logo_jobbe.png

Website Nemo IT Solutions

AWS DevSecOps Engineer Position at NEMO IT Solutions, Inc.

Company: NEMO IT Solutions, Inc.
Position: AWS DevSecOps Engineer
Location: Dallas, Texas (Hybrid)
Job Type: Long Term Contract
Experience: 4-8 Years
Contact: [email protected]
Website: www.nemoitsolutions.com


Introduction: The Role in Context

NEMO IT Solutions, Inc. is seeking an experienced AWS DevSecOps Engineer to join a long-term contract engagement based in Dallas, Texas. This position is situated at the critical intersection of development, operations, and security, with a central mission to “Secure the Cloud.”

The modern cloud environment demands a proactive security posture. This role is designed for the engineer who does not just implement security controls but architects them directly into the CI/CD pipeline and infrastructure-as-code from the outset. For professionals who view cloud security not as a checkpoint but as a continuous, integrated practice, this position offers a significant opportunity to apply and expand their expertise within a dedicated team.

This article provides a detailed breakdown of the AWS DevSecOps Engineer role, outlining the core responsibilities, required technical proficiencies, and the specific benefits of joining NEMO IT Solutions. Our objective is to furnish you with all necessary information to thoroughly evaluate this career opportunity.

Deconstructing the Role: Key Responsibilities and Daily Impact

The AWS DevSecOps Engineer will be a linchpin in ensuring the security, reliability, and efficiency of cloud-based systems. The position moves beyond theory into hands-on implementation and management. Key responsibilities include:

  • Architecting and Managing Secure AWS Environments: Designing, implementing, and maintaining highly available, scalable, and secure cloud infrastructure on Amazon Web Services. A deep understanding of AWS Security & IAM is paramount for defining least-privilege access policies and securing service-to-service communication.

  • Developing and Securing CI/CD Pipelines: Building, optimizing, and maintaining robust CI/CD pipelines using tools like Jenkins and GitHub Actions. This involves integrating automated security testing, including Static Application Security Testing (SAST) and Dynamic Application Security Testing (DAST), directly into the development workflow.

  • Infrastructure as Code (IaC) Development: Leveraging Terraform/CloudFormation to define, provision, and manage cloud resources in a repeatable, version-controlled, and automated manner. This ensures that every deployment is consistent and adheres to security baselines.

  • Proactive Vulnerability Management: Conducting continuous vulnerability scanning & remediation across container images, dependencies, and deployed infrastructure. The role requires not just identifying vulnerabilities but also prioritizing and orchestrating their patching with development teams.

  • Container Orchestration and Security: Managing and securing containerized applications using Kubernetes & Docker. This includes configuring secure pod policies, managing network policies, and ensuring the security of the container registry and runtime environment.

  • Collaboration and Advocacy: Working closely with development and operations teams to foster a culture of “shift-left” security, where security is a shared responsibility integrated early and throughout the software development lifecycle.

Required Technical Proficiencies: The Core Skillset

Candidates for this role must demonstrate a proven track record and deep, hands-on experience with the following technologies and concepts:

  • AWS Security & IAM: Expert-level knowledge is non-negotiable. This includes IAM roles and policies, Security Groups, VPC design, AWS Config, GuardDuty, CloudTrail, and KMS.

  • CI/CD pipelines (Jenkins, GitHub Actions): Proven experience in architecting and maintaining pipelines that automate build, test, security checks, and deployment processes.

  • Terraform/CloudFormation: Strong proficiency in writing, testing, and modularizing Infrastructure as Code to manage complex cloud environments.

  • Vulnerability scanning & remediation: Hands-on experience with tools like Trivy, Aqua Security, Twistlock, Snyk, or Qualys to identify and address security flaws in code and containers.

  • Kubernetes & Docker: Solid practical knowledge of containerization and orchestration, including cluster management, service mesh (e.g., Istio), and implementing security best practices for containers.

Ideal Candidate Profile: Who Should Apply?

The ideal candidate is a proactive problem-solver who thrives in a collaborative, hybrid environment. Beyond the technical checklist, we are looking for individuals who embody the following attributes:

  • A Security-First Mindset: You are inherently driven to build systems that are secure by design, not by accident. You anticipate threats and engineer defenses against them.

  • Automation as a Core Principle: You are passionate about automating repetitive tasks, from security checks to infrastructure provisioning, to increase efficiency and reduce human error.

  • Collaborative Spirit: You understand that DevSecOps is a cultural shift and excel at communicating with both development and operations teams to bridge gaps and implement effective solutions.

  • A Continuous Learner: The cloud and security landscapes are constantly evolving. The successful candidate is committed to staying current with emerging threats, technologies, and best practices.

  • Practical Experience: With a required 4-8 years of experience, you have a substantial background in DevOps or systems engineering, with a recent, intense focus on integrating security practices. You can point to specific projects and outcomes you have driven.

Employment Details: Contract, Location, and Perks

This position offers a specific set of terms and benefits tailored for experienced contractors.

  • Job Type: Long Term Contract

  • Location: Dallas, Texas

  • Work Mode: Hybrid

  • Experience Level: 4-8 Years

Key Perks and Considerations:

  • H1B Visa Transfer: NEMO IT Solutions, Inc. is prepared to support H1B visa transfers for qualified candidates. This is a significant benefit for professionals currently on an H1B visa seeking a new opportunity with a company that specializes in cloud security solutions.

  • Hybrid Work Model: The role offers a hybrid work environment, providing a balance between in-office collaboration for key meetings and team-building, and the flexibility of remote work.

  • Long-Term Engagement: The “Long Term Contract” nature of the role provides a substantial period of stable, project-focused work, offering continuity and the opportunity to see major initiatives through to completion.

  • Specialized Project Focus: Joining NEMO IT Solutions allows you to concentrate on cutting-edge DevSecOps challenges within the AWS ecosystem, deepening your expertise in a high-demand niche.

The Application Process: How to Submit Your Candidacy

The application process for this role is direct and streamlined.

To apply, qualified candidates should:

  1. Prepare an up-to-date resume that clearly details relevant experience related to the Core Skills listed above.

  2. Craft a concise email introduction outlining your interest in the “AWS DevSecOps Engineer” position.

  3. Share your resume via email to: [email protected].

What to Highlight in Your Application:

  • Specific projects where you implemented security controls in AWS.

  • Your hands-on experience with the tools listed, particularly Terraform, Kubernetes, and your chosen CI/CD platform.

  • Metrics or outcomes that demonstrate the impact of your work (e.g., “reduced critical vulnerabilities by X%,” “automated compliance checks saving Y hours per week”).

  • Clear mention of your visa status if applicable.

To apply for this job email your details to dm@nemoitsolutions.com