> Markdown version of [/jobs/ext/2026529-information-protection-senior-advisor-product-security-devsecops](https://www.wearedevelopers.com/jobs/ext/2026529-information-protection-senior-advisor-product-security-devsecops). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Information Protection Senior Advisor (Product Security - DevSecOps - **Company:** Cigna - **Location:** United States (Remote available) - **Experience:** Expert - **Salary:** $124,600.0 - $207,600.0 - **Contract:** Permanent contract - **Skills:** Testing (Software), Java (Programming Language), Agile Methodology, Amazon Web Services, Microsoft Azure, Cloud Computing, Cyber Security, Computer Programming, Continuous Delivery, Continuous Integration, Data Security, Internet Security, Internet Services, Internet Service Provider, Python (Programming Language), Unix Shell, PCI Data Security Standards, Performance Tuning, Systems Development Life Cycle, Software Engineering, Systems Integration, Scripting, Google Cloud, Spring Cloud, Software Security, AngularJS, Kubernetes, Information Technology, Devsecops, Security Orchestration, Automation & Response, Static Application Security Testing, Vulnerability Analysis, Programming Languages, Dynamic Application Security Testing - **Published:** August 11, 2026 - **Apply:** https://www.careerbuilder.com/job-details/information-protection-senior-advisor-product-security-devsecops-morris-plains-nj--4fd68527-9ae3-4e5c-adbe-3139288a9817 ## About the Role * 8+ years of experience in cybersecurity, with a focus on application or product security * Proven experience integrating and automating security tools in CI/CD pipelines * Strong understanding of secure software development principles and modern SDLC practices * Hands-on experience with application security testing tools (SAST, DAST, SCA, MAST) * Experience designing and implementing security solutions across complex development environments * Familiarity with cloud platforms (AWS, Azure, or Google Cloud) and securing cloud-native applications * Strong interpersonal skills with the ability to influence and collaborate across engineering teams * Demonstrated ability to work effectively in Agile environments Preferred Qualifications * Experience with security automation and orchestration frameworks * Knowledge of regulatory and compliance frameworks (HIPAA, GDPR, PCI-DSS) * Proficiency in scripting or programming languages such as Python, Java, or Shell * Experience securing applications built with modern technologies (e.g., Java, Angular) * Industry certifications such as CISSP, CISM, CEH, or equivalent * Advanced degree in Computer Science, Information Security, or a related field If you will be working at home occasionally or permanently, the internet connection must be obtained through a cable broadband or fiber optic internet service provider with speeds of at least 10Mbps download/5Mbps upload., Agile Programming Methodologies, Amazon Web Services (AWS), AngularJS, Applications Security, Automation, Broadband, Cloud Applications, Cloud Computing, Compensation and Benefits, Computer Science, Continuous Deployment/Delivery, Continuous Integration, Cost Control, Cross-Functional, Employee Benefits, Fiber Optic Cable, HIPAA (Health Insurance Portability and Accountability Act), Healthcare, Information/Data Security (InfoSec), Internet Security, Internet Service Providers, Interpersonal Skills, Java, Machine Tool, Microsoft Windows Azure, Operational Improvement, Operational Strategy, PCI-DSS, Performance Tuning/Optimization, Process Improvement, Protective Services, Python Programming/Scripting Language, Regulatory Compliance, Risk Analysis, Risk Management, Scripting (Scripting Languages), Security Analysis, Software Development, Software Development Lifecycle (SDLC), Software Testing, State Ordinances, Test Tools, Threat Modeling, Trend Analysis, Unix Shell Programming, Work From Home ## Description Join a high-impact team driving the future of secure healthcare technology. As an Information Protection Senior Advisor, you will enable secure product delivery by embedding automated security solutions across modern development pipelines. You will partner closely with engineering teams to integrate security into every stage of the SDLC, helping protect critical applications while accelerating innovation across the organization., * Partner with development teams to embed security practices that enable safe, scalable, and high-quality product delivery * Design and implement automated security solutions within CI/CD pipelines to strengthen application security posture * Integrate and optimize application security testing tools (SAST, DAST, SCA, MAST) across multiple development environments * Influence secure architecture decisions by contributing to the design and implementation of modern applications and platforms * Lead security assessments, threat modeling, and vulnerability analysis to proactively identify and reduce risk * Develop and enhance reusable security services, tooling, and automation frameworks that support enterprise-wide DevSecOps maturity * Provide expert guidance to engineering teams on secure development practices and emerging security trends * Strengthen collaboration across cross-functional teams to promote a culture of shared security ownership * Ensure alignment with regulatory and compliance requirements (e.g., HIPAA, PCI-DSS, GDPR) where applicable * Improve security operational efficiency, performance, and cost optimization across application environments ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [DevSecOps: Injecting Security into Mobile CI/CD Pipelines](https://www.wearedevelopers.com/videos/273-devsecops-injecting-security-into-mobile-ci-cd-pipelines) - [JavaScript? No. Java Scripts! - Scripting with Java](https://www.wearedevelopers.com/videos/2094-javascript-no-java-scripts-scripting-with-java) - [How to Stop Choosing JavaScript Frameworks and Start Living](https://www.wearedevelopers.com/videos/118-how-to-stop-choosing-javascript-frameworks-and-start-living) - [DevSecOps culture](https://www.wearedevelopers.com/videos/783-devsecops-culture) - [DevSecOps: Security in DevOps](https://www.wearedevelopers.com/videos/36-devsecops-security-in-devops) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Now is the time for industrialized software development](https://www.wearedevelopers.com/magazine/601-now-is-the-time-for-industrialized-software-development) - [Why Upskilling And Reskilling is Important For Developers](https://www.wearedevelopers.com/magazine/428-why-upskilling-and-reskilling-is-important-for-developers)