As a DevSecOps Engineer, the focus is on strengthening application security and
embedding modern DevSecOps practices across the development lifecycle. The role involves identifying and remediating application vulnerabilities, integrating security into every stage of the SDLC, and ensuring that robust security controls are implemented and maintained in CI/CD pipelines.
Day-to-day responsibilities include designing and automating security controls, performing secure code and pipeline reviews, monitoring vulnerabilities, and collaborating with development and operations teams to drive “security by design.” By doing so, this role adds direct value to the Technology Department, working closely with all tribes to reduce risk exposure, enable faster and more secure software delivery, and foster a culture where security becomes a natural part of innovation and growth.