SonicJobs Logo
Left arrow iconBack to search

Senior DevSecOps Engineer

Particle Measuring Systems
Posted a month ago, valid for 17 days
Location

Niwot, CO 80503, US

Salary

$120,000 - $144,000 per year

info
Contract type

Full Time

Retirement Plan
Life Insurance
Tuition Reimbursement
Flexible Spending Account

By applying, a Sonicjobs account will be created for you. Sonicjobs's Privacy Policy and Terms & Conditions will apply.

SonicJobs' Terms & Conditions and Privacy Policy also apply.

Sonic Summary

info
  • Particle Measuring Systems is seeking a Senior DevSecOps Engineer to join their R&D team in Niwot, CO, offering a hybrid work environment.
  • The role requires a minimum of 5 years of engineering experience, including at least 2 years specifically in a DevSecOps or security-focused DevOps position.
  • Candidates should possess a Bachelor's degree in Computer Science or a related field, along with expertise in CI/CD pipelines and cloud platforms like AWS.
  • The competitive salary for this position ranges from $110,000 to $158,000, reflecting the company's commitment to fair and competitive compensation.
  • The company provides a comprehensive benefits package, including health coverage, a 401(k) plan, and tuition reimbursement.

Do you want to be part of a business that genuinely valuesĀ entrepreneurialism,Ā innovationĀ andĀ individual accountability? WeĀ focus on our customersĀ and are proud of the difference our technology makes. We partner with some of the biggest manufacturing companies in the world and our technical innovations are used to enhance well-known brands across multiple industries.

SeniorĀ DevSecOpsĀ EngineerĀ Ā 

Ā 

TitleSeniorĀ DevSecOpsĀ EngineerĀ 

DepartmentR&DĀ 

LocationNiwot, COĀ (Hybrid)Ā 

ReportsĀ ToĀ 

Ā 

About UsĀ Ā 

Established in 1972, Particle Measuring Systems is aĀ global leaderĀ forĀ micro-contamination monitoringĀ equipment improving the performance of clean manufactures in theĀ semiconductorĀ andĀ pharmaceuticalĀ industries.Ā Ā We’reĀ a growing technology company in Niwot, Colorado, the heart of the Rocky Mountains.Ā Ā We offer an exceptional and rewarding work environment inĀ a great placeĀ to live.Ā Ā Our employees enjoy challenging projects in the development and manufacture of light scattering particle counters and diverse technologies and applications.Ā 

Ā 

Your ImpactĀ Ā 

We are looking for aĀ SeniorĀ DevSecOpsĀ EngineerĀ who will contribute to the success of theĀ R&DĀ Team, applying theirĀ expertiseĀ inĀ DevSecOpsĀ to support the achievement of team and company goals and deliver innovative, reliable solutions.Ā Ā In this role, the successful candidate will collaborate effectively with colleagues and cross-functional teams,Ā demonstrateĀ strong problem-solving and decision-making skills, andĀ maintainĀ a commitment to professional excellence,Ā qualityĀ and continuous improvement.Ā 

Ā 

The RoleĀ (manager input)Ā 

SummaryĀ 

Ā 

Job ResponsibilitiesĀ 

  • Lead aĀ DevSecOpsĀ team that builds and manages secure cloud environments and CI/CD pipelines integrating automated security testing, vulnerabilityĀ managementĀ and compliance controls to support efficient and secure firmware and software delivery.Ā 

  • Define and implement security and compliance practices, including vulnerability scanning, dependency analysis, SBOM management, threat modeling, and secure coding standards withĀ SAST, DAST, SCA and SBOMĀ tools.Ā 

  • Collaborate with development teams to improve workflows, release strategies, automated testingĀ environmentsĀ and integrate security practices into the development process.Ā 

  • Automate the provisioning and configuration of servers, containers, and other infrastructure components usingĀ IaCĀ and configuration management tools.Ā 

  • Administer andĀ maintainĀ binary repositories.Ā 

  • Implement andĀ maintainĀ monitoring and logging systems to ensure the health and performance of our CI/CD pipeline infrastructure.Ā 

  • Lead a team through the vulnerability management lifecycle; investigating and remediating security vulnerabilities and incidents in CI/CD pipelines and product releases.Ā 

  • Troubleshoot and resolve issues related to development, automatedĀ testing, andĀ release, and security incidents, ensuring tight feedback loops and maximum value throughout.Ā 

  • Collaborate and communicate with development teams to capture performance metrics,Ā identifyĀ bottlenecks, and implement improvement strategies.Ā 

  • Work with a cross-functional team to ensure product releases meet internal and regulatory cybersecurity standards.Ā 

  • Stay up to date with emerging technologies, industry trends, security frameworks, and software supply chain security best practices.Ā 

  • Recommend andĀ procureĀ new DevOps and cybersecurity related tools,Ā work with legal to approveĀ tools, track license agreements, communicate with vendors, planĀ upgradesĀ and negotiate costs.Ā 

  • ActivelyĀ participateĀ in building andĀ maintainingĀ a strongĀ DevSecOpsĀ team byĀ establishingĀ technical interview criteria and evaluating candidates through interviews.Ā 

  • Mentor and provide guidance to members of theĀ DevSecOpsĀ team,Ā firmwareĀ and software teams, fostering a culture of knowledge sharing, secure developmentĀ practicesĀ and continuous learning/improvement.Ā 

  • Continuously evaluate processes for improvements in efficiency, quality, and safety.Ā 

  • This job description is not intended to beĀ all-inclusive.Ā Ā Responsibilities may evolve over time, and other related duties may be assigned to meet the ongoing needs of the company.Ā 

Ā 

Required QualificationsĀ 

  • Bachelor of Science in Computer Science or a related Engineering field.Ā 

  • 2 years of experience as aĀ DevSecOpsĀ Engineer or security-focused DevOps Engineer and 5 total years of experience in engineering, with a strong understanding of software development practices and methodologies.Ā 

  • 2 years of experience as a technical lead withinĀ DevSecOpsĀ or other Engineering practices.Ā 

  • Development experience in either embedded firmware or software.Ā 

  • Experience integrating SAST, DAST, SCA and SBOM tools into CI/CD pipelines.Ā 

  • Hands-on experience managing binary repositories.Ā 

  • ProficiencyĀ with AWS or other major cloud platforms.Ā 

  • ProficiencyĀ inĀ IaCĀ and configuration managementĀ tools like.Ā 

  • Strong scripting skills in languages like Bash, Python, or PowerShell.Ā 

  • Experience usingĀ buildĀ tools such asĀ CMake, Make, or custom toolchains.Ā 

  • Experience with containerization technologies such as Docker.Ā 

  • Working knowledge of CI/CD tools like Jenkins, Bitbucket Pipelines and GitHub Actions.Ā 

  • Familiarity with monitoring and logging tools such as Prometheus and Grafana.Ā 

  • Cyber Security knowledge and experience; solidĀ understanding of cybersecurity principles, vulnerability management, andĀ DevSecOpsĀ practices.Ā 

  • Experience implementing shift-left security across the product development lifecycle.Ā 

  • Excellent problem-solving and troubleshooting skills, with the ability to analyze complex systems andĀ identifyĀ root causes.Ā 

  • Strong communicationĀ and collaboration skills, capable of working effectively in cross-functional teams.Ā 

  • Experience interviewing engineering candidates.Ā 

Ā 

Preferred QualificationsĀ 

  • Understanding ofĀ Agile, DevOps andĀ DevSecOpsĀ methodologies, with experience embedding security into software development processes.Ā 

  • ExpertiseĀ in Git and the Atlassian suite of software development tools including Bitbucket pipelines.Ā 

  • Experience integrating security scanning tools into CI/CD pipelines (SAST, DAST).Ā 

  • Familiarity with automated software composition analysis (SCA) and open-source compliance practices.Ā 

  • Familiarity with DORA metrics.Ā 

  • Cyber Security certifications such as CISSP, CCSP, Security+, AWS Certified Security - Specialty.Ā 

  • Experience with SBOM standards such as SPDX andĀ CycloneDX.Ā 

  • Familiar with industry standards such as EN 18037 and IEC 62443.Ā 

  • Knowledge and experience with techniques required byĀ EUĀ Cyber Resilience Act, particularly with respect to vulnerability management.Ā 

  • ExpertiseĀ in performing threat modeling and risk assessment.Ā 

  • Experience working alongside cybersecurity teams to ensure secure development practices and incident response readiness.Ā 

  • PreviousĀ experience in vendor management.Ā 

  • Experience inĀ multi-disciplinary engineering environment.Ā 

Ā 

Work Environment & Physical RequirementsĀ 

  • This role primarilyĀ operatesĀ in an office/lab/manufacturing environment.Ā 

  • MustĀ be able to sit, stand, and use a computer for extended periods of time.Ā 

  • This is a hybrid position, ā€œin-officeā€ approximately 50% of the time.Ā 

  • Occasional lifting of up toĀ 20Ā lbs.Ā may beĀ required.Ā 

  • Reasonable accommodation may beĀ madeĀ to enable individuals with disabilities to perform the essential functions of this role.Ā 

Ā 

Compensation & BenefitsĀ 

  • Competitive base salary range:Ā $110,000 - $158,000Ā 

  • Our compensation philosophy:Ā we offer competitive pay based on market data, including local, national, and industry benchmarks.Ā Ā For new hires, offers areĀ generally withinĀ the established min- to mid-point of the range for the role, with flexibility to recognize experience, skills, and education.Ā Ā Our approach ensures fair pay internally whileĀ remainingĀ competitive externally and allows room for growth.Ā Ā 

  • Comprehensive benefits package:Ā 

  • Health coverage: medical, dental, vision,Ā fsa, onsite clinic (CO employees), life insuranceĀ 

  • 401(k) retirement plan with company matchĀ 

  • Vacation, holiday, and leave policiesĀ 

  • Tuition reimbursement, Employee recognition programs, EmployeeĀ assistanceĀ programsĀ 

Ā 

Particle Measuring SystemsĀ isĀ proud to be an Equal Opportunity Employer and are committed to building an inclusive and supportive workplace where everyone can thrive.Ā 

#LI-JC1

Ā 




Learn more about this Employer on their Career Site

Apply now in a few quick clicks

By applying, a Sonicjobs account will be created for you. Sonicjobs's Privacy Policy and Terms & Conditions will apply.

SonicJobs' Terms & Conditions and Privacy Policy also apply.