Software Engineer (Full Stack + DevSecOps Platform Engineer)
InfoVision, Inc.
Irving, United States of America
15 days ago
Role details
Contract type
Permanent contract Employment type
Full-time (> 32 hours) Working hours
Regular working hours Languages
English Experience level
SeniorJob location
Irving, United States of America
Tech stack
Java
Artificial Intelligence
Amazon Web Services (AWS)
Amazon Web Services (AWS)
Cipher
Cloud Computing
Continuous Integration
DevOps
Amazon DynamoDB
Identity and Access Management
Python
Key Management
Node.js
RSA (Cryptosystem)
Secure Hash Algorithm
Software Engineering
Software Vulnerability Management
Diagnostic Tools
Transport Layer Security
Delivery Pipeline
Spring-boot
Backend
Gitlab-ci
Enterprise Integration
Functional Programming
Cloudwatch
Api Gateway
Kibana
REST
Splunk
Devsecops
Security Orchestration, Automation & Response
Jenkins
Vulnerability Analysis
Microservices
Job description
Looking for an ideal candidate who can code, build pipelines, integrate scanners, understand SBOM/CBOM findings, troubleshoot AWS and production issues, and design safe AI-assisted remediation workflows.
Requirements
- 11+ years of software engineering experience.
- 3+ years of DevOps, DevSecOps, platform engineering, or security automation experience.
- Strong Java/Spring Boot background.
- Hands-on CI/CD and cloud experience.
- Practical experience with security scanning and vulnerability remediation.
- Strong communication skills and ability to work across security, platform, DevOps, and application teams.
- Strong hands-on backend development experience with Java/Spring Boot.
- Experience with at least one additional language such as Node.js, Python, or Go.
- Experience building REST APIs, microservices, batch jobs, and platform integrations.
- Hands-on experience with Jenkins and/or GitLab CI/CD.
- Strong understanding of SBOM, dependency scanning, transitive dependencies, CVEs, and container image scanning.
- Good understanding of CBOM and crypto inventory, including TLS/HTTPS, Certificates, Keys, Cipher suites, Encryption algorithms, Hashing algorithms, Signing algorithms
- Keystores/truststores, Secrets management
- Ability to identify weak crypto such as MD5, SHA-1, DES/3DES, RC4, RSA-1024, TLS 1.0/TLS 1.1, and disabled certificate validation.
- Hands-on AWS experience with services such as, Lambda, API Gateway, S3, DynamoDB, IAM, ECS/EKS, CloudWatch, X-Ray, Secrets Manager, KMS
- Experience with monitoring and troubleshooting tools such as Splunk, ELK/Kibana, CloudWatch, and X-Ray.
- Strong troubleshooting skills across application, pipeline, cloud, and security issues.