1

Devsecops Engineer Jobs in California (NOW HIRING)

Sr. DevSecOps Engineer

San Diego, CA ยท On-site

$121K - $166K/yr

Bowhead seeks a Sr. DevSecOps Engineer to support in operational systems integration, development, test, evaluation, operation, sustainment, and maintenance using technologies and acquisition ...

DevSecOps Engineer II

San Diego, CA ยท On-site

$95K - $115K/yr

We are looking for a full-time DevSecOps Engineer to join our team of 110+ employees in San Diego, CA. U.S. citizenship and eligibility for a Secret-level security clearance are required. In our ...

Chaos Industries is hiring a DevSecOps Engineer to embed security into every layer of our software development and infrastructure delivery lifecycle. This is a broad, hands-on engineering role; you ...

Chaos Industries is hiring a DevSecOps Engineer to embed security into every layer of our software development and infrastructure delivery lifecycle. This is a broad, hands-on engineering role; you ...

DevSecOps Engineer II

San Diego, CA ยท On-site

$95K - $115K/yr

We are looking for a full-time DevSecOps Engineer to join our team of 110+ employees in San Diego, CA. U.S. citizenship and eligibility for a Secret-level security clearance are required. In our ...

The DevSecOps Engineer II role focuses on designing and implementing automation and process improvements to enhance business outcomes, while providing lifecycle support for Enterprise DevSecOps tools ...

Senior DevSecOps Engineer

Irvine, CA ยท Hybrid

$122K - $168K/yr

The DevSecOps engineer supports the security of continuous integration and continuous deployment (CI/CD) initiatives and is an integrated team member working with software developers, system ...

Participates in Agile teams to plan, develop, and maintain systems and requirements for the DevSecOps pipeline. * Works closely with engineering teams to ensure we are considering security when ...

Participates in Agile teams to plan, develop, and maintain systems and requirements for the DevSecOps pipeline. * Works closely with engineering teams to ensure we are considering security when ...

We're looking for a Sr DevSecOps Engineer with strong network security expertise to help build, secure, and maintain our cloud infrastructure. You'll build infrastructure automation, CI/CD pipelines ...

Senior DevSecOps Engineer

Torrance, CA ยท On-site

$120K - $145K/yr

Job Overview The Senior DevSecOps Engineer builds and operates the platform that powers developer experience and security across our engineering organization. This role will design and run our CI/CD ...

Senior DevSecOps Engineer

Torrance, CA ยท On-site

$120K - $145K/yr

Job Overview The Senior DevSecOps Engineer builds and operates the platform that powers developer experience and security across our engineering organization. This role will design and run our CI/CD ...

Cloud DevSecOps Engineer

Hawthorne, CA ยท On-site

$140K - $220K/yr

CHAOS is seeking a highly-skilled and motivated DevSecOps/Platform Engineer to join our team supporting our R&D and product engineering initially focusing on our next-generation Command and Control ...

CHAOS is seeking a highly-skilled and motivated DevSecOps/Platform Engineer to join our team supporting our R&D and product engineering initially focusing on our next-generation Command and Control ...

next page

Showing results 1-20

Devsecops Engineer information

See California salary details

$38.5K

$100.4K

$135.7K

How much do devsecops engineer jobs pay per year?

As of Jun 17, 2026, the average yearly pay for devsecops engineer in California is $100,420.00, according to ZipRecruiter salary data. Most workers in this role earn between $82,900.00 and $115,000.00 per year, depending on experience, location, and employer.

Are DevSecOps engineers in demand?

DevSecOps engineers are in high demand due to the increasing emphasis on integrating security into development and operations. Organizations seek professionals skilled in automation, cloud platforms, and security tools to improve software security and compliance, making this a growing and competitive field.

How much do DevSecOps engineers make?

DevSecOps engineers typically earn a median salary ranging from $100,000 to $150,000 annually, depending on experience, location, and certifications. Senior roles or those with specialized skills in cloud security and automation can earn higher salaries, often exceeding $160,000 per year.

What does a DevSecOps engineer do?

A DevSecOps engineer integrates security practices into the software development and deployment process, ensuring security is built into continuous integration and continuous delivery (CI/CD) pipelines. They automate security testing, monitor for vulnerabilities, and collaborate with development and operations teams to maintain secure systems using tools like Jenkins, Docker, and security scanners.

What is the difference between Devsecops Engineer vs Security Engineer?

AspectDevsecops EngineerSecurity Engineer
CertificationsCertified DevSecOps Professional, CISSP, CompTIA Security+CISSP, CEH, CompTIA Security+
Work EnvironmentDevOps teams, cloud platforms, CI/CD pipelinesSecurity teams, incident response, security tools
Industry UsageSoftware development, IT operations, cloud servicesCybersecurity, risk management, compliance

While both roles focus on security, a Devsecops Engineer integrates security into development and operations processes, emphasizing automation and continuous security. A Security Engineer primarily focuses on protecting systems through security measures, monitoring, and incident response. The roles often overlap but differ in scope and daily tasks.

What is a DevSecOps Engineer?

A DevSecOps Engineer is a professional who integrates security practices into the DevOps process, ensuring that security is incorporated throughout the software development lifecycle. They work to automate security checks, collaborate with development and operations teams, and implement tools that detect and prevent vulnerabilities early. Their goal is to enhance both the speed and security of software delivery. DevSecOps Engineers typically have skills in coding, automation, security tools, and cloud technologies. They play a crucial role in building secure, reliable, and efficient systems.

What are the key skills and qualifications needed to thrive as a DevSecOps Engineer, and why are they important?

To thrive as a DevSecOps Engineer, you need a solid background in software development, cybersecurity principles, automation, and experience with CI/CD pipelines, often supported by a degree in computer science or a related field. Familiarity with tools like Jenkins, Docker, Kubernetes, Terraform, and security frameworks, as well as certifications such as AWS Certified Security or Certified DevSecOps Professional, is highly beneficial. Strong problem-solving skills, effective communication, and a proactive mindset help you collaborate across development, operations, and security teams. These skills and qualities are crucial for integrating robust security measures throughout the software lifecycle while enabling rapid and reliable delivery.

What engineers make $500,000?

Senior-level DevSecOps engineers with extensive experience, specialized skills in cloud security, automation, and infrastructure as code can earn $500,000 or more annually, especially in high-demand industries or companies. Achieving this level typically requires advanced certifications, leadership roles, and a strong track record in security and DevOps practices.

How does a DevSecOps Engineer typically collaborate with development and security teams to integrate security into the software delivery pipeline?

A DevSecOps Engineer works closely with both development and security teams to ensure security is embedded at every stage of the software development lifecycle. This often involves conducting threat modeling sessions, automating security testing tools within CI/CD pipelines, and providing actionable feedback to developers on vulnerabilities. The role requires frequent communication, shared documentation, and cross-functional meetings to align security policies with agile development processes. By fostering a culture of shared responsibility, DevSecOps Engineers help teams deliver secure software efficiently.
What are the most commonly searched types of Devsecops Engineer jobs in California? The most popular types of Devsecops Engineer jobs in California are:
What job categories do people searching Devsecops Engineer jobs in California look for? The top searched job categories for Devsecops Engineer jobs in California are:
What cities in California are hiring for Devsecops Engineer jobs? Cities in California with the most Devsecops Engineer job openings:

Sr. DevSecOps Engineer

Bowhead

San Diego, CA โ€ข On-site

$121K - $166K/yr

Full-time

Posted 4 days ago


Job description

Overview

SR. DEVSECOPS ENGINEER (PACMED):

Bowhead seeks a Sr. DevSecOps Engineer to support in operational systems integration, development, test, evaluation, operation, sustainment, and maintenance using technologies and acquisition management to support technical, ancillary, and clinical support to military medical treatment facilities in the pacific Region. This position will support building a next-generation automated compliance and AI-driven security operations platform supporting DoD, federal health, and enterprise health-careย environments. The Sr. DevSecOps Engineer will provide deep experience in DISA STIGs, SCAP automation, RMF workflows, container security, SIEM/SOAR integrations, and AI-assisted security operations.

Responsibilities

SCAP / STIG Automation

  • Build automated OpenSCAP pipelines to scan Ubuntu 24.04 LTS and other Linux hosts using DISA STIG benchmarks.
  • Integrate XCCDF and OVAL results into OpenRMF using automated ingestion workflows.
  • Develop hardened base images (VMs and containers) aligned to DISA STIG requirements.

Container Security

  • Integrate RapidFort scans into CI/CD pipelines.
  • Automate ingestion of SCAP JSON into OpenRMF.
  • Ensure curated images remain compliant and low-CVE.

Compliance Operations (RMF/FedRAMP/CMMC)

  • Support generation of automated DISA checklists (CKLs) and POA&M updates.
  • Work with compliance and engineering teams to resolve findings and track remediation progress via OpenRMF.

Security Telemetry & SIEM Engineering

  • Deploy/tune Wazuh agents across hosts and workloads.
  • Configure pipelines from Wazuh Elastic Tines.
  • Write and maintain Elastic SIEM detection rules.

SOAR Automation & AI SOC Buildout

  • Develop Tines workflows to automate:
    • SCAP ingestion
    • RapidFort event processing
    • Elastic SIEM alert enrichment
    • Compliance notifications & ticketing
  • Integrate LLMs to:
    • Summarize alerts
    • Draft POA&M entries
    • Generate remediation guidance
    • Produce daily/weekly SOC and compliance reports

Infrastructure & DevSecOps

  • Contribute to secure CI/CD pipelines, secrets management, system hardening, logging, and access control aligned with DoD RMF.
Qualifications

Must-Have Technical Expertise

  • Five to ten (10+) years Linux engineering with security hardening focus
  • Hands-on experience with OpenSCAP, DISA STIGs, SCAP benchmarks, and STIG automation
  • Experience working with OpenRMF (or similar RMF automation platforms)
  • Strong knowledge of RMF, FedRAMP, or CMMC
  • CI/CD pipeline experience (GitLab CI, GitHub Actions, Jenkins, etc.)
  • Hands-on experience with Elastic Stack and Wazuh
  • Experience deploying or integrating SOAR platforms (Tines preferred; XSOAR or Splunk SOAR acceptable)
  • Container security experience (RapidFort, Anchore, Trivy, Aqua, etc.)

Bonus Skills

  • Familiarity with ATO workflows (IL4/IL5, DoD impact levels)
  • AI integration experience using OpenAI, Azure OpenAI, or similar
  • Python or Bash scripting for automation
  • Experience with NIST 800-53, CNSSI 1253, or DoD Cybersecurity standards
Soft Skills
  • Ability to lead architecture decisions and mentor others
  • Strong communicator capable of translating compliance needs into technical workflows
  • Able to operate independently in a fast-paced federal/healthcare environment
  • Comfortable producing documentation for audits and ATO packages

Physical Demands:

  • Must be able to lift up to 20 pounds
  • Must be able to stand and walk for prolonged amounts of time
  • Must be able to twist, bend and squat periodically

SECURITY CLEARANCE REQUIREMENTS: Must be able to obtain a security clearance at the Public Trust level. US Citizenship is a requirement.

#LI-KC1

Employment Type: FULL_TIME