Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
DevSecOps image - Rise Careers
Job details

DevSecOps

The world of digital assets is accelerating in speed, magnitude, and complexity, opening the door to new ways for leveraging the blockchain. Fireblocks’ platform and network provide the simplest and most secure way for companies to work with digital assets and it trusted by some of the largest financial institutions, banks, globally-recognized brands, and Web3 companies in the world, including BNY Mellon, BNP Paribas, ANZ Bank, Revolut, and thousands more. 

We're looking for a highly skilled and motivated DevSecOps Engineer to join our dynamic team. As a DevSecOps Engineer, you will be responsible for ensuring the secure and efficient operation of our software development and deployment processes. You will collaborate with cross-functional teams to integrate security practices into the development lifecycle and foster a culture of security awareness. The ideal candidate will have a strong software development background, SDLC security principles, and threat modeling for application-based features.

Responsibilities

  • Design, develop, and implement secure software development and deployment pipelines, incorporating security best practices, automation, and continuous integration/continuous deployment (CI/CD) methodologies.
  • Collaborate with development, operations, and security teams to identify and prioritize security vulnerabilities/issues and requirements and integrate security controls into the development lifecycle.
  • Perform vulnerability assessments and security code reviews to identify and address security vulnerabilities and risks.
  • Implement and manage security tools and technologies such as SCA, SAST, IaC, etc. 
  • Develop and enforce security policies, standards, and guidelines to ensure compliance with regulatory requirements and industry best practices.
  • Stay updated with the latest security trends, vulnerabilities, and threat intelligence to proactively identify emerging risks and recommend security enhancements.
  • Collaborate with cross-functional teams to conduct security awareness training and promote a culture of security within the organization.
  • Evaluate blockchain protocol repositories for in-depth security and resiliency analysis reporting. 
  • Use market data analysis to identify risk vectors for various crypto assets. 
  • Understand complex protocol governance structures to prepare concise reporting for executive consumption and decision-making. 
  • Analyze crypto asset data across various sectors to provide recommendations for the organization based on variable risk tolerances and use cases. 
  • Take part in various tasks related to custody operations. 

Minimum Qualifications

  • Bachelor's degree or equivalent experience
  • Proven experience in software development, DevSecOps, or a related role
  • Strong knowledge of software development methodologies, tools, and frameworks
  • In-depth understanding of security principles, best practices, and industry standards (e.g., OWASP, NIST, ISO 27001)
  • Experience with DevOps and CI/CD practices, including GitLab/GitHub and ArgoCD tools
  • Familiarity with cloud platforms (e.g., AWS, Azure, GCP, and associated security controls
  • Proficiency in scripting and programming languages (e.g., Python, NodeJS, C)
  • Strong problem-solving and analytical skills, with the ability to identify and mitigate security risks
  • Excellent communication and collaboration skills, with the ability to work effectively in cross-functional teams
  • Relevant certifications (e.g., Certified Ethical Hacker (CEH), Certified Information Systems Security Professional (CISSP), Certified Cloud Security Professional (CCSP)) are a plus
  • Understanding technical documents and blockchain protocols
  • Strong analytical skills

Preferred Qualifications 

  • Bachelor's degree in Computer Science, Information Security, or a related field
  • Crypto enthusiasm

Fireblocks' mission is to enable every business to easily and securely access digital assets and cryptocurrencies. In order to do that, we strongly believe our workforce should be as diverse as our clients, and this is why we embrace diversity and inclusion in all its forms.

For employees hired to work from our NYC HQ, Fireblocks is required by law to include a reasonable estimate of the compensation range for this role. This range is specific to New York City, and takes into consideration a wide range of factors that are reviewed when making a hiring decision, such as years of experience, skills, and other business needs.

It is not typical for a candidate to be hired at or near the top of the pay range and each compensation decision is dependent on each individual case. A reasonable base salary range estimate for this position is $168,000 to $221,000. The base salary is one component of the total compensation package, which for some roles may include a target bonus, a very competitive equity grant, and very generous benefits. While we believe competitive compensation is a critical aspect of you deciding to join us, we do hope you also spend time considering why our mission and culture are right for you. We are creating something transformational here, and we hope you are as excited about the future as we are.

Fireblocks' mission is to enable every business to easily and securely access digital assets and cryptocurrencies. In order to do that, we strongly believe our workforce should be as diverse as our clients, and this is why we embrace diversity and inclusion in all its forms. 

Please see our candidate privacy policy here.
Fireblocks Glassdoor Company Review
4.2 Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon Glassdoor star icon
Fireblocks DE&I Review
3.9 Glassdoor star iconGlassdoor star iconGlassdoor star icon Glassdoor star icon Glassdoor star icon
CEO of Fireblocks
Fireblocks CEO photo
Michael Shaulov
Approve of CEO

Average salary estimate

$194500 / YEARLY (est.)
min
max
$168000K
$221000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About DevSecOps, Fireblocks

Join us at Fireblocks as a DevSecOps Engineer in the vibrant city of New York! We're at the forefront of the blockchain revolution, providing innovative solutions for some of the largest financial institutions and brands around the globe. In this dynamic role, you'll play a crucial part in ensuring the secure and efficient operation of our software development and deployment processes. You'll collaborate with diverse cross-functional teams to weave security practices into everything we do. Your expertise in design and development will help us create secure software development and deployment pipelines, all while fostering a culture of security awareness across the organization. With your strong background in software development and understanding of SDLC security principles, you'll be in the perfect position to identify vulnerabilities, integrate security controls, and manage cutting-edge security technologies. We're looking for someone passionate about keeping our digital assets safe and excited to stay ahead of emerging threats. If you're eager to contribute to a mission-focused team and transform the way businesses access digital assets and cryptocurrencies, we want to hear from you! Plus, you'll be part of a diverse workforce, celebrating every individual’s unique skills and viewpoints. Fireblocks offers a competitive salary range of $168,000 to $221,000, along with a complete benefits package. Get ready to be part of an exciting journey!

Frequently Asked Questions (FAQs) for DevSecOps Role at Fireblocks
What are the primary responsibilities of a DevSecOps Engineer at Fireblocks?

As a DevSecOps Engineer at Fireblocks, your main responsibilities will include designing and implementing secure software development and deployment pipelines, conducting vulnerability assessments, and collaborating with various teams to integrate security into the development lifecycle. You'll also manage security tools and develop policies to ensure compliance with industry standards.

Join Rise to see the full answer
What qualifications are needed to become a DevSecOps Engineer at Fireblocks?

To qualify for the DevSecOps Engineer position at Fireblocks, a Bachelor's degree or equivalent experience is required. You should have proven experience in software development or a related role, a strong understanding of security principles, and familiarity with DevOps practices. Relevant certifications such as CEH or CISSP will be a plus.

Join Rise to see the full answer
How does Fireblocks prioritize security within the development lifecycle for its DevSecOps Engineers?

Fireblocks prioritizes security in the development lifecycle by having DevSecOps Engineers work closely with development and operations teams to identify vulnerabilities early. By integrating security controls from the start and staying updated on the latest security trends, the team ensures that security is embedded in every facet of development.

Join Rise to see the full answer
What tools and technologies do DevSecOps Engineers use at Fireblocks?

DevSecOps Engineers at Fireblocks use an array of modern tools and technologies, such as SAST, SCA, and infrastructure as code tools. Familiarity with CI/CD methodologies and platforms like GitLab/GitHub is essential. Experience with cloud services like AWS or Azure is also beneficial.

Join Rise to see the full answer
What makes the culture at Fireblocks attractive to prospective DevSecOps Engineers?

Fireblocks fosters an inclusive and diverse work environment where every employee's opinion matters. The company is committed to innovation and professional development, encouraging collaboration and a culture of security awareness. The opportunity to work on transformational projects in the digital assets space is a significant draw for those passionate about technology.

Join Rise to see the full answer
Common Interview Questions for DevSecOps
Can you explain your role in implementing CI/CD for secure software development?

In answering this question, outline your experience with CI/CD pipelines and how you integrate security practices throughout the process. Discuss specific tools you’ve used and the security checks you implement at each stage to ensure vulnerability is minimized.

Join Rise to see the full answer
How do you approach vulnerability assessments in your projects?

When discussing your approach to vulnerability assessments, highlight your methodology—talk about the tools you use, such as SAST and SCA, and how you prioritize findings. Mention any relevant experiences where your assessments led to significant improvements.

Join Rise to see the full answer
What security frameworks are you familiar with in your DevSecOps practices?

Explain the security frameworks you’ve worked with, such as OWASP or NIST. Discuss how these frameworks guide your practices and decision-making processes in developing secure software.

Join Rise to see the full answer
Describe a time you had to collaborate with cross-functional teams to solve a security issue.

In your response, provide a specific example of a project where collaboration was key. Explain your role, the challenges faced, and the outcomes achieved through teamwork, emphasizing effective communication and negotiation skills.

Join Rise to see the full answer
What programming languages are you proficient in, and how do you apply them to security practices?

List the programming languages you are comfortable with and provide examples of how you have used them in security contexts, like writing scripts for automation or developing secure application features.

Join Rise to see the full answer
How do you stay updated on the latest security threats and trends?

Discuss the resources you regularly consult—security blogs, podcasts, webinars, and professional networks. Speak about how you apply this knowledge to your work in a proactive manner.

Join Rise to see the full answer
What has been your experience with security code reviews?

Detail your experience with security code reviews, including the process you follow and tools you use. Provide insights into how you communicate findings and recommendations to developers for remediation.

Join Rise to see the full answer
How do you ensure compliance with industry standards and regulations?

Share your experiences with adhering to standards such as ISO 27001 or others relevant to your previous roles. Explain the strategies you’ve employed to ensure that your team meets compliance requirements.

Join Rise to see the full answer
Can you discuss a time when you significantly improved a security process?

Provide an example of a specific security process you enhanced, detailing the actions you took, the challenges you overcame, and the positive impact of your improvements on the organization.

Join Rise to see the full answer
What do you think is the most critical aspect of a DevSecOps culture?

In your response, articulate the importance of fostering a security-first mindset in all teams and encouraging ongoing training. Emphasize the balance between security and speed in development, and how a collaborative environment supports this.

Join Rise to see the full answer
Similar Jobs
Photo of the Rise User
Posted 2 days ago
Dental Insurance
Disability Insurance
Flexible Spending Account (FSA)
Health Savings Account (HSA)
Vision Insurance
Paid Holidays
Photo of the Rise User
Intelerad Remote Adelaide SA, Australia
Posted 8 days ago
Posted 2 days ago
Fortune Brands Remote 25300 Al Moen Drive, North Olmsted, Ohio
Posted 15 hours ago
Photo of the Rise User
Posted 8 days ago
Photo of the Rise User
Upwork Remote Manila, Metro Manila, Philippines
Posted 7 days ago
Posted 23 hours ago

Enable every business to easily and securely support digital assets and cryptocurrencies.

36 jobs
MATCH
Calculating your matching score...
BADGES
Badge ChangemakerBadge Flexible CultureBadge Future MakerBadge Work&Life Balance
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, on-site
DATE POSTED
January 8, 2025

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!