker
Kubernetes
SaltStack
Platform Engineering
Bicep
IAM
Windows
Cybersecurity
Zero Trust
Microsoft Entra ID
SIEM
Management
Agile
ITSM
Apply
$170k – $180k per year • In office • 12+ years exp • PhD • Hollywood
Python
JavaScript
PowerShell
Node JS
Frontend
GraphQL
DevOps
Rest API
GCP
Azure
CI/CD
Git
AWS
Platform Engineering
AWS Lambda
SLI/SLO/SLA
IAM
AWS Step Functions
Cybersecurity
ISO 27001
NIST CSF
PCI DSS
Least Privilege
SIEM
Management
ITSM
Apply
$95k – $100k per year • In office • 5+ years exp • Bachelor's Degree • Hollywood
AI/ML
AI Agents
Cybersecurity
ISO 27001
PCI DSS
SOC 2
Analytics
Power BI
Management
ServiceNow
Power Automate
Power Apps
BPMN
Apply
$45k – $53k per year • In office • Full-Time • High School Diploma • Hollywood
Apply
Front Desk Agent 1 day ago
$45k – $53k per year • In office • Full-Time • High School Diploma • Hollywood
Apply
See all jobs
This is one of many
1,432,466 more open roles from verified company boards, updated every day.