Execute assigned DevSecOps and Secure SDLC workstreams across assessments, design, implementation, testing, and operationalization; coordinate with client stakeholders and delivery team members to ...
Execute assigned DevSecOps and Secure SDLC workstreams across assessments, design, implementation, testing, and operationalization; coordinate with client stakeholders and delivery team members to ...
Senior Engineer, DevSecOps
$185K - $243K/yr
We're looking for a Sr DevSecOps Engineer with strong network security expertise to help build, secure, and maintain our cloud infrastructure. You'll build infrastructure automation, CI/CD pipelines ...
Senior Engineer, DevSecOps
$185K - $243K/yr
We're looking for a Sr DevSecOps Engineer with strong network security expertise to help build, secure, and maintain our cloud infrastructure. You'll build infrastructure automation, CI/CD pipelines ...
DevSecOps
San Jose, CA · On-site
$61.75 - $84.75/hr
As a Senior DevSecOps Engineer, you will build and maintain the invisible infrastructure that makes this scale possible-ensuring developers can ship features daily while maintaining fortress-level ...
DevSecOps
San Jose, CA · On-site
$61.75 - $84.75/hr
As a Senior DevSecOps Engineer, you will build and maintain the invisible infrastructure that makes this scale possible-ensuring developers can ship features daily while maintaining fortress-level ...
Execute assigned DevSecOps and Secure SDLC workstreams across assessments, design, implementation, testing, and operationalization; coordinate with client stakeholders and delivery team members to ...
Execute assigned DevSecOps and Secure SDLC workstreams across assessments, design, implementation, testing, and operationalization; coordinate with client stakeholders and delivery team members to ...
Execute assigned DevSecOps and Secure SDLC workstreams across assessments, design, implementation, testing, and operationalization; coordinate with client stakeholders and delivery team members to ...
Execute assigned DevSecOps and Secure SDLC workstreams across assessments, design, implementation, testing, and operationalization; coordinate with client stakeholders and delivery team members to ...
Execute assigned DevSecOps and Secure SDLC workstreams across assessments, design, implementation, testing, and operationalization; coordinate with client stakeholders and delivery team members to ...
Execute assigned DevSecOps and Secure SDLC workstreams across assessments, design, implementation, testing, and operationalization; coordinate with client stakeholders and delivery team members to ...
Execute assigned DevSecOps and Secure SDLC workstreams across assessments, design, implementation, testing, and operationalization; coordinate with client stakeholders and delivery team members to ...
Execute assigned DevSecOps and Secure SDLC workstreams across assessments, design, implementation, testing, and operationalization; coordinate with client stakeholders and delivery team members to ...
DevSecOps
San Jose, CA · On-site
As a Senior DevSecOps Engineer, you will build and maintain the invisible infrastructure that makes this scale possible-ensuring developers can ship features daily while maintaining fortress-level ...
DevSecOps
San Jose, CA · On-site
As a Senior DevSecOps Engineer, you will build and maintain the invisible infrastructure that makes this scale possible-ensuring developers can ship features daily while maintaining fortress-level ...
DevSecOps Engineer Belong. Connect. Grow. with KBR! KBR is seeking an experienced DevSecOps Engineer to support the MSEIT contract at Space Systems Command (SSC). This role focuses on designing ...
DevSecOps Engineer Belong. Connect. Grow. with KBR! KBR is seeking an experienced DevSecOps Engineer to support the MSEIT contract at Space Systems Command (SSC). This role focuses on designing ...
DevSecOps Engineer
San Francisco, CA · On-site
$179 - $188/hr
Responsibilities As a DevSecOps Engineer, you will help secure Virta's applications and platform, directly contributing to the trust our members and partners place in us. You'll collaborate across ...
DevSecOps Engineer
San Francisco, CA · On-site
$179 - $188/hr
Responsibilities As a DevSecOps Engineer, you will help secure Virta's applications and platform, directly contributing to the trust our members and partners place in us. You'll collaborate across ...
DevSecOps Engineer (Web Security Focus)
Los Angeles, CA · On-site
$120 - $180/hr
We are seeking a DevSecOps Engineer to bridge the gap between web development, operations, and security. You will be responsible for developing secure web applications, managing CI/CD pipelines, and ...
DevSecOps Engineer (Web Security Focus)
Los Angeles, CA · On-site
$120 - $180/hr
We are seeking a DevSecOps Engineer to bridge the gap between web development, operations, and security. You will be responsible for developing secure web applications, managing CI/CD pipelines, and ...
Sr Manager DevSecOps, Cisco Intersight
Milpitas, CA · On-site
$210K - $305K/yr
Our DevSecOps team serves as the backbone of this platform, ensuring we build, test, and release software with both speed and security at scale. We are high-impact group that values innovation ...
Sr Manager DevSecOps, Cisco Intersight
Milpitas, CA · On-site
$210K - $305K/yr
Our DevSecOps team serves as the backbone of this platform, ensuring we build, test, and release software with both speed and security at scale. We are high-impact group that values innovation ...
Director of Secure Software & DevSecOps Leadership (San Jose)
San Jose, CA · On-site
$164K - $305K/yr
This role focuses on DevSecOps transformation and compliance with regulatory frameworks. The candidate must have 12-15+ years in cybersecurity with expertise in secure SDLC and DevSecOps. The salary ...
Director of Secure Software & DevSecOps Leadership (San Jose)
San Jose, CA · On-site
$164K - $305K/yr
This role focuses on DevSecOps transformation and compliance with regulatory frameworks. The candidate must have 12-15+ years in cybersecurity with expertise in secure SDLC and DevSecOps. The salary ...
Sr Manager DevSecOps, Cisco Intersight
Milpitas, CA · On-site
$210K - $305K/yr
Our DevSecOps team serves as the backbone of this platform, ensuring we build, test, and release software with both speed and security at scale. We are high-impact group that values innovation ...
Sr Manager DevSecOps, Cisco Intersight
Milpitas, CA · On-site
$210K - $305K/yr
Our DevSecOps team serves as the backbone of this platform, ensuring we build, test, and release software with both speed and security at scale. We are high-impact group that values innovation ...
Senior DevSecOps Cybersecurity Engineer with Security Clearance
El Segundo, CA · On-site
$113K - $153K/yr
Senior DevSecOps Cybersecurity Engineer Belong. Connect. Grow. with KBR! KBR's National Security Solutions team provides high-end engineering and advanced technology solutions to our customers in the ...
Senior DevSecOps Cybersecurity Engineer with Security Clearance
El Segundo, CA · On-site
$113K - $153K/yr
Senior DevSecOps Cybersecurity Engineer Belong. Connect. Grow. with KBR! KBR's National Security Solutions team provides high-end engineering and advanced technology solutions to our customers in the ...
Sr. AWS DevSecOps Network Engineer
California Hot Springs, CA · On-site
$57.25 - $75/hr
We are seeking a highly motivated and experienced Senior AWS DevSecOps Network Engineer to join our growing team. This critical role will be responsible for the design, implementation, and ...
Quick apply
Sr. AWS DevSecOps Network Engineer
California Hot Springs, CA · On-site
$57.25 - $75/hr
We are seeking a highly motivated and experienced Senior AWS DevSecOps Network Engineer to join our growing team. This critical role will be responsible for the design, implementation, and ...
Embedded DevOps/DevSecOps Lead Level 4 (AHT)
Los Angeles, CA · On-site
$56.75 - $77.75/hr
The Embedded DevOps/DevSecOps Lead will define, design, and own the endtoend CI/CD pipeline architecture for Missile Programs within the Advanced Weapons Business Unit. In this position, you will ...
New
Embedded DevOps/DevSecOps Lead Level 4 (AHT)
Los Angeles, CA · On-site
$56.75 - $77.75/hr
The Embedded DevOps/DevSecOps Lead will define, design, and own the endtoend CI/CD pipeline architecture for Missile Programs within the Advanced Weapons Business Unit. In this position, you will ...
New
Senior DevSecOps Security Engineer, Cisco Intersight
Milpitas, CA · On-site
$133K - $183K/yr
We are looking for an expert Security Officer / DevSecOps Engineer to provide senior security guidance and hands-on engineering contribution within the Intersight DevSecOps function. This role ...
Senior DevSecOps Security Engineer, Cisco Intersight
Milpitas, CA · On-site
$133K - $183K/yr
We are looking for an expert Security Officer / DevSecOps Engineer to provide senior security guidance and hands-on engineering contribution within the Intersight DevSecOps function. This role ...
Multi-Domain DevSecOps Engineer with Security Clearance
San Diego, CA · On-site
$132K - $226K/yr
The team seeks a motivated Platform DevSecOps Engineer to tackle the task of leading a team. Your effort on our system ensures security, scalability, and reliability for developers and users alike.
Multi-Domain DevSecOps Engineer with Security Clearance
San Diego, CA · On-site
$132K - $226K/yr
The team seeks a motivated Platform DevSecOps Engineer to tackle the task of leading a team. Your effort on our system ensures security, scalability, and reliability for developers and users alike.
Embedded DevOps/DevSecOps Lead Level 4 (AHT)
Los Angeles, CA · On-site
$56.75 - $77.75/hr
The Embedded DevOps/DevSecOps Lead will define, design, and own the endtoend CI/CD pipeline architecture for Missile Programs within the Advanced Weapons Business Unit. In this position, you will ...
Embedded DevOps/DevSecOps Lead Level 4 (AHT)
Los Angeles, CA · On-site
$56.75 - $77.75/hr
The Embedded DevOps/DevSecOps Lead will define, design, and own the endtoend CI/CD pipeline architecture for Missile Programs within the Advanced Weapons Business Unit. In this position, you will ...
Devsecops information
See California salary details
$32.1K - $40.2K
4% of jobs
$40.2K - $48.4K
4% of jobs
$48.4K - $56.6K
2% of jobs
$56.6K - $64.7K
8% of jobs
$67.6K is the 25th percentile. Wages below this are outliers.
$64.7K - $72.9K
18% of jobs
The median wage is $78.5K / yr.
$72.9K - $81.1K
20% of jobs
$81.1K - $89.2K
13% of jobs
$92.7K is the 75th percentile. Wages above this are outliers.
$89.2K - $97.4K
15% of jobs
$97.4K - $105.6K
8% of jobs
$105.6K - $113.7K
4% of jobs
$113.7K - $121.9K
4% of jobs
$32.1K
$81.3K
$121.9K
How much do devsecops jobs pay per year?
What is a DevSecOps?
A DevSecOps job focuses on integrating security into the software development and operations process. Professionals in this role work to automate security measures, ensure compliance, and identify vulnerabilities throughout the development lifecycle. They collaborate with development, operations, and security teams to embed security best practices into CI/CD pipelines. The goal is to create secure software efficiently without slowing down development and deployment.
What are the key skills and qualifications needed to thrive in the DevSecOps position?
To thrive as a DevSecOps professional, you need expertise in secure software development, CI/CD pipelines, cloud infrastructure, automation, and strong knowledge of cybersecurity principles, often supported by a degree in computer science or a related field. Familiarity with tools such as Jenkins, Docker, Kubernetes, Terraform, and security certifications like CISSP or AWS Certified Security are typically required. Strong problem-solving abilities, effective communication, and a collaborative mindset are valuable soft skills. These are essential to ensuring security is integrated throughout the development lifecycle while enabling efficient deployment and cross-team collaboration.
What are some common challenges DevSecOps professionals face on the job?
DevSecOps professionals often navigate the challenge of balancing rapid development cycles with the need for robust security, which requires both technical adaptability and continuous vigilance. They may encounter resistance to adopting new security practices within development teams, making communication and advocacy skills crucial. Additionally, staying updated with evolving security threats and ensuring compliance with industry standards can be demanding. These challenges offer opportunities to make a significant impact on organizational security and to develop expertise in both security and automation, leading to diverse career advancement possibilities.
Is DevSecOps a good career?
What are the most commonly searched types of Devsecops jobs in California?
The most popular types of Devsecops jobs in California are:
What are popular job titles related to Devsecops jobs in California?
For Devsecops jobs in California, the most frequently searched job titles are:
What job categories do people searching Devsecops jobs in California look for?
The top searched job categories for Devsecops jobs in California are:
What cities in California are hiring for Devsecops jobs?
Cities in California with the most Devsecops job openings:

Deloitte rating
8.2
Based on 93 frontline employees who took The Breakroom Quiz
47th of 154 rated financial services
Job description
Cyber Senior Consultant - DevSecOps
Position Summary
Are you interested in working in a dynamic environment that offers opportunities for professional growth and new responsibilities? If so, Deloitte & Touche LLP could be the place for you. Traditional security programs have often been unsuccessful in unifying the need to both secure and support technology innovation required by the business. Join Deloitte's Cloud Cyber Services team and become a member of the largest group of cybersecurity professionals worldwide.
Recruiting for this role ends on 12/31/2026
Work You'll Do
As a Senior Consultant, you will:
- Execute assigned DevSecOps and Secure SDLC workstreams across assessments, design, implementation, testing, and operationalization; coordinate with client stakeholders and delivery team members to complete assigned activities on time and with high quality.
- Assess current-state security capabilities across people, processes, technology, and governance; analyze gaps and contribute to target-state recommendations, prioritized roadmaps, operating models, and implementation plans.
- Design and implement Secure-by-Design and Application Security processes across the software development lifecycle, including application intake, risk classification, architecture reviews, threat modeling, control assessments, approvals, exception management, and go-live governance.
- Support the integration of security tooling, automation, and AI-enabled capabilities into CI/CD and developer workflows, including SAST, DAST, SCA, secrets, infrastructure-as-code, container, API, and vulnerability management, as well as AI-assisted triage, remediation, validation, and secure AI guardrails.
- Perform cloud-native and software supply chain security assessments, including cloud, container, Kubernetes, runtime, dependency, SBOM, artifact integrity, secure build, code-signing, secrets management, and software provenance activities; help define and prioritize remediation actions.
- Contribute to client delivery and team development by facilitating workshops, preparing technical and executive deliverables, tracking work plans, risks, issues, and dependencies, supporting metrics and dashboards, mentoring junior practitioners, reviewing work for quality, and contributing to proposals and reusable practice assets.
The successful candidate would possess these skills
- Ability to work independently and collaborate as part of a team
- Effective written and verbal communication skills
- Meticulous attention to detail and quality of work product
- Ability to build and sustain professional relationships
- Ability to lead projects or workstreams
- Ability to manage and prioritize multiple tasks in a fast-paced and dynamic environment
- Strong interpersonal skills and professional demeanor
- Ability to meet deadlines
- Ability to provide clear guidance to others
The Team
Our Enterprise Security offering embeds security in all aspects of digital transformation by securing a client's technical backbone while enabling secure digital transformation. Includes security architecture, secure development and deployment, end-to-end cyber cloud capabilities, application security, and security for emerging technologies and connected products.
Required Qualifications
- Bachelor's degree in Computer Science, Cybersecurity, Information Technology, Engineering, Information Systems, or a related technical discipline
- 4+ years of professional experience in at least one of the following domains: DevSecOps, Application Security, Secure SDLC, Cloud Security, cybersecurity engineering, software security, or cybersecurity consulting.
- 2+ years of hands-on experience with DevSecOps, Application Security, Secure SDLC, or Secure-by-Design activities, including assessment, design, implementation, or security engineering.
- 1+ year of experience leading or independently owning a cybersecurity, DevSecOps, Application Security, or Secure SDLC project workstream.
- 2+ years of experience with CI/CD or modern software engineering environments, including experience with at least 3 of the following security capabilities: SAST, DAST, SCA, secrets scanning, IaC scanning, container security, API security, threat modeling, or vulnerability management.
- 1+ year of experience translating cybersecurity policies, standards, or control requirements into technical controls, engineering requirements, security procedures, or SDLC workflows.
- Experience applying at least 1 cybersecurity framework or standard, such as NIST CSF, NIST SP 800-53, NIST SSDF, OWASP SAMM, ISO 27001, or comparable framework, on at least 1 project.
- 1+ year of experience with at least 1 cloud or cloud-native environment, including Microsoft Azure, AWS, Google Cloud Platform, Kubernetes, or container-based application environments.
- 1+ year of experience using at least 1 engineering, security workflow, or automation platform, such as ServiceNow, Jira, Azure DevOps, GitHub, GitLab, Jenkins, or comparable technology.
- Ability to travel up to 50%, on average, based on the work you do and the clients and industries/sectors you serve.
- Limited immigration sponsorship may be available.
Preferred Qualifications
- Experience producing at least 2 types of client or enterprise security deliverables, such as assessment reports, technical recommendations, process flows, control mappings, roadmaps, architecture documentation, dashboards, or executive presentations.
- Experience facilitating or supporting at least 2 client or stakeholder workshops, requirements sessions, technical working sessions, or security assessments.
- Experience coordinating activities with at least 1 cross-functional or geographically distributed delivery team.
- 6+ months of experience or project exposure to AI-enabled cybersecurity, Generative AI security, AI-assisted vulnerability management/remediation, or Agentic AI security automation.
- Experience implementing or supporting at least 1 AI-assisted security use case, such as vulnerability triage, remediation recommendations, code remediation, security analysis, control validation, or security workflow automation.
- Experience with at least 1 software supply chain security capability, such as SBOM, SLSA, dependency governance, code signing, artifact integrity, PKI/HSM, or software provenance.
- Experience with OWASP SAMM, BSIMM, NIST SSDF, SLSA, or comparable software security maturity frameworks.
- At least 1 relevant cybersecurity or cloud certification, such as CCSP, CISSP, CISA, CSSLP, Security+, AWS security certification, Microsoft Azure security certification, Google Cloud security certification, or comparable credential.
- 1+ year of consulting or professional services experience preferred.
- Experience using at least 1 reporting or analytics platform, such as Microsoft Power BI, Tableau, or comparable technology.
- Experience supporting security requirements associated with at least 1 regulatory or compliance framework, such as ISO 27001/27017, SOC 2, PCI DSS, HIPAA, SOX, GLBA, or NIST SP 800-53.
The wage range for this role takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. At Deloitte, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is $105,400 to $207,800.
You may also be eligible to participate in a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various factors, including, without limitation, individual and organizational performance.
Qualifications:Cyber Senior Consultant - DevSecOps
Position Summary
Are you interested in working in a dynamic environment that offers opportunities for professional growth and new responsibilities? If so, Deloitte & Touche LLP could be the place for you. Traditional security programs have often been unsuccessful in unifying the need to both secure and support technology innovation required by the business. Join Deloitte's Cloud Cyber Services team and become a member of the largest group of cybersecurity professionals worldwide.
Recruiting for this role ends on 12/31/2026
Work You'll Do
As a Senior Consultant, you will:
- Execute assigned DevSecOps and Secure SDLC workstreams across assessments, design, implementation, testing, and operationalization; coordinate with client stakeholders and delivery team members to complete assigned activities on time and with high quality.
- Assess current-state security capabilities across people, processes, technology, and governance; analyze gaps and contribute to target-state recommendations, prioritized roadmaps, operating models, and implementation plans.
- Design and implement Secure-by-Design and Application Security processes across the software development lifecycle, including application intake, risk classification, architecture reviews, threat modeling, control assessments, approvals, exception management, and go-live governance.
- Support the integration of security tooling, automation, and AI-enabled capabilities into CI/CD and developer workflows, including SAST, DAST, SCA, secrets, infrastructure-as-code, container, API, and vulnerability management, as well as AI-assisted triage, remediation, validation, and secure AI guardrails.
- Perform cloud-native and software supply chain security assessments, including cloud, container, Kubernetes, runtime, dependency, SBOM, artifact integrity, secure build, code-signing, secrets management, and software provenance activities; help define and prioritize remediation actions.
- Contribute to client delivery and team development by facilitating workshops, preparing technical and executive deliverables, tracking work plans, risks, issues, and dependencies, supporting metrics and dashboards, mentoring junior practitioners, reviewing work for quality, and contributing to proposals and reusable practice assets.
The successful candidate would possess these skills
- Ability to work independently and collaborate as part of a team
- Effective written and verbal communication skills
- Meticulous attention to detail and quality of work product
- Ability to build and sustain professional relationships
- Ability to lead projects or workstreams
- Ability to manage and prioritize multiple tasks in a fast-paced and dynamic environment
- Strong interpersonal skills and professional demeanor
- Ability to meet deadlines
- Ability to provide clear guidance to others
The Team
Our Enterprise Security offering embeds security in all aspects of digital transformation by securing a client's technical backbone while enabling secure digital transformation. Includes security architecture, secure development and deployment, end-to-end cyber cloud capabilities, application security, and security for emerging technologies and connected products.
Required Qualifications
- Bachelor's degree in Computer Science, Cybersecurity, Information Technology, Engineering, Information Systems, or a related technical discipline
- 4+ years of professional experience in at least one of the following domains: DevSecOps, Application Security, Secure SDLC, Cloud Security, cybersecurity engineering, software security, or cybersecurity consulting.
- 2+ years of hands-on experience with DevSecOps, Application Security, Secure SDLC, or Secure-by-Design activities, including assessment, design, implementation, or security engineering.
- 1+ year of experience leading or independently owning a cybersecurity, DevSecOps, Application Security, or Secure SDLC project workstream.
- 2+ years of experience with CI/CD or modern software engineering environments, including experience with at least 3 of the following security capabilities: SAST, DAST, SCA, secrets scanning, IaC scanning, container security, API security, threat modeling, or vulnerability management.
- 1+ year of experience translating cybersecurity policies, standards, or control requirements into technical controls, engineering requirements, security procedures, or SDLC workflows.
- Experience applying at least 1 cybersecurity framework or standard, such as NIST CSF, NIST SP 800-53, NIST SSDF, OWASP SAMM, ISO 27001, or comparable framework, on at least 1 project.
- 1+ year of experience with at least 1 cloud or cloud-native environment, including Microsoft Azure, AWS, Google Cloud Platform, Kubernetes, or container-based application environments.
- 1+ year of experience using at least 1 engineering, security workflow, or automation platform, such as ServiceNow, Jira, Azure DevOps, GitHub, GitLab, Jenkins, or comparable technology.
- Ability to travel up to 50%, on average, based on the work you do and the clients and industries/sectors you serve.
- Limited immigration sponsorship may be available.
Preferred Qualifications
- Experience producing at least 2 types of client or enterprise security deliverables, such as assessment reports, technical recommendations, process flows, control mappings, roadmaps, architecture documentation, dashboards, or executive presentations.
- Experience facilitating or supporting at least 2 client or stakeholder workshops, requirements sessions, technical working sessions, or security assessments.
- Experience coordinating activities with at least 1 cross-functional or geographically distributed delivery team.
- 6+ months of experience or project exposure to AI-enabled cybersecurity, Generative AI security, AI-assisted vulnerability management/remediation, or Agentic AI security automation.
- Experience implementing or supporting at least 1 AI-assisted security use case, such as vulnerability triage, remediation recommendations, code remediation, security analysis, control validation, or security workflow aut...
About Deloitte
Sourced by ZipRecruiter
Industry
Finance and insurance and business management consulting
Company size
10,000+ Employees
Headquarters location
Orlando, FL, US