Security Engineer (DevSecOps)

Remote: 
Full Remote
Contract: 
Work from: 

Offer summary

Qualifications:

2+ years of experience building or securing web applications., 5+ years of experience designing, building, and deploying scalable security solutions, particularly in AWS and Kubernetes., Hands-on experience with integrating Application Security tools into CI/CD pipelines., Exceptional verbal and written communication skills with a customer focus..

Key responsabilities:

  • Champion and promote security best practices across engineering teams.
  • Secure and maintain Kubernetes environments focusing on RBAC and network policies.
  • Lead the design and implementation of secure cloud architectures in AWS.
  • Monitor and audit AWS environments to ensure compliance with internal standards and regulations.

Apptegy logo
Apptegy E-learning Scaleup https://www.apptegy.com/
201 - 500 Employees
See all jobs

Job description

About Apptegy

Apptegy partners with school districts to simplify communication, elevate their brand, and empower every role in their organization. We put our clients front and center in everything we do because it's our clients who are most passionate about education. We build our products and features to make everyone in a school community better communicators. Ask any of our clients about us, and they will tell you that Apptegy’s people are thoughtful and high-performing. Our fast response time and quality support mean school leaders, teachers, and staff always have a partner ready to help provide a solution. Joining Apptegy is your opportunity to be on a high-performing team and contribute to our growth and your own.

We value thoughtfulness and high performance in everyone. That’s how we’ve grown quickly and won (and kept) thousands of school districts across the U.S. Our team is fast-growing and you’ll have the tools, the mentors, and the resources you need to be successful. We ask you to be someone who is internally motivated to do your best work and that you care about others. Apptegy’s Security Engineer (DevSecOps) position is your opportunity to join a high-performing team and contribute to our growth and your own.

Why You’ll Love This Job

We are seeking a DevSecOps focused Security Engineer with expertise in AWS and Kubernetes to lead technical efforts in securing our cloud infrastructure and CI/CD pipeline. This role requires a strong technical foundation in AWS cloud environments, Kubernetes, and the software development lifecycle, along with solid communication skills to help foster an environment where security is everyone's responsibility.

What You’ll Do
  • Champion and evangelize security best practices across engineering teams, fostering a culture of secure-by-design.
  • Secure and maintain Kubernetes environments with a focus on RBAC, network policies, secrets management, and runtime defense.
  • Lead the design and implementation of secure, scalable cloud architectures in AWS, with emphasis on IAM policies, VPC design, encryption, secrets management, and logging.
  • Monitor, audit, and harden Kubernetes and AWS environments to ensure compliance with internal standards and external regulations (e.g., CIS benchmarks).
  • Define and enforce cloud security posture using Infrastructure as Code (IaC) frameworks such as Terraform.
  • Partner with development teams to perform threat modeling, risk assessments, and code reviews for new features and services.
  • Integrate security scanning tools (SAST, DAST, SCA, container image scanning) into automated pipelines for proactive vulnerability management.
  • Develop internal tooling, dashboards, and guardrails to enforce security policies that also work to enable the business.
  • Stay current on evolving threat landscapes, vulnerabilities, and cloud-native security technologies, bringing forward innovative solutions and practices.

  • Who You Are
  • 2+ years of experience building or securing web applications.
  • 5+ years of experience designing, building, and deploying scalable security solutions, with a strong focus on AWS and Kubernetes.
  • Experience with deploying and maintaining Cloud Security tooling (Wiz, CrowdStrike, Orca) 
  • Hands on experience with integrating Application Security tools, including SAST and DAST, into a CI/CD Pipeline. 
  • Thrives in a high-autonomy, fast-paced environment balancing tactical and strategic priorities.
  • Deep understanding of agile methodologies/mindset.
  • Exceptional verbal and written communication skills with a customer focus.
  • Passion for quality, security, and operational excellence.

  • What Helps You Stand Out
  • Experience with CI/CD tools  (Jenkins, GitLab CI, GitHub Actions, etc.). 
  • Experience with securing web applications against the OWASP Top 10.
  • Certifications (CISSP, AWS Security, PWPA/PWPP, CKA / CKS)
  • Google Cloud experience is a plus. 
  • Apptegy will not consider remote candidates from California, Colorado, Connecticut, Hawaii, Illinois, Maryland, Nevada, New York, Rhode Island, or Washington for this opening.

    Why You'll Love Working With Us

    We take our responsibility as a company seriously and aim to make this the best job that you’ve had (and one that sets you up for future success). We want your day at work and your time at home to be a joyful experience that’s why we provide:

    --Comprehensive medical, dental, vision, and life insurance coverage
    --Retirement 401(k) with employer match
    --Health Savings Accounts (HSA) and Flexible Spending Accounts (FSAs)
    --Mental Health Reimbursement
    --Unlimited paid time off including seasonal (December) company-wide time off
    --Paid parental and medical leave

    We value thoughtfulness and high performance in all candidates as we progress through the interview stages. If the challenge of building a rapidly growing company excites you as much as it does us, we hope you’ll consider joining us.
    --
    Apptegy is an equal-opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, gender expression, national origin, age, protected veteran or disabled status, or genetic information.

    Required profile

    Experience

    Industry :
    E-learning
    Spoken language(s):
    English
    Check out the description to know which languages are mandatory.

    Other Skills

    • Teamwork
    • Communication
    • Problem Solving

    Security Engineer Related jobs