
location_onUnorganized Borough, United States
We are seeking a hands-on Senior Full Stack + DevSecOps Platform Engineer to build an internal security automation platform focused on SBOM/CBOM inventory, vulnerability scanning, and AI-driven auto-remediation. This is not a traditional full-stack developer role; it requires a unique blend of application development, CI/CD pipeline design, and deep security expertise.
The platform will serve as the central nervous system for identifying and resolving security risks across applications, repositories, containers, and dependencies. You will design workflows that integrate security scanning tools directly into Jenkins and GitLab pipelines, ensuring that vulnerabilities, weak cryptography, and non-compliant libraries are detected early. A key differentiator of this role is the implementation of safe, AI-assisted remediation using tools like Claude, where automated fixes are rigorously validated through build, test, and audit workflows before any code is merged or deployed.
You will spend your time bridging the gap between development and security operations. Your day involves architecting centralized inventory systems for software bills of materials (SBOM) and cryptographic bills of materials (CBOM), scanning for CVEs and weak crypto configurations, and building dashboards that provide real-time visibility into the organization's security posture. You will collaborate closely with application, security, and DevOps teams to troubleshoot complex issues across AWS environments and production systems, ensuring that every AI-generated fix meets strict safety and compliance standards.
Work model: Hybrid
Unorganized Borough, United States
Experience building internal developer platforms or security automation platforms. Experience with vulnerability management and remediation workflows. Experience with policy engines such as OPA or custom rule engines. Knowledge of post-quantum cryptography readiness and crypto-agility. Experience with certificate lifecycle management, secrets management, and cloud security controls. Frontend experience with Angular or React for dashboards and reporting.
Recrutus helps candidates discover roles that match their skills and helps teams reach qualified applicants faster. Browse by metro, discipline, or work style — from internships to senior leadership.