DevSecops Engineer
Offre en anglaisDesign and deploy automated workflows for cryptographic services, including certificate lifecycle and key management. Develop APIs and integration frameworks to embed secure cryptographic operations into CI/CD pipelines and enterprise applications.
- Hybride
- Markham, ON
- Publié 6 août 2026
- Postuler avant le 5 sept. 2026
- 1 poste
Résumé du poste
Job Title: Security Engineer (DevSecOps) Duration: 12 months (Possibility of extension/conversion) Location: Markham, ON (Hybrid – 2 days a week) Scope of Project: automation project (new features, maintenance, bug fixes) Team Size/Culture: 7 people Required Degree/Level of Education: Post secondary is an asset Certifications Required: CISSP is an asset Required Years of Overall Experience: 8+ years of experience The Crypto Solution Validation Team is responsible for the cryptographic solution certification, design, develop and deploy enterprise cryptographic automation solution. The team plays a critical role in safeguarding organizational data and systems by delivering secure, scalable, and automated cryptographic services. This includes automating key management, certificate lifecycle management, encryption processes, and other cryptographic operations to improve efficiency, reliability, and the organization's overall security posture. The team works closely with enterprise DevOps team, Crypto Requirements Team, Crypto Operations Team, and Security Architecture Team to ensure cryptographic solutions are certified, operationally sustainable, and aligned with enterprise security standards and strategic objectives. Key Responsibilities Automation Design and Development Design, develop, test, and deploy automated solutions and workflows for cryptographic services and operations, including: Certificate lifecycle management (issuance, renewal, revocation, and compliance monitoring). Symmetric and asymmetric key generation, distribution, rotation, escrow, and retirement. Integration with enterprise-approved key management and certificate management platforms. Cryptographic Service Integration Develop APIs, automation frameworks, and reusable tools that enable seamless integration of cryptographic services (encryption, decryption, digital signing, verification, and key management) into enterprise applications, infrastructure platforms, and CI/CD pipelines. Cryptographic Solution Certification Evaluate, validate, and certify cryptographic products, platforms, and integrations to ensure they meet enterprise security, risk, compliance, and operational requirements. Develop certification standards, test plans, and implementation guidance to support enterprise adoption of approved cryptographic solutions. Tooling and Software Development Develop and maintain high-quality, secure, and maintainable code using languages such as Python, PowerShell, and Bash. Leverage modern automation and orchestration platforms to accelerate cryptographic service delivery and reduce operational risk. Documentation and Standards Produce and maintain comprehensive technical documentation, including automation workflows, operational procedures, certification artifacts, and configuration standards. Contribute to enterprise cryptographic standards, best practices, and governance requirements. Must-Have Skills: 8+ years of security related technology experience 3+ years of experience in Security Engineering, DevSecOps, SRE, Infrastructure Engineering, or Software Engineering with a strong focus on automation and security. 5+ years of scripting/programming languages, including Python, PowerShell, and Bash. 5+ years of experience with automation and Infrastructure-as-Code tools such as Ansible, Terraform, Jenkins, GitHub Actions, or equivalent platforms. Soft Skills: Strong communication skills (written and verbal) Strong time management, priority management skills Attention to detail and someone who is a self-starter and adaptable Nice-To-Have CISSP certification Experience designing and implementing automation solutions for certificate lifecycle management and cryptographic operations. Strong understanding of cryptographic fundamentals, including: Symmetric and asymmetric encryption Key management and lifecycle management Public Key Infrastructure (PKI) TLS/SSL Digital signatures and hashing algorithms Experience supporting Linux and/or Windows server environments
Ce que vous ferez
Design and deploy automated workflows for cryptographic services, including certificate lifecycle and key management. Develop APIs and integration frameworks to embed secure cryptographic operations into CI/CD pipelines and enterprise applications.
Exigences
Requires over 8 years of security technology experience, with specific expertise in Python, PowerShell, Bash, and Infrastructure-as-Code tools. A strong background in cryptographic fundamentals and automation engineering is essential.
Compétences indiquées
- TerraformSouhaitée
- PythonSouhaitée
Autres compétences pertinentes
Relevées dans la description du poste. Confirmez les exigences importantes ci-dessus.
- Security Engineering
- DevSecOps
- Python
- PowerShell
- Bash
- Ansible
- Terraform
- Jenkins
- GitHub Actions
- Certificate Lifecycle Management
- Public Key Infrastructure (PKI)
- Cryptographic Automation
- Infrastructure-as-Code
- Symmetric and Asymmetric Encryption
- TLS/SSL
- API Development
Domaines d’emploi
- Security & Safety
- Technology
- Software
- Engineering
Renseignements supplémentaires
- Formation minimale
- Diplôme professionnel
- Expérience minimale
- 10+ ans
- Postuler avant le
- 5 sept. 2026
- Langue de l’offre
- anglais
- Heures de travail
- 40 heures par semaine
- Présence au bureau
- 2 jours par semaine
- Niveau d’expérience
- Mid-Senior level
- Mode de candidature
- La candidature directe est offerte