DevSecOps Engineer (Azure)

Spectraforce
Chicago, IL, United States
about 1 month ago
Apply on leoforce.us
Prepare application

Role details

Contract type
Temporary contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Working hours
Regular working hours
Job source

Tech stack

Application Programming Interfaces (APIs) Amazon Web Services Audit Trail Microsoft Azure Cloud Storage Computer Programming Continuous Integration Github Issue Tracking Systems Information Management Python (Programming Language) Key Management
+24 more
Log Analysis Network Planning and Design Node.Js NoSQL OAuth Redis Kusto Query Language Zero Trust Network Access Systems Integration Management of Software Versions Extensible Markup Language (XML) Azure Service Bus Data Ingestion Rate Limiting Information Technology RSA Archer Platform Cosmos DB Api Design Terraform Devsecops Api Management Serverless Computing Key Vault Vulnerability Analysis

Job description

  • Design and implement API ingestion pipelines via Azure API Management (APIM) with OAuth2/JWT validation, rate limiting, and schema enforcement
  • Build event-driven ingestion workflows using Azure Service Bus and Azure Functions (durable, fan-out patterns)
  • Implement immutable artifact storage using Azure Blob Storage with WORM policies (time-based retention locks) and Azure Cosmos DB for tamper-evident metadata indexing
  • Architect Redis Cache for high-throughput query caching while preserving source-of-truth immutability guarantees
  • Integrate Azure Key Vault for envelope encryption of stored artifacts (customer-managed keys, automated rotation)
  • Build Log Analytics Workspace telemetry pipelines covering ingestion events, access audit trails, and integrity verification logs
  • Write Terraform IaC for all infrastructure - no click-ops; all resources policy-as-code compliant
  • Implement third-party tool integrations (connector APIs) to ingest evidence artifacts from source systems

Requirements

  • 5+ years building production workloads on Azure; demonstrated experience with event-driven and API-first architectures
  • Strong APIM experience: policies (inbound/outbound XML), backends, named values, developer portal, versioning
  • Experience implementing immutable/append-only storage patterns - WORM blob policies, Cosmos DB change feed auditing, or equivalent
  • Deploy and Manage NoSQL and CosmosDB database experience
  • Solid Terraform skills: modules, remote state, Azure Provider, CI/CD integration via GitHub Actions or Azure DevOps
  • Strong coding experience in Python and Node
  • Familiarity with envelope encryption patterns using Key Vault (CMK, key rotation, purge protection)
  • Understanding of zero-trust network design: Private Endpoints, VNet integration, NSG/UDR patterns
  • Ability to write KQL for operational queries, alerting rules, and audit log analysis
  • Experience integrating with third-party tool APIs (GRC platforms, vulnerability scanners, ticketing systems, or similar)
  • Hands-on proficiency with integrated testing tools
  • Effective written and verbal communication skills to collaborate with cross-functional teams
  • Desired certifications such as Azure Security Engineer Associate certification, and AWS-certified security - Specialty, CISSP and CCSP
  • Degree in Computer Science, Information Management, or related field preferred

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on leoforce.us
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:53 min

Transitioning toward DevSecOps with dynamic scanning and secrets management

Christoph Ruggenthaler · LIVE

3:55 min

Demonstrating semantic routing thresholds with the Redis vector library

2:49 min

Adopting OAuth best practices and removing outdated grants

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

2:37 min

Comparing traditional SQL tables versus NoSQL non-tabular databases

Stanimira Vlaeva · JS Congress

4:29 min

Configuring a DevSecOps pipeline and Oversecured integration demo

Moataz Nabil Moataz Nabil · LIVE

3:42 min

Comparing in-memory and Redis storage for cache scalability

Simone Sanfratello · World Congress 2022

Videos

See all

Related articles

See all