Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
DevSecOps Engineer image - Rise Careers
Job details

DevSecOps Engineer

Join KUBRA's dynamic team as a DevSecOps Engineer! We are on the lookout for a passionate professional to spearhead the integration and maintenance of robust security measures across every stage of our software development lifecycle. Your expertise will be crucial in fortifying the confidentiality, integrity, and availability of KUBRA’s cutting-edge public cloud and Kubernetes-based platform.


In this pivotal role, you will collaborate with our talented DevOps team and cross-functional departments to ensure that our architectural strategies, controls, and processes are not only fit for purpose but elevate the enforcement of KUBRA's security policies. Your efforts will also ensure compliance with industry-recognized standards such as SOC2 and PCI-DSS. Let's innovate and secure the future together at KUBRA!


This is a HYBRID position with our office located in Tempe, Arizona.


What you get to do everyday!
  • Implement security controls and best practices across CI/CD pipelines
  • Ensure vulnerability assessments (including DAST and SAST) are part of every SDLC step.
  • Provide security guidance to product engineering teams building software applications in compliance with industry standards (PCI-DSS, NIST, CIS, OWASP) in public cloud environments
  • Provide architectural security guidance to DevOps team building cloud infrastructure in compliance with industry standards (PCI-DSS, NIST, CIS, OWASP) in public cloud environments
  • Collaborate with development teams to implement secure coding practices
  • Implement measures to improve security of software supply chain
  • Develop best practices and security standards for KUBRA Cloud Platform
  • Work with KUBRA Risk and Compliance team to support risk assessments by proactively providing mitigations to identified risks
  • Work with KUBRA Security team to build appropriate threat models for KUBRA Cloud Platform services
  • Maintain vulnerability and patch management processes inline with KUBRA security policy
  • Work with KUBRA Security Operations team for incident response as necessary
  • Identify opportunities and arrange for updated security training for KUBRA DevOps and Cloud Platform Engineering teams when appropriate


What kind of person you should be!
  • You practice ‘Security as Code’ to ensure security baked in and automation.
  • Highly organized and responsible.
  • Maintain awareness of trends and changes in the Cybersecurity industry and threat landscape.
  • Excellent written and verbal communications skills and an ability to maintain a high degree of professionalism in all client communications.
  • Ability to influence others, build relationships, manage conflicts, and handle negotiations.
  • Understanding and following the business strategy, objectives, and adjusting to performance metrics.
  • Excellent, time management, problem-solving, and analytical skills.
  • Ability to handle pressure and focus on results.


What you can expect from us!
  • Award-winning culture that fosters growth, diversity and inclusion for all
  • Paid day off for your birthday
  • Free LinkedIn Learning subscription
  • Bi-annual performance-based bonuses
  • Continued education with our education reimbursement program
  • Flexible schedules
  • Free unlimited access to our refreshment stations (fully stocked with tea, coffee and other beverages)
  • Two paid days for volunteer opportunities
  • Free on-site Fitness center
  • Access to a ‘Tickets at Work’ membership
  • A free premium membership for ‘Headspace’; an app geared towards mental health and wellbeing
  • 401k Matching


What skills do you need?
  • Experience in public cloud is required (AWS, Azure, GCP)
  • At least 3-5 years of experience in Cyber Security roles with a preference in the engineering field.
  • Experience work with software development or devops teams is preferred.
  • Experience in systems or network administration is preferred.
  • Experience working with industry standard regulations and compliance frameworks (PCI-DSS, ISO, NIST, SANS, SOX, SOC II, HIPAA)


Equal Employment Opportunity: KUBRA is committed to the principles of equal employment opportunity. We do not discriminate in hiring on the basis of sex, gender identity, sexual orientation, race, color, religion, creed, national origin, physical or mental disability, protected veteran status, or any other characteristic protected by federal, state, or local law. We will provide accommodations during the recruitment process upon request by emailing recruitment-team@kubra.com. Information received relating to accommodation will be addressed confidentially.

We thank all applicants for their interest; however, only candidates under consideration will be contacted.


While we value the skills and experiences listed in our job requirements, we also recognize that talent comes in many forms, and welcome applications from candidates who meet most but not all specified requirements. If you possess a strong desire to learn and grow in a dynamic work environment, apply now!


KUBRA is a fast-growing company that delivers customer communications solutions to some of the largest utility, insurance, and government entities across North America. KUBRA offers billing and payments, mapping, mobile apps, proactive communications, and artificial intelligence solutions for customers. With more than 1.5 billion customer interactions annually, KUBRA services reach over 40% of households in the U.S. and Canada. KUBRA is an operating subsidiary of Hearst.

 

Our office is small enough to allow creative individuals to flourish, yet large enough to provide long-term stability. We place a tremendous amount of responsibility on our team members to be productive, focused and self-motivated. We offer a casual work environment, competitive compensation and a stellar benefits program. 


KUBRA does not typically provide immigration-related assistance, including employment-based work visa (e.g. H-1B) sponsorship, work permit applications and extensions, permanent residence (green card) sponsorship, LMIA applications or permanent residency nominations. Candidates must ensure they have legal authorization to work in the U.S/ Canada. All sponsorship determinations are case by case based on business need.

KUBRA Glassdoor Company Review
4.0 Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon Glassdoor star icon
KUBRA DE&I Review
4.4 Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon Glassdoor star icon
CEO of KUBRA
KUBRA CEO photo
Rick Watkin
Approve of CEO

Average salary estimate

$85000 / YEARLY (est.)
min
max
$70000K
$100000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About DevSecOps Engineer, KUBRA

Join KUBRA's dynamic team as a DevSecOps Engineer! We are looking for a passionate professional to spearhead the integration and maintenance of robust security measures across every stage of our software development lifecycle. Your expertise will be crucial in fortifying the confidentiality, integrity, and availability of KUBRA’s cutting-edge public cloud and Kubernetes-based platform. In this pivotal role, you will collaborate with our talented DevOps team and cross-functional departments to ensure that our architectural strategies, controls, and processes not only meet the demands of modern security but also elevate enforcement of KUBRA's security policies. You will be implementing security controls across CI/CD pipelines and ensuring comprehensive vulnerability assessments at every step of the SDLC. Additionally, your role involves providing security guidance to product engineering teams while ensuring compliance with industry standards like SOC2 and PCI-DSS. You’ll also collaborate closely with our Risk and Compliance team to facilitate proactive risk mitigation and with our Security Operations team for effective incident response as necessary. This hybrid position is based in Tempe, Arizona, offering you a great work-life balance while contributing to the future of secure software solutions at KUBRA. Let’s innovate and secure the future together at KUBRA!

Frequently Asked Questions (FAQs) for DevSecOps Engineer Role at KUBRA
What are the main responsibilities of a DevSecOps Engineer at KUBRA?

As a DevSecOps Engineer at KUBRA, your main responsibilities include implementing security controls across CI/CD pipelines, ensuring vulnerability assessments at every stage of the SDLC, and providing security guidance for software applications to comply with industry standards. You will also work closely with DevOps and engineering teams to foster secure coding practices and oversee architectural security measures.

Join Rise to see the full answer
What qualifications are needed for the DevSecOps Engineer position at KUBRA?

KUBRA requires at least 3-5 years of experience in cybersecurity roles, preferably within engineering. Candidates should also have experience with public cloud platforms such as AWS, Azure, or GCP, along with familiarity with compliance frameworks like PCI-DSS, NIST, and SOC II. A background in software development or DevOps is preferred, along with solid organizational and problem-solving skills.

Join Rise to see the full answer
How does the DevSecOps Engineer contribute to KUBRA's security measures?

The DevSecOps Engineer at KUBRA contributes to our security measures by ensuring that security is integrated throughout the software development lifecycle. This includes implementing best practices in secure coding, conducting regular vulnerability assessments, and guiding teams in maintaining compliance with cybersecurity regulations and standards, thus safeguarding our public cloud infrastructure.

Join Rise to see the full answer
What is the work culture like for a DevSecOps Engineer at KUBRA?

KUBRA fosters an award-winning culture that emphasizes growth, diversity, and inclusion. As a DevSecOps Engineer, you’ll enjoy a casual environment, flexible schedules, and the opportunity for continued education and professional development. Our collaborative atmosphere encourages innovative thinking and strong teamwork, allowing you to thrive while making a meaningful impact.

Join Rise to see the full answer
What can a DevSecOps Engineer expect in terms of career growth at KUBRA?

At KUBRA, a DevSecOps Engineer can expect ample opportunities for career growth, supported by the company’s commitment to employee development. You'll have access to a LinkedIn Learning subscription, performance-based bonuses, and an education reimbursement program to further enhance your skills. The company's dynamic nature provides a platform for you to advance your career while making significant contributions to the field of cybersecurity.

Join Rise to see the full answer
Common Interview Questions for DevSecOps Engineer
Can you describe your experience with CI/CD pipelines in relation to security?

When answering this question, emphasize your hands-on experience with CI/CD tools and how you integrated security practices into those pipelines. Discuss specific security measures you implemented, such as automated testing for vulnerabilities and incorporating security controls, to showcase your practical knowledge.

Join Rise to see the full answer
What security frameworks are you familiar with, and how have you applied them?

This is your chance to discuss industry standards like PCI-DSS, NIST, or OWASP. Highlight any relevant projects where you successfully implemented these frameworks, ensuring compliance while protecting sensitive data, and how it positively impacted your previous organization.

Join Rise to see the full answer
How do you keep up with the latest trends in cybersecurity?

Show your proactive approach by mentioning trusted resources such as cybersecurity blogs, podcasts, or conferences you follow. Discuss how you apply newly learned strategies or tools to mitigate risks in your projects, illustrating your passion for continuous improvement in the field.

Join Rise to see the full answer
Describe a time when you identified a security vulnerability. What steps did you take?

Use the STAR method (Situation, Task, Action, Result) to structure your response. Briefly outline the context of the vulnerability, the actions you took to address it—such as conducting a thorough assessment or implementing a fix—and the positive outcome that resulted from your swift action.

Join Rise to see the full answer
How do you ensure collaboration between development and security teams?

Discuss your communication strategies and collaborative tools you use to bridge the gap between teams. Mention how you leverage weekly meetings or shared platforms to ensure everyone is aligned on security goals and promote a culture of security awareness in development cycles.

Join Rise to see the full answer
What role do you think security plays in the software development lifecycle?

Stress that security should be integrated from the start and not treated as an afterthought. Describe how embedding security practices in each phase improves overall software quality and reduces the risk of vulnerabilities post-deployment.

Join Rise to see the full answer
How would you handle a security incident in your cloud environment?

Outline the first steps you would take to assess the situation, isolate any affected systems, and communicate with necessary stakeholders. Describe the importance of documenting the incident and the post-incident review to learn and refine your processes.

Join Rise to see the full answer
What tools do you use for vulnerability assessments?

Be ready to talk about specific tools you have experience with, such as static and dynamic application security testing tools. Explain why you prefer those tools and how they've helped in identifying vulnerabilities in your previous roles.

Join Rise to see the full answer
In your opinion, what are the most significant threats to cloud infrastructure today?

Demonstrate your knowledge by discussing current prevalent threats such as misconfiguration, data breaches, or DDoS attacks. Explain how understanding these threats shapes your approach in developing robust security measures.

Join Rise to see the full answer
Can you provide an example of how you've successfully influenced others about security best practices?

Share a specific instance where your advocacy for security best practices led to meaningful change, whether through training sessions, one-on-one mentoring, or creating documentation that simplified complex security measures, showcasing your leadership and communication skills.

Join Rise to see the full answer
Similar Jobs
Photo of the Rise User
KUBRA Remote Tempe, AZ
Posted 7 days ago

Elevate your design skills at KUBRA as a Visual Designer, collaborating on products that over 40% of households in North America trust.

Photo of the Rise User
KUBRA Remote Greater Toronto Area, ON
Posted 12 days ago

Elevate customer experience management with KUBRA as a Software Delivery Project Manager, leading transformative projects in a hybrid work environment.

Photo of the Rise User

Turner & Townsend is looking for a Senior Construction Manager to oversee large-scale data center construction projects in Fairfax, VA.

Photo of the Rise User
Posted 7 days ago

Join our Operations Department as a Solar Engineering Intern, where you'll help develop engineering plans for residential solar projects at our Annandale headquarters.

Photo of the Rise User
Posted 4 days ago
Dental Insurance
Disability Insurance
Flexible Spending Account (FSA)
Vision Insurance
Family Medical Leave
Paid Holidays

Join Homebound as a Construction Superintendent and lead the charge in redefining residential home construction with technology-driven solutions.

Michelin is seeking a skilled Mechanical Engineer to support plant projects and enhance operations at their Junction City location.

Photo of the Rise User

Join Peraton as a Network Engineer and contribute to innovative national security solutions for the Department of Defense.

VERSES Remote No location specified
Posted 12 days ago

Lead the advancement of our cloud infrastructure as a Senior DevOps Engineer at VERSES, a pioneering cognitive computing company.

Photo of the Rise User

Become a key player at Boeing by joining our team as a Certification Systems Engineer focused on regulatory compliance and airworthiness in a dynamic environment.

Photo of the Rise User
Posted 10 days ago

Seeking a dedicated Production Team Manager to lead our Civil Design team in Katy, Texas, ensuring project efficiency and staff growth.

“Experience Better” is more than a tagline, it’s our mission.

31 jobs
MATCH
Calculating your matching score...
FUNDING
DEPARTMENTS
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, hybrid
DATE POSTED
April 20, 2025

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!
LATEST ACTIVITY
Photo of the Rise User
Someone from OH, Springfield just viewed Software Engineer, Emerging Talent (Consumer) at Coinbase
Photo of the Rise User
Someone from OH, Springfield just viewed Information Security Analyst at American Express
Photo of the Rise User
Someone from OH, Springfield just viewed Associate Security Operations Analyst at Zopa
Photo of the Rise User
Someone from OH, Springfield just viewed Security & IT Operations Analyst at Kepler Communications
Photo of the Rise User
Someone from OH, Springfield just viewed Corporate IT Engineer at HHAeXchange
Photo of the Rise User
Someone from OH, Springfield just viewed Create your own role at Twingate
Photo of the Rise User
16 people applied to Junior iOS Developer at Sportradar
Photo of the Rise User
Someone from OH, Mason just viewed Programmer Analyst at VEGA Americas
Photo of the Rise User
Someone from OH, Cincinnati just viewed Quality Assurance Specialist at Tala
Photo of the Rise User
Someone from OH, Canton just viewed Cart pusher Courtesy Clerk at Meijer
Photo of the Rise User
45 people applied to REMOTE Sr Piping Designer at Kelly
Photo of the Rise User
Someone from OH, Columbus just viewed Warehouse Associate- Columbus, OH at MAERSK
Photo of the Rise User
11 people applied to Pega Engineer at Proxymity
Photo of the Rise User
Someone from OH, Cincinnati just viewed Consumer Insights Research Executive (Mid-level) at NielsenIQ
Photo of the Rise User
Someone from OH, North Royalton just viewed Staff Forward Deployed Engineer at Ridgeline
Photo of the Rise User
Someone from OH, North Royalton just viewed Software Engineer (L2) at Twilio
Photo of the Rise User
Someone from OH, Columbus just viewed Field Service Associate- Greeting Card Sales at Harper Group
Photo of the Rise User
Someone from OH, Hamilton just viewed Material Handler - 2nd shift at Cardinal Health
Photo of the Rise User
Someone from OH, Alliance just viewed Director - Music Publishing Licensing at SoundCloud
Photo of the Rise User
Someone from OH, Cincinnati just viewed M365 Technical Advisor at Upwork
Photo of the Rise User
Someone from OH, Cincinnati just viewed Sr. Client Care Support at Visa
Photo of the Rise User
Someone from OH, Cincinnati just viewed Level 1 Support Technician at Pico
Photo of the Rise User
Someone from OH, Steubenville just viewed Digital Marketing Content Intern at Sanction Scanner
Photo of the Rise User
Someone from OH, Cleveland just viewed Data Labeling Associate - 6 Month Contract at Citylitics
Photo of the Rise User
Someone from OH, Dublin just viewed Trainee Database Engineer - IN ( Oracle ) at Rackspace
Photo of the Rise User
12 people applied to GIS Summer Intern at AECOM
Photo of the Rise User
17 people applied to UI Developer Intern at RainFocus