> Markdown version of [/jobs/ext/575797-devops-architect](https://www.wearedevelopers.com/jobs/ext/575797-devops-architect). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # DevOps Architect - **Company:** Robotics Technologies LLC - **Location:** Irvine, CA, United States - **Contract:** Temporary contract - **Skills:** Kubernetes Security, Amazon Web Services, Microsoft Azure, Bash Shell, Cloud Computing Security, Continuous Integration, DevOps, Github, Python (Programming Language), Open Web Application Security, Systems Development Life Cycle, Ansible, Secure Coding, Web Application Security, SonarQube, Software Vulnerability Management, Scripting, Sonatype, Software Security, Veracode, Gitlab-ci, Kubernetes, Build Tools, Checkmarx, CIS Benchmarks, Terraform, Devsecops, Docker, Jenkins, Static Application Security Testing, Microservices, Dynamic Application Security Testing - **Published:** June 21, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=5f243d464c0d3801 ## About the Role Do you have experience in Web Application Security Testing?, * Strong expertise in CI/CD tools (Jenkins, GitHub Actions, GitLab CI, Azure DevOps). * Hands-on experience with SAST, DAST, SCA tools (e.g., SonarQube, Checkmarx, Veracode, Snyk). * Knowledge of container security (Docker, Kubernetes) and cloud-native security. . Familiarity with SBOM standards (CycloneDX, SPDX) and supply chain risk mitigation. . Proficiency in secure coding principles and threat modeling. * Experience with automation scripting (Python, Bash) and Infrastructure as Code (Terraform, Ansible * Strong understanding of compliance frameworks and regulatory requirements. Preferred Qualifications .Certifications: CSSLP, CKA, AWS/Azure Security Specialty. Experience in microservices architecture and API security. Equal Opportunity Employer ## Description Design and implement DevSecOps frameworks integrating security into CI/CD pipelines. Define and enforce application security controls including: SAST (Static Application Security Testing) DAST (Dynamic Application Security Testing) SCA (Software Composition Analysis) Establish secure coding practices and developer enablement programs. Architect solutions for software supply chain security, including: Dependency scanning SBOM (Software Bill of Materials) management Vulnerability remediation workflows Integrate security tools with build systems, container registries, and orchestration platforms. * Collaborate with development, operations, and security teams to embed security early in SDLC. * Define risk-based prioritization and remediation strategies for vulnerabilities. * Drive automation of security checks to reduce manual overhead and improve release velocity. . Ensure compliance with industry standards (e.g., OWASP, NIST, CIS benchmarks). * Provide technical leadership and guidance onemerging DevSecOps trends and best practices. ## Related Videos - [Enabling automated 1-click customer deployments with built-in quality and security](https://www.wearedevelopers.com/videos/83-enabling-automated-1-click-customer-deployments-with-built-in-quality-and-security) - [Docker Compose: Rediscovered](https://www.wearedevelopers.com/videos/1978-docker-compose-rediscovered) - [From DevOps to Scaled DevOps: How We’re Rebuilding Continuous Delivery as a Platform](https://www.wearedevelopers.com/videos/100018-from-devops-to-scaled-devops-how-we-re-rebuilding-continuous-delivery-as-a-platform) - [Innovating Developer Tools with AI: Insights from GitHub Next](https://www.wearedevelopers.com/videos/1268-innovating-developer-tools-with-ai-insights-from-github-next) - [Securing Your Web Application Pipeline From Intruders](https://www.wearedevelopers.com/videos/53-securing-your-web-application-pipeline-from-intruders) - [Docker build without Docker](https://www.wearedevelopers.com/videos/100114-docker-build-without-docker) ## Related Articles - [Dev Digest 121 - AI goes offline](https://www.wearedevelopers.com/magazine/456-dev-digest-121-ai-goes-offline) - [Now is the time for industrialized software development](https://www.wearedevelopers.com/magazine/601-now-is-the-time-for-industrialized-software-development) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Dev Digest 120 - Apple and peers](https://www.wearedevelopers.com/magazine/455-dev-digest-120-apple-and-peers) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Dev Digest 138 - Are you secure about this?](https://www.wearedevelopers.com/magazine/486-dev-digest-138-are-you-secure-about-this)