> Markdown version of [/jobs/ext/619480-github-platform-security-automation-engineer](https://www.wearedevelopers.com/jobs/ext/619480-github-platform-security-automation-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # GitHub Platform & Security Automation Engineer - **Company:** URSI Technologies Inc. - **Location:** San Jose, CA, United States - **Contract:** Permanent contract - **Skills:** Application Programming Interfaces (APIs), Audit Trail, Build Automation, Continuous Integration, Github, Identity and Access Management, Python (Programming Language), Key Management, OAuth, Azure Active Directory, Security Information and Event Management, Policy as Code, Scripting, Cloud Platform System, Okta, System Availability, Software Security, Git, Github Enterprise, Enterprise Integration, Graphql, Restful APIs, Devsecops, Security Orchestration, Automation & Response - **Published:** June 18, 2026 - **Apply:** https://www.dice.com/job-detail/24fcb206-0bf1-409f-859d-182b1acd8ff9 ## About the Role · Strong experience with GitHub Enterprise Server and GitHub APIs/GraphQL * Solid background in security automation, IAM, and DevSecOps * Experience with Python/Go scripting, REST APIs, and automation frameworks * Desirable - Familiarity with SIEM/observability platforms and audit log analytics * Prior experience with large-scale repo migrations and platform operations ## Description We are seeking a hands-on engineer to drive GitHub Enterprise (GHE) platform security, automation, and operational excellence across large-scale environments. This role will focus on building enterprise-grade controls, improving developer experience, and ensuring compliance through automation and observability., · Design and implement secure GitHub authentication controls, including MFA enforcement for Git CLI/API usage and token governance (PATs, OAuth, GitHub Apps) * Build automation to audit and enforce repository governance, including detection of public/internal repos, policy violations, and access misconfigurations * Implement and operate end-to-end observability and monitoring for self-hosted GitHub Enterprise (GHE) - availability, performance, security events, and usage trends * Develop User Behavior Analytics (UBA) leveraging GitHub audit logs, API telemetry, and integrations (SIEM/SOAR) to identify anomalies, insider risk, and misuse patterns * Lead secure migration of repositories across GHE instances, maximizing retention of metadata (issues, PRs, comments, actions, permissions) using GitHub APIs and automation frameworks * Define and enforce DevSecOps policies via GitHub Actions, branch protection rules, secret scanning, and code security integrations * Work on patching, upgrades, and lifecycle operations for GHE, ensuring high availability and minimal disruption * Automate compliance reporting and continuous audit readiness (access reviews, repo classification, artifact traceability), · Implement zero-trust access models for GitHub (device posture + identity-aware access) * Integrate supply chain security controls (SBOM, provenance, dependency scanning, signed commits) * Build developer productivity tooling (self-service onboarding, repo templates, policy-as-code) * Enable GitHub Actions hardening (runner security, secrets management, ephemeral runners) * Experience with cross-platform integrations (Okta, Azure AD, SIEM tools, vaults, CI/CD systems) ## Related Videos - [How a Small Team Shrank a Microsoft Monorepo by 94%](https://www.wearedevelopers.com/videos/1236-how-a-small-team-shrank-a-microsoft-monorepo-by-94) - [Keeping applications secure by evolving OAuth 2.0 and OpenID Connect](https://www.wearedevelopers.com/videos/100152-keeping-applications-secure-by-evolving-oauth-2-0-and-openid-connect) - [Real-World Security for Busy Developers](https://www.wearedevelopers.com/videos/1545-real-world-security-for-busy-developers) - [Stop Committing Your Secrets - GIt Hooks To The Rescue!](https://www.wearedevelopers.com/videos/573-stop-committing-your-secrets-git-hooks-to-the-rescue) - [Git for Code Reviews](https://www.wearedevelopers.com/videos/429-git-for-code-reviews) - [Enabling automated 1-click customer deployments with built-in quality and security](https://www.wearedevelopers.com/videos/83-enabling-automated-1-click-customer-deployments-with-built-in-quality-and-security) ## Related Articles - [The Best X (Twitter) Accounts for Developers](https://www.wearedevelopers.com/magazine/294-the-best-x-twitter-accounts-for-developers) - [The Top 10 GitHub Alternatives (2025)](https://www.wearedevelopers.com/magazine/298-the-top-10-github-alternatives-2025) - [4 reasons to start or update your GitHub profile](https://www.wearedevelopers.com/magazine/45-4-reasons-to-start-or-update-your-github-profile) - [Dev Digest 120 - Apple and peers](https://www.wearedevelopers.com/magazine/455-dev-digest-120-apple-and-peers) - [Dev Digest 121 - AI goes offline](https://www.wearedevelopers.com/magazine/456-dev-digest-121-ai-goes-offline) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed)