> Markdown version of [/jobs/ext/2555152-devsecops-application-security-engineer](https://www.wearedevelopers.com/jobs/ext/2555152-devsecops-application-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # DevSecOps / Application Security Engineer - **Company:** Beacon Hill Technologies - **Location:** Indianapolis, IN, United States - **Contract:** Permanent contract - **Skills:** Application Programming Interfaces (APIs), Artificial Intelligence, Amazon Web Services, Applications Architecture, User Authentication, Microsoft Azure, Cloud Computing Security, Code Review, Cyber Security, Continuous Integration, DevOps, Programming Tools, Github, Identity and Access Management, Key Management, Open Web Application Security, Systems Development Life Cycle, Secure Coding, Software Engineering, Systems Integration, Software Vulnerability Management, Software Organization, Delivery Pipeline, Software Security, Software Coding, Data Pipelines, Devsecops, Security Orchestration, Automation & Response, Vulnerability Analysis - **Published:** August 20, 2026 - **Apply:** https://www.dice.com/job-detail/e2138138-57a5-493b-af6e-2da629f3b332 ## About the Role Hands-on experience in DevSecOps, Application Security, or Security-focused DevOps Engineering Experience implementing and supporting Secure Software Development Lifecycle (Secure SDLC) practices Strong knowledge of CI/CD pipeline security and integrating security controls into development workflows Experience with Azure DevOps and automated pipeline development Experience building and implementing security automation, including vulnerability scanning and security testing Knowledge of application security principles, including secure coding practices, secrets management, encryption, authentication, and secure integrations Experience with vulnerability management and remediation processes Understanding of modern software development practices and application architectures Experience partnering with application developers, DevOps engineers, and security teams Ability to establish security standards, guardrails, and governance processes that are practical and scalable Experience implementing shift-left security strategies that move security validation earlier in the development lifecycle Strong understanding of security scanning tools and integrating them into automated development pipelines Excellent communication skills with the ability to influence engineering teams and drive security best practices Desired Skills: Experience with Application Security Engineering programs and maturing security practices within an organization Background in software development with hands-on coding experience Experience in Security Operations (SecOps) Experience with GitHub, including GitHub Secret Protection Experience with Snyk or similar application security and code scanning platforms Knowledge of cloud security within Microsoft Azure environments Experience in AWS environments with the ability to transition to Azure-based ecosystems Experience automating remediation workflows and security exception management Familiarity with security frameworks and industry best practices (OWASP, NIST, secure development standards) Experience defining application security policies, standards, and governance models Knowledge of APIs, certificates, identity and access management, and service account security Experience leveraging AI-powered developer tools (Claude, OpenAI, Copilot, etc.) for code review, vulnerability detection, and secure development practices Experience helping organizations build and mature application security programs from the ground up Experience balancing security requirements with development velocity and operational efficiency ## Description Our client is seeking a DevSecOps / Application Security Engineer to help build and mature application security practices across a growing development organization. This role will focus on integrating security into the software development lifecycle, implementing automated security testing within CI/CD pipelines, and establishing practical security standards that support, rather than hinder, development teams. The ideal candidate will bring a blend of application security, DevOps, and software development experience, with hands-on expertise in Azure DevOps, secure SDLC practices, vulnerability management, and security automation. This is an opportunity to play a key role in shaping a shift-left security strategy and building scalable security capabilities from the ground up. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [DevSecOps: Injecting Security into Mobile CI/CD Pipelines](https://www.wearedevelopers.com/videos/273-devsecops-injecting-security-into-mobile-ci-cd-pipelines) - [Innovating Developer Tools with AI: Insights from GitHub Next](https://www.wearedevelopers.com/videos/1268-innovating-developer-tools-with-ai-insights-from-github-next) - [From DevOps to Scaled DevOps: How We’re Rebuilding Continuous Delivery as a Platform](https://www.wearedevelopers.com/videos/100018-from-devops-to-scaled-devops-how-we-re-rebuilding-continuous-delivery-as-a-platform) - [DevSecOps culture](https://www.wearedevelopers.com/videos/783-devsecops-culture) - [DevSecOps: Security in DevOps](https://www.wearedevelopers.com/videos/36-devsecops-security-in-devops) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Now is the time for industrialized software development](https://www.wearedevelopers.com/magazine/601-now-is-the-time-for-industrialized-software-development) - [Dev Digest 120 - Apple and peers](https://www.wearedevelopers.com/magazine/455-dev-digest-120-apple-and-peers) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [Dev Digest 121 - AI goes offline](https://www.wearedevelopers.com/magazine/456-dev-digest-121-ai-goes-offline) - [Why Upskilling And Reskilling is Important For Developers](https://www.wearedevelopers.com/magazine/428-why-upskilling-and-reskilling-is-important-for-developers)