{"id":1804192,"url":"https://alion.io/job/swbc-devsecops-security-engineer","title":"DevSecOps Security Engineer","company":{"id":1971330,"name":"Swbc","domain":"swbc.com","url":"https://alion.io/company/swbc","size_band":"501-1000","is_staffing_agency":false,"employer_type":"direct","is_intermediary":false,"listed_via":null,"ats_vendor":"Workday","truth_index":null},"role":"Security","role_family":"Security","seniority":"senior","employment_type":"full_time","work_mode":"on_site","remote_scope":null,"remote_scope_basis":null,"remote_working_hours":null,"hiring_geo_confidence":"structured","locations":["San Antonio, United States"],"countries":["US"],"hiring_countries":[],"hiring_countries_total":0,"salary":null,"salary_estimate":{"min_usd":101000,"max_usd":197000,"period":"year","method":"role_seniority_country_remote_cell","sample_n":1093},"experience_years_min":5,"visa_sponsorship":false,"relocation_package":false,"has_equity":false,"technologies":[{"name":"Amazon CloudWatch","optional":false},{"name":"Amazon EC2","optional":false},{"name":"Amazon ECS","optional":false},{"name":"Amazon S3","optional":false},{"name":"AWS","optional":false},{"name":"AWS CDK","optional":false},{"name":"AWS Lambda","optional":false},{"name":"Azure DevOps","optional":false},{"name":"CI/CD","optional":false},{"name":"CloudFormation","optional":false},{"name":"Docker","optional":false},{"name":"Git","optional":false},{"name":"GitHub","optional":false},{"name":"GitHub Actions","optional":false},{"name":"Go","optional":false},{"name":"IAM","optional":false},{"name":"Kubernetes","optional":false},{"name":"Mend","optional":false},{"name":"OWASP Top 10","optional":false},{"name":"OWASP ZAP","optional":false},{"name":"PCI DSS","optional":false},{"name":"Prowler","optional":false},{"name":"Python","optional":false},{"name":"SIEM","optional":false},{"name":"SOC 2","optional":false},{"name":"SonarQube","optional":false},{"name":"Terraform","optional":false},{"name":"Trivy","optional":false},{"name":"Azure","optional":true}],"status":"live","first_seen_at":"2026-09-30T00:00:00Z","employer_posted_date":"2026-09-30","last_verified_at":"2026-10-11T03:14:39Z","board_verified":true,"closed_at":null,"days_open":11,"trust":{"level":"ok","repost_count":null,"flags":[],"days_open":11},"description":"SWBC is seeking a talented DevSecOps Security Engineer to leverage modern security practices and tools to enhance the security, integrity, and reliability of cloud and on-premise applications. This role partners with DevOps, engineering, and security teams to embed security across the software development lifecycle and ensure secure, compliant, and resilient application delivery.\nWhy you'll love this role:\nYou’ll have the opportunity to embed security at the core of modern cloud and DevOps environments, influencing how secure systems are designed, built, and released at scale. This role offers hands-on ownership of cutting-edge DevSecOps tooling while partnering closely with engineering teams in a highly regulated, security-focused organization. If you enjoy automation, cloud security, and making a real impact across the SDLC, this role provides both challenge and growth.\nEssential duties include the following:\nDesign, implement, and maintain security controls within GitHub and Azure DevOps-based CI/CD pipelines.\nIntegrate security tools (SAST, SCA, DAST, container and secrets scanning) into pipelines.\nDevelop automation scripts for secure deployments, monitoring, and operational efficiency.\nSecure AWS environments including services such as EC2, S3, Lambda, IAM, GuardDuty, Inspector, and CloudWatch.\nImplement IAM, OIDC, secrets management, and KMS-based encryption controls.\nDesign and maintain Infrastructure-as-Code solutions using Terraform, CloudFormation, or AWS CDK.\nSecure containerized environments using Docker and Kubernetes, including cluster hardening and policy enforcement.\nImprove container security through image scanning, signing, and registry controls.\nImplement logging, monitoring, alerting, and observability solutions for cloud workloads.\nMonitor systems for threats, indicators of compromise, and compliance gaps.\nPerform vulnerability management, tracking, and remediation.\nParticipate in incident response, investigation, and recovery activities.\nSupport audit and compliance requirements (PCI-DSS, SOC2, NIST) and coordinate with GRC teams.\nReview code, infrastructure changes, and releases for security risks.\nCollaborate with DevOps and engineering teams to enforce secure SDLC practices.\nProvide technical guidance on security architecture and best practices.\nMentor team members and promote a culture of security, automation, and continuous improvement.\nDevelop and track security metrics, KPIs, and pipeline telemetry.\nSerious candidates will possess the minimum qualifications:\nBachelor’s degree in Computer Science, Information Security, or related field, or equivalent practical experience.\nMinimum five (5) years of experience in DevSecOps, Cloud Security, Security Engineering.\nHands-on experience with GitHub / GitHub Actions or similar CI/CD tools.\nStrong expertise in AWS cloud services and security controls.\nExperience with Infrastructure-as-Code tools (Terraform preferred).\nStrong understanding of CI/CD pipeline design, automation, and security integration.\nExperience with containers and orchestration (Docker, Kubernetes, ECS).\nKnowledge of IAM, OIDC, secrets management, and key management (KMS).\nStrong understanding of Git workflows, branching strategies, and pull request processes.\nKnowledge of OWASP Top 10 and application security principles.\nProficiency in scripting languages such as Python, Bash, or Go.\nExperience with security tools such as Mend, SonarQube, Prowler, Trivy, OWASP ZAP, or Burp Suite.\nExperience with SIEM/SOAR platforms and security automation is a plus.\nAWS Certified Developer - Associate is required at time of hire.\nAWS Certified DevOps Engineer - Professional is required and must be obtained within 6 months of hire.\nAWS Certified Security - Specialty is highly desired and must be obtained within 6 months of hire.\nAWS Certified SysOps Administrator - Associate, or AWS Certified Solutions Architect - Associate are highly desired.\nSecurity certifications (CISSP, CCSP, GIAC) are highly desired.\nExperience in financial or regulated environments.\nExposure to offensive security practices, AI/ML security risks.\nSWBC offers*:\nCompetitive overall compensation package\nWork/Life balance \nEmployee engagement activities and recognition awards \nYears of Service awards\nCareer enhancement and growth opportunities \nLeadership Academy and Mentor Program\nContinuing education and career certifications \nVariety of healthcare coverage options\nTraditional and Roth 401(k) retirement plans \nLucrative Wellness Program\n*Based upon employee eligibility\nAdditional Information:\nSWBC is a Substance-Free Workplace and requires pre-employment drug testing.\nPlease note, SWBC does not hire tobacco users as allowed by law.\nTo learn more about SWBC, visit our website at www.SWBC.com. If interested, please click the appropriate apply button.","description_format":"text","description_chars":4828,"description_truncated":false,"requirements":{"experience_years_min":5,"management_years_min":null,"team_size_min":null,"manages_managers":false,"education":{"level":"bachelor","optional":false},"security_clearance":false,"languages":[]},"benefits":["Growth opportunities","Retirement plans"],"hiring_locations":[],"hiring_excludes":[],"relocation_offered":false,"industries":["DevSecOps"],"lifecycle":[{"event":"open","at":"2026-10-03T18:58:30Z"}],"visa":[],"liveness":{"score":87,"band":"hot","label":"Hiring now","p_open":1,"p_active":0.87,"p_room":1,"age_days":10,"expected_fill_days":40,"reasons":["conf:1","velocity","win:early"],"computed_at":"2026-10-10T05:45:15Z"},"pay":null,"html_url":"https://alion.io/job/swbc-devsecops-security-engineer","json_url":"https://alion.io/job/swbc-devsecops-security-engineer.json","meta":{"generated_at":"2026-10-11T03:36:06Z","cache_seconds":300,"methodology":"https://alion.io/methodology","terms":"https://alion.io/terms","contact":"https://alion.io/contact","api":"https://alion.io/developers","about":"Alion is a live layer of people, companies and AI agents: who they are, whether they are real and active right now, what they do and how to work with them, readable by people and by agents and paid per call.","catalog":"https://alion.io/catalog.json","usage":{"tier":"crawler","counted_by":"address","units_charged":1,"used_today":1402,"day_limit":5000,"remaining_today":3598,"minute_limit":60,"resets_at":"2026-10-12T00:00:00Z"}},"offers":[{"id":"company.slices","title":"One company in depth, by slice","status":"live","price":{"credits":0.02,"usd":0.002,"plus_per_slice":{"credits":0.05,"usd":0.005}},"unit":"per company, plus each slice with data","note":"the employer in depth","call":{"mcp_tool":"get_company","arguments":{"id":1971330},"rest":"https://alion.io/mcp/rest/get_company?id=1971330"},"human":"https://alion.io/catalog?offer=company.slices&for=job%2Fswbc-devsecops-security-engineer"},{"id":"market.stats","title":"A market slice: pay, demand and time to fill","status":"live","price":{"credits":1,"usd":0.1},"unit":"per slice","note":"pay, demand and time to fill for this role and place","call":{"mcp_tool":"market_stats"},"human":"https://alion.io/catalog?offer=market.stats&for=job%2Fswbc-devsecops-security-engineer"},{"id":"job.search","title":"Open jobs by role, technology, place, pay and visa","status":"live","price":{"credits":0.02,"usd":0.002},"unit":"per posting in a list","note":"similar open postings","call":{"mcp_tool":"search_jobs"},"human":"https://alion.io/catalog?offer=job.search&for=job%2Fswbc-devsecops-security-engineer"},{"id":"company.verify","title":"Is this company real and active right now","status":"pilot","price":null,"unit":"per company","request":{"url":"https://alion.io/catalog/request","method":"POST","body":"{\"offer\": \"company.verify\", \"for\": \"job/swbc-devsecops-security-engineer\", \"note\": \"what you need it for\"}"},"human":"https://alion.io/catalog?offer=company.verify&for=job%2Fswbc-devsecops-security-engineer"}]}