> Markdown version of [/jobs/ext/2869765-associate-devsecops-engineer-platform-and-tooling](https://www.wearedevelopers.com/jobs/ext/2869765-associate-devsecops-engineer-platform-and-tooling). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Associate DevSecOps Engineer, Platform and Tooling - **Company:** AbbVie Inc. - **Location:** Rankin, IL, United States - **Experience:** Experienced - **Salary:** $84,500.0 - $162,000.0 - **Contract:** Permanent contract - **Skills:** Microsoft Azure, Cyber Security, System Configuration, Continuous Integration, DevOps, Github, Information Security Management, Python (Programming Language), Reliability Engineering, Software Engineering, Systems Integration, Scripting, Software Security, Enterprise Integration, Devsecops, Static Application Security Testing, Vulnerability Analysis, Artifactory, Programming Languages, Dynamic Application Security Testing - **Published:** September 12, 2026 - **Apply:** https://www.careerjet.com/jobad/us305d38c3df5371cb410ad7401b941a08 ## About the Role * Bachelor's Degree and 5 years of experience OR Master's Degree and 4 years of experience. * 2+ years' experience of hands-on technical experience in DevSecOps / DevOps / Site Reliability Engineering (SRE). * Experience integrating application security tooling such as SAST/DAST/IAST/SCA into CI/CD pipelines. * Experience configuring, supporting, or administering CI/CD pipelines (such as GitHub Actions and Azure DevOps) and helping integrate security testing solutions. * Experience automating workflows and integrating platforms via programming languages such as Python. Preferred: * Experience with commercial or in-house Application Security Posture Management (ASPM) tooling to facilitate risk visibility, finding management, and developer workflow integration. * Experience implementing pre-deployment container and/or artifact security tooling (e.g., image scanning, dependency validation). * Experience implementing container and artifact security solutions (e.g., Snyk, JFrog Artifactory), including image scanning, vulnerability assessment, and dependency validation in CI/CD pipelines. * Experience administering Snyk in large enterprise environments. ## Description Join our Information Security team as an Associate DevSecOps Engineer and be part of the core team building a global enterprise-grade Application Security program from the ground up. You will play a vital role in implementing security testing tools, integrating them into our CI/CD ecosystems, and delivering actionable findings to developers-enabling secure software delivery at scale. Together, we will make a remarkable impact on people's lives by protecting the systems that discover and deliver life-changing medicines to patients who need them. Responsibilities: * Supporting or administering Application Security Testing (AST) tools (SAST, DAST, IAST, SCA, etc.) to identify vulnerabilities and configuration issues during the software development lifecycle. * Supporting or administering tools such as Application Security Posture Management (ASPM) to centralize and deduplicate findings from multiple solutions and integrate reporting into software development workflows. * Integrating security tooling with CI/CD pipelines. * Writing custom scripts and code to automate workflows and integrate technologies. ## Related Videos - [Enabling automated 1-click customer deployments with built-in quality and security](https://www.wearedevelopers.com/videos/83-enabling-automated-1-click-customer-deployments-with-built-in-quality-and-security) - [DevSecOps: Injecting Security into Mobile CI/CD Pipelines](https://www.wearedevelopers.com/videos/273-devsecops-injecting-security-into-mobile-ci-cd-pipelines) - [From DevOps to Scaled DevOps: How We’re Rebuilding Continuous Delivery as a Platform](https://www.wearedevelopers.com/videos/100018-from-devops-to-scaled-devops-how-we-re-rebuilding-continuous-delivery-as-a-platform) - [Innovating Developer Tools with AI: Insights from GitHub Next](https://www.wearedevelopers.com/videos/1268-innovating-developer-tools-with-ai-insights-from-github-next) - [DevSecOps: Security in DevOps](https://www.wearedevelopers.com/videos/36-devsecops-security-in-devops) - [DevSecOps culture](https://www.wearedevelopers.com/videos/783-devsecops-culture) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [DevOps Engineer Salary [2023]](https://www.wearedevelopers.com/magazine/203-devops-engineer-salary-2023) - [Highest Paying Tech Companies for Developers](https://www.wearedevelopers.com/magazine/220-highest-paying-tech-companies-for-developers) - [Now is the time for industrialized software development](https://www.wearedevelopers.com/magazine/601-now-is-the-time-for-industrialized-software-development) - [Why Upskilling And Reskilling is Important For Developers](https://www.wearedevelopers.com/magazine/428-why-upskilling-and-reskilling-is-important-for-developers)