DevSecOps Engineer
About The Role
We are seeking a DevSecOps Engineer to lead the design, implementation, and continuous improvement of our secure infrastructure and deployment pipelines.
This role requires a strategic thinker with hands-on expertise in Linux server environments, multi-tenant hosting security, CI/CD automation, and advanced web application security practices.
You will be responsible for strengthening our hosting ecosystem, reducing security risks, automating secure deployments, and mentoring junior engineers.
Key Responsibilities
Security Architecture & Strategy
- Design and implement secure infrastructure architecture
- Develop and enforce security standards across hosting environments
- Conduct threat modeling and risk assessments
- Lead vulnerability management programs
Infrastructure & Hosting Security
- Harden Linux servers (Ubuntu/CentOS)
- Secure and optimize WHM/cPanel multi-client environments
- Configure and maintain:
- ModSecurity with OWASP rules
- CSF / Fail2Ban
- Server-level intrusion detection
- Manage database hardening and access control policies
- Implement isolation strategies for shared hosting accounts
CI/CD & Secure Automation
- Architect secure CI/CD pipelines
- Integrate automated security testing into build pipelines
- Implement secrets management and secure credential storage
- Automate deployments with rollback strategies
- Lead DevSecOps best practices across teams
Application Security Oversight
- Prevent and mitigate vulnerabilities such as:
- SQL Injection
- XSS
- CSRF
- RCE
- Review secure coding practices across PHP, WordPress, Laravel, and custom applications
- Perform security audits and penetration testing
Monitoring & Incident Response
- Establish security monitoring and alerting systems
- Lead incident response and forensic investigations
- Conduct post-incident analysis and mitigation planning
- Maintain compliance documentation
Leadership & Mentorship
- Guide junior DevOps and security engineers
- Establish internal security training programs
- Collaborate with developers and system administrators
- Report security posture to management
Technical Requirements
- 5+ years in DevOps, Security Engineering, or Infrastructure roles
- Advanced Linux system administration
- Strong experience with WHM/cPanel in multi-client environments
- CI/CD tools (GitHub Actions, GitLab CI, Jenkins)
- Deep understanding of:
- LAMP/LEMP stacks
- MySQL/MariaDB security
- Web application security
- Experience with WAF implementation and tuning
- Knowledge of cloud infrastructure (DigitalOcean preferred)
- Experience with infrastructure automation (Bash, scripting, etc.)
Preferred Qualifications
- Experience in high-availability hosting environments
- Familiarity with GDPR, CCPA, and web compliance frameworks
- Security certifications (OSCP, CEH, Security+, CISSP) are a plus
- Experience with container security (Docker)
- Experience building DevSecOps culture within teams
What We Offer
- Leadership-level technical ownership
- Opportunity to shape company-wide security strategy
- Competitive compensation
- Flexible work environment
- Career growth into Security Architect or Head of Security roles