Querentia logo
Querentia Verified
Biotechnology, Pharmaceuticals

Security Engineer

CanadaOnsiteContractPosted 2 months ago

Is this role right for you?

Upload your resume and get a skill-by-skill breakdown — see exactly where you match, where you're close, and what to highlight. Not a mystery percentage.

Get a tailored resume highlighting what this role needs.

Role summary

We are seeking an experienced Security Engineer with a focus on DevSecOps and CI/CD security to support secure software development in a cloud environment. The role requires hands-on experience with CI/CD pipelines, automated security controls, and formal Security Assessment and Authorization (SA&A) processes, particularly within a federal/government context. Key responsibilities include designing and implementing secure CI/CD pipelines, embedding security throughout the SDLC, and leading SA&A activities for cloud applications. A Bachelor's degree, minimum 5 years of CI/CD experience, 2 years of automated security scanning in CI/CD, and proven SA&A experience for cloud applications are mandatory. An active Secret or Top-Secret Clearance is also required.

Role Overview

We are seeking an experienced Security Engineer (DevSecOps / CI/CD Security Consultant) to support secure software development initiatives within a cloud-based environment. The ideal candidate will have strong hands-on experience in CI/CD pipelines, automated security controls, and formal Security Assessment and Authorization (SA&A) processes within a federal/government environment.

Key Responsibilities

- Design, implement, and maintain secure
Continuous Integration/Continuous Deployment (CI/CD)
pipelines within a software development environment.
- Implement automated security scanning, security controls, and compliance checks within CI/CD workflows.
- Apply modern security principles and best practices to custom-built software applications.
- Lead and support
Security Assessment and Authorization (SA&A)
activities for cloud-based applications.
- Ensure security controls are embedded throughout the Software Development Life Cycle (SDLC).
- Collaborate with development, security, and infrastructure teams to enhance DevSecOps maturity and compliance posture.

Mandatory Qualifications & Experience

- Bachelor’s degree or College Diploma in a relevant field.
- Minimum
5 years of experience
in a software development environment with hands-on CI/CD pipeline implementation.
- Proven experience completing
Security Assessment and Authorization (SA&A)
within a federal/government environment (mandatory).
- Experience navigating the SA&A process for at least
two (2) cloud-based applications
developed within the past five (5) years.
- At least
2 years of experience within the past 5 years
implementing automated security scanning and controls in CI/CD pipelines.
- Demonstrated experience applying modern security principles to custom software applications released within the past three (3) years.
- Active
Secret or Top-Secret Clearance (mandatory)
.

Ready to apply?
You'll be redirected to Querentia's application page.

Similar roles