Easy Apply
Easy Apply
The DevSecOps Engineer will integrate security measures into the software development lifecycle, collaborating with teams to enhance security compliance and practices.
Join KUBRA's dynamic team as a DevSecOps Engineer! We are on the lookout for a passionate professional to spearhead the integration and maintenance of robust security measures across every stage of our software development lifecycle. Your expertise will be crucial in fortifying the confidentiality, integrity, and availability of KUBRA’s cutting-edge public cloud and Kubernetes-based platform.
In this pivotal role, you will collaborate with our talented DevOps team and cross-functional departments to ensure that our architectural strategies, controls, and processes are not only fit for purpose but elevate the enforcement of KUBRA's security policies. Your efforts will also ensure compliance with industry-recognized standards such as SOC2 and PCI-DSS. Let's innovate and secure the future together at KUBRA!
This is a HYBRID position with our office located in Tempe, Arizona.
What you get to do everyday!
- Implement security controls and best practices across CI/CD pipelines
- Ensure vulnerability assessments (including DAST and SAST) are part of every SDLC step.
- Provide security guidance to product engineering teams building software applications in compliance with industry standards (PCI-DSS, NIST, CIS, OWASP) in public cloud environments
- Provide architectural security guidance to DevOps team building cloud infrastructure in compliance with industry standards (PCI-DSS, NIST, CIS, OWASP) in public cloud environments
- Collaborate with development teams to implement secure coding practices
- Implement measures to improve security of software supply chain
- Develop best practices and security standards for KUBRA Cloud Platform
- Work with KUBRA Risk and Compliance team to support risk assessments by proactively providing mitigations to identified risks
- Work with KUBRA Security team to build appropriate threat models for KUBRA Cloud Platform services
- Maintain vulnerability and patch management processes inline with KUBRA security policy
- Work with KUBRA Security Operations team for incident response as necessary
- Identify opportunities and arrange for updated security training for KUBRA DevOps and Cloud Platform Engineering teams when appropriate
What kind of person you should be!
- You practice ‘Security as Code’ to ensure security baked in and automation.
- Highly organized and responsible.
- Maintain awareness of trends and changes in the Cybersecurity industry and threat landscape.
- Excellent written and verbal communications skills and an ability to maintain a high degree of professionalism in all client communications.
- Ability to influence others, build relationships, manage conflicts, and handle negotiations.
- Understanding and following the business strategy, objectives, and adjusting to performance metrics.
- Excellent, time management, problem-solving, and analytical skills.
- Ability to handle pressure and focus on results.
What you can expect from us!
- Award-winning culture that fosters growth, diversity and inclusion for all
- Paid day off for your birthday
- Free LinkedIn Learning subscription
- Bi-annual performance-based bonuses
- Continued education with our education reimbursement program
- Flexible schedules
- Free unlimited access to our refreshment stations (fully stocked with tea, coffee and other beverages)
- Two paid days for volunteer opportunities
- Free on-site Fitness center
- Access to a ‘Tickets at Work’ membership
- A free premium membership for ‘Headspace’; an app geared towards mental health and wellbeing
- 401k Matching
What skills do you need?
- Experience in public cloud is required (AWS, Azure, GCP)
- At least 3-5 years of experience in Cyber Security roles with a preference in the engineering field.
- Experience work with software development or devops teams is preferred.
- Experience in systems or network administration is preferred.
- Experience working with industry standard regulations and compliance frameworks (PCI-DSS, ISO, NIST, SANS, SOX, SOC II, HIPAA)
Equal Employment Opportunity: KUBRA is committed to the principles of equal employment opportunity. We do not discriminate in hiring on the basis of sex, gender identity, sexual orientation, race, color, religion, creed, national origin, physical or mental disability, protected veteran status, or any other characteristic protected by federal, state, or local law. We will provide accommodations during the recruitment process upon request by emailing [email protected]. Information received relating to accommodation will be addressed confidentially.
We thank all applicants for their interest; however, only candidates under consideration will be contacted.
While we value the skills and experiences listed in our job requirements, we also recognize that talent comes in many forms, and welcome applications from candidates who meet most but not all specified requirements. If you possess a strong desire to learn and grow in a dynamic work environment, apply now!
KUBRA is a fast-growing company that delivers customer communications solutions to some of the largest utility, insurance, and government entities across North America. KUBRA offers billing and payments, mapping, mobile apps, proactive communications, and artificial intelligence solutions for customers. With more than 1.5 billion customer interactions annually, KUBRA services reach over 40% of households in the U.S. and Canada. KUBRA is an operating subsidiary of Hearst.
Our office is small enough to allow creative individuals to flourish, yet large enough to provide long-term stability. We place a tremendous amount of responsibility on our team members to be productive, focused and self-motivated. We offer a casual work environment, competitive compensation and a stellar benefits program.
KUBRA does not typically provide immigration-related assistance, including employment-based work visa (e.g. H-1B) sponsorship, work permit applications and extensions, permanent residence (green card) sponsorship, LMIA applications or permanent residency nominations. Candidates must ensure they have legal authorization to work in the U.S/ Canada. All sponsorship determinations are case by case based on business need.
Top Skills
AWS
Azure
Cis
Dast
GCP
Nist
Owasp
Pci-Dss
Sast
Similar Jobs at KUBRA
Artificial Intelligence • eCommerce • Information Technology • Mobile • Payments • App development • Utilities
The Ruby Software Engineer will develop and maintain web and mobile applications, collaborate on product architecture, and mentor other engineers.
Top Skills:
Amazon AwsJavaScriptReactReactnativeRuby
Artificial Intelligence • eCommerce • Information Technology • Mobile • Payments • App development • Utilities
The Principal Software Engineer leads the architecture and development of software products, manages complex technical issues, and collaborates on product requirements and documentation.
Top Skills:
Amazon AwsEc2JavaJava EeMicroservicesRdsRelational DatabasesS3Spring
Artificial Intelligence • eCommerce • Information Technology • Mobile • Payments • App development • Utilities
The Senior Technical Client Support Analyst acts as the main contact for clients, troubleshooting issues, coordinating with internal teams, managing client communications, and performing software configuration and documentation duties.
Top Skills:
AccessAspAsp.NetAWSAzureC#C++CSSDigitaloceanGoogle App EngineHTMLJavaScriptLinuxSQLSQL ServerVisual Basic
What you need to know about the Los Angeles Tech Scene
Los Angeles is a global leader in entertainment, so it’s no surprise that many of the biggest players in streaming, digital media and game development call the city home. But the city boasts plenty of non-entertainment innovation as well, with tech companies spanning verticals like AI, fintech, e-commerce and biotech. With major universities like Caltech, UCLA, USC and the nearby UC Irvine, the city has a steady supply of top-flight tech and engineering talent — not counting the graduates flocking to Los Angeles from across the world to enjoy its beaches, culture and year-round temperate climate.
Key Facts About Los Angeles Tech
- Number of Tech Workers: 375,800; 5.5% of overall workforce (2024 CompTIA survey)
- Major Tech Employers: Snap, Netflix, SpaceX, Disney, Google
- Key Industries: Artificial intelligence, adtech, media, software, game development
- Funding Landscape: $11.6 billion in venture capital funding in 2024 (Pitchbook)
- Notable Investors: Strong Ventures, Fifth Wall, Upfront Ventures, Mucker Capital, Kittyhawk Ventures
- Research Centers and Universities: California Institute of Technology, UCLA, University of Southern California, UC Irvine, Pepperdine, California Institute for Immunology and Immunotherapy, Center for Quantum Science and Engineering