Cloud Security - DevSecOps Manager Position Summary Are you interested in working in a dynamic environment that offers opportunities for professional growth and new responsibilities? If so, Deloitte ...
Cloud Security - DevSecOps Manager Position Summary Are you interested in working in a dynamic environment that offers opportunities for professional growth and new responsibilities? If so, Deloitte ...
Software Engineer DevSecOps, AVP
Tempe, AZ · Hybrid
$108K - $128K/yr
Help onboarding to the DevSecOps environment and support developers across the bank. Oversee projects that adhere to continuous delivery practices with automated unit testing, integration testing ...
Software Engineer DevSecOps, AVP
Tempe, AZ · Hybrid
$108K - $128K/yr
Help onboarding to the DevSecOps environment and support developers across the bank. Oversee projects that adhere to continuous delivery practices with automated unit testing, integration testing ...
Software Engineer DevSecOps, AVP
Tempe, AZ · On-site
$108K - $128K/yr
Help onboarding to the DevSecOps environment and support developers across the bank. Oversee projects that adhere to continuous delivery practices with automated unit testing, integration testing ...
Software Engineer DevSecOps, AVP
Tempe, AZ · On-site
$108K - $128K/yr
Help onboarding to the DevSecOps environment and support developers across the bank. Oversee projects that adhere to continuous delivery practices with automated unit testing, integration testing ...
The ideal candidate will bring deep expertise in Enterprise CI/CD and DevSecOps platforms, including software delivery automation, software supply chain security, and automated quality assurance ...
The ideal candidate will bring deep expertise in Enterprise CI/CD and DevSecOps platforms, including software delivery automation, software supply chain security, and automated quality assurance ...
Senior Cloud DevSecOps Engineer
Chandler, AZ · Remote
$102K - $141K/yr
As a Senior Cloud DevSecOps Engineer, you will independently design, develop, test, and maintain cloud-based software applications and deployment infrastructure supporting mission-critical systems.
Senior Cloud DevSecOps Engineer
Chandler, AZ · Remote
$102K - $141K/yr
As a Senior Cloud DevSecOps Engineer, you will independently design, develop, test, and maintain cloud-based software applications and deployment infrastructure supporting mission-critical systems.
Software Engineer Principal Sr. - Javascript, GO, CI/CD, DevSecOps
Phoenix, AZ · On-site
$134K - $179K/yr
This role supports a Security Innovation team working across the DevSecOps organization to help prevent, detect, and remediate credential exposure across enterprise source code. You will own the ...
Software Engineer Principal Sr. - Javascript, GO, CI/CD, DevSecOps
Phoenix, AZ · On-site
$134K - $179K/yr
This role supports a Security Innovation team working across the DevSecOps organization to help prevent, detect, and remediate credential exposure across enterprise source code. You will own the ...
Role Overview Serve as a Scrum Master and Technical Project Manager supporting enterprise DevSecOps initiatives by coordinating cross‑functional delivery teams, managing Agile execution, and ...
Quick apply
Role Overview Serve as a Scrum Master and Technical Project Manager supporting enterprise DevSecOps initiatives by coordinating cross‑functional delivery teams, managing Agile execution, and ...
Be Seen First
Applied AI Engineer
Chandler, AZ · On-site
$60 - $95/hr
As an Applied AI Engineer, you will design and implement AI-assisted automation to improve software development workflows within an established DevSecOps and software factory environment. This role ...
Quick apply
Be Seen First
Applied AI Engineer
Chandler, AZ · On-site
$60 - $95/hr
As an Applied AI Engineer, you will design and implement AI-assisted automation to improve software development workflows within an established DevSecOps and software factory environment. This role ...
Implement DevSecOps practices and automation standards. Troubleshoot build, deployment, and release issues. Support software version upgrades, migrations, and tool integrations. Develop automation ...
Implement DevSecOps practices and automation standards. Troubleshoot build, deployment, and release issues. Support software version upgrades, migrations, and tool integrations. Develop automation ...
Implement DevSecOps practices and automation standards. Troubleshoot build, deployment, and release issues. Support software version upgrades, migrations, and tool integrations. Develop automation ...
Quick apply
Implement DevSecOps practices and automation standards. Troubleshoot build, deployment, and release issues. Support software version upgrades, migrations, and tool integrations. Develop automation ...
Implement DevSecOps practices and automation standards. Troubleshoot build, deployment, and release issues. Support software version upgrades, migrations, and tool integrations. Develop automation ...
Implement DevSecOps practices and automation standards. Troubleshoot build, deployment, and release issues. Support software version upgrades, migrations, and tool integrations. Develop automation ...
Deloitte's Strategy, Growth, and Transformation practice helps organizations solve complex business challenges, improve performance, and drive large-scale change. As a Senior Consultant - Strategy ...
Deloitte's Strategy, Growth, and Transformation practice helps organizations solve complex business challenges, improve performance, and drive large-scale change. As a Senior Consultant - Strategy ...
Manager of Application & AI Security
$59.25 - $79/hr
Are you ready to pioneer the frontier of AI security while championing modern DevSecOps? At arrivia, we are transforming the travel industry, and we need a visionary leader to ensure our innovation ...
Manager of Application & AI Security
$59.25 - $79/hr
Are you ready to pioneer the frontier of AI security while championing modern DevSecOps? At arrivia, we are transforming the travel industry, and we need a visionary leader to ensure our innovation ...
Manager of Application & AI Security
Scottsdale, AZ · On-site
$59.25 - $79/hr
Are you ready to pioneer the frontier of AI security while championing modern DevSecOps? At arrivia, we are transforming the travel industry, and we need a visionary leader to ensure our innovation ...
Manager of Application & AI Security
Scottsdale, AZ · On-site
$59.25 - $79/hr
Are you ready to pioneer the frontier of AI security while championing modern DevSecOps? At arrivia, we are transforming the travel industry, and we need a visionary leader to ensure our innovation ...
Senior DevOps Engineer
Phoenix, AZ · On-site
$129K - $165K/yr
Experience with DevSecOps practices and technology governance is a strong plus
New
Senior DevOps Engineer
Phoenix, AZ · On-site
$129K - $165K/yr
Experience with DevSecOps practices and technology governance is a strong plus
New
Quality Assurance Lead
Chandler, AZ · Remote
... of Quality Engineers and DevSecOps engineers to run a suite of automated tools in support of Quality and Secure Software Development, in compliance with SAP Software Development Standards ...
Quick apply
Quality Assurance Lead
Chandler, AZ · Remote
... of Quality Engineers and DevSecOps engineers to run a suite of automated tools in support of Quality and Secure Software Development, in compliance with SAP Software Development Standards ...
Principal Engineer II - DevOps Development Architecture
$52.50 - $71.75/hr
This role has a strong focus on secure development practices (DevSecOps) while supporting the full breadth of the software development lifecycle. As a Principal Engineer II for this domain, this role ...
Principal Engineer II - DevOps Development Architecture
$52.50 - $71.75/hr
This role has a strong focus on secure development practices (DevSecOps) while supporting the full breadth of the software development lifecycle. As a Principal Engineer II for this domain, this role ...
Principal Engineer II - DevOps Development Architecture
Phoenix, AZ · On-site
$52.50 - $71.75/hr
This role has a strong focus on secure development practices (DevSecOps) while supporting the full breadth of the software development lifecycle. As a Principal Engineer II for this domain, this role ...
Principal Engineer II - DevOps Development Architecture
Phoenix, AZ · On-site
$52.50 - $71.75/hr
This role has a strong focus on secure development practices (DevSecOps) while supporting the full breadth of the software development lifecycle. As a Principal Engineer II for this domain, this role ...
Site Reliability Architect
Phoenix, AZ · On-site
$56.50 - $75.25/hr
DevSecOps, Release Engineering & Automation (Skill 2) Design and operate end-to-end CI/CD pipelines using Harness/GitHub Actions/Azure DevOps/GitLab CI/CD Jenkins etc Implement policy-as-code, SBOM ...
Site Reliability Architect
Phoenix, AZ · On-site
$56.50 - $75.25/hr
DevSecOps, Release Engineering & Automation (Skill 2) Design and operate end-to-end CI/CD pipelines using Harness/GitHub Actions/Azure DevOps/GitLab CI/CD Jenkins etc Implement policy-as-code, SBOM ...
Strategic Account Manager
Phoenix, AZ · On-site +1
$280K - $330K/yr
This role is built for a seller with a proven track record selling to Developer/DevSecOps or Cybersecurity buyers; someone who thrives in complex, consultative sales cycles and can point to real ...
Strategic Account Manager
Phoenix, AZ · On-site +1
$280K - $330K/yr
This role is built for a seller with a proven track record selling to Developer/DevSecOps or Cybersecurity buyers; someone who thrives in complex, consultative sales cycles and can point to real ...
Devsecops information
See Phoenix, AZ salary details
$29.6K - $37.2K
4% of jobs
$37.2K - $44.7K
4% of jobs
$44.7K - $52.2K
2% of jobs
$52.2K - $59.8K
8% of jobs
$62.4K is the 25th percentile. Wages below this are outliers.
$59.8K - $67.3K
18% of jobs
The median wage is $72.5K / yr.
$67.3K - $74.9K
20% of jobs
$74.9K - $82.4K
13% of jobs
$85.6K is the 75th percentile. Wages above this are outliers.
$82.4K - $89.9K
15% of jobs
$89.9K - $97.5K
8% of jobs
$97.5K - $105K
4% of jobs
$105K - $112.5K
4% of jobs
$29.6K
$75.1K
$112.5K
How much do devsecops jobs pay per year?
What jobs in the US pay 300,000 a year?
Is DevSecOps a good career?
Will DevSecOps be replaced by AI?
What engineer makes $500,000 a year?
What is a DevSecOps job?
A DevSecOps job focuses on integrating security into the software development and operations process. Professionals in this role work to automate security measures, ensure compliance, and identify vulnerabilities throughout the development lifecycle. They collaborate with development, operations, and security teams to embed security best practices into CI/CD pipelines. The goal is to create secure software efficiently without slowing down development and deployment.
What are the key skills and qualifications needed to thrive in the Devsecops position, and why are they important?
To thrive as a DevSecOps professional, you need expertise in secure software development, CI/CD pipelines, cloud infrastructure, automation, and strong knowledge of cybersecurity principles, often supported by a degree in computer science or a related field. Familiarity with tools such as Jenkins, Docker, Kubernetes, Terraform, and security certifications like CISSP or AWS Certified Security are typically required. Strong problem-solving abilities, effective communication, and a collaborative mindset are valuable soft skills. These are essential to ensuring security is integrated throughout the development lifecycle while enabling efficient deployment and cross-team collaboration.
What are some common challenges DevSecOps professionals face on the job?
DevSecOps professionals often navigate the challenge of balancing rapid development cycles with the need for robust security, which requires both technical adaptability and continuous vigilance. They may encounter resistance to adopting new security practices within development teams, making communication and advocacy skills crucial. Additionally, staying updated with evolving security threats and ensuring compliance with industry standards can be demanding. These challenges offer opportunities to make a significant impact on organizational security and to develop expertise in both security and automation, leading to diverse career advancement possibilities.

Deloitte rating
8.1
Based on 91 frontline employees who took The Breakroom Quiz
58th of 150 rated financial services
Job description
Cloud Security - DevSecOps Manager
Position Summary
Are you interested in working in a dynamic environment that offers opportunities for professional growth and new responsibilities? If so, Deloitte & Touche LLP could be the place for you. Traditional security programs have often been unsuccessful in unifying the need to both secure and support technology innovation required by the business. Join Deloitte's Cloud Cyber Services team and become a member of the largest group of cybersecurity professionals worldwide.
Recruiting for this role will end on 12/31/2026
Work you'll do
As a DevSecOps Security(Manager), you will lead client engagements that define, operationalize, and scale secure-by-design software delivery in cloud-agnostic environments. Responsibilities include:
- Lead delivery of DevSecOps / Secure SDLC programs as a project manager and/or architect, overseeing onsite/offshore teams across governance, identity, application security, platform/infrastructure security, monitoring, resilience, and data protection.
- Design and implement Secure by Design / security engagement intake workflows that streamline how engineering teams initiate governance/security processes (e.g., rationalizing questionnaires, automating routing/approvals, reducing cycle time).
- Build or tailor controls frameworks and control mappings (e.g., aligned to NIST 800-53 and enterprise policies/standards) and translate them into actionable engineering requirements and measurable outcomes.
- Conduct DevSecOps current-state assessments (people/process/technology), facilitate leading-practices workshops, and produce multi-year roadmaps with sequenced initiatives, resourcing, and cost estimates.
- Define DevSecOps operating model options (team structure, service catalog, intake, RACI, governance forums) and drive executive decision-making on the target approach.
- Embed security into CI/CD and SDLC workflows (requirements, design, build, test, deploy, operate) including security controls, evidence capture, and release/go-live governance.
- Advance software supply chain security (e.g., dependency risk, artifact integrity, code signing, PKI/HSM considerations) and guide implementation patterns appropriate to client context.
- Support container and runtime security assessments and backlog acceleration; help teams prioritize security work without stalling delivery.
- Define metrics, reporting, and dashboards (e.g., delivery throughput, control compliance, intake cycle time, risk burndown, vulnerability trends) to improve transparency and accountability.
- Function as the primary day-to-day client interface, building rapport and driving outcomes across Engineering, Security, Risk/Compliance, and Operations.
- Assist in business development (scope, estimates, pricing, proposals) and contribute to eminence (POVs/whitepapers) and internal enablement
The team
Deloitte's Cyber Cloud team helps complex organizations more confidently pursue their growth, innovation and performance agendas through proactive management of the associated cyber risks. Our professionals provide advisory and implementation services that integrate risk, regulatory, and technology skills to help clients transform their legacy programs into proactive Secure.Vigilant.Resilient.TM cyber risk programs. Join the team developing the future state of cyber risk solutions.
Required:
- 6+ years of experience in technical consulting, client problem solving, and delivery leadership.
- 2+ years designing or leading DevSecOps / Secure SDLC programs (assessment, roadmap, operating model, and implementation oversight).
- Experience translating policy/standards into engineering-ready controls and workflows; familiarity with security control frameworks (e.g., NIST CSF and/or NIST 800-53).
- Experience with automation/workflow platforms (e.g., ServiceNow or similar) to support security intake, governance, and evidence collection.
- Experience with application security and modern engineering ecosystems (CI/CD concepts, containers, SDLC tooling).
- BA/BS degree preferably in a technical field.
- Ability to travel up to 80%, on average, based on the work you do and the clients and industries/sectors you serve
- Locations include: Houston, Dallas, Cleveland, Detroit, St. Louis, Pittsburgh, Boston, Charlotte, Atlanta, Miami, Memphis, Denver, Phoenix, Salt Lake City, Los Angeles, San Diego, San Franciso, Seattle. Must be within a reasonable commute and willing to work part-time in the Deloitte and/or client offices.
Preferred:
- Previous consulting or Big 4 experience.
- Certifications (e.g., CCSP or comparable); familiarity with industry maturity models (e.g., OWASP SAMM, BSIMM) and/or supply chain frameworks (e.g., SLSA).
- Experience with code signing/PKI concepts and security tooling ecosystems; experience with dashboarding/analytics (e.g., Power BI) a plus.
- Understanding of regulatory/compliance requirements (e.g., ISO 27001/27017, SOC 2, PCI, HIPAA, SOX, GLBA, NIST 800-53).
'Information for applicants with a need for accommodation: https://www2.deloitte.com/us/en/pages/careers/articles/join-deloitte-assistance-for-disabled-applicants.html
The wage range for this role takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. At Deloitte, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is $134,500 to $265,100.
You may also be eligible to participate in a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various factors, including, without limitation, individual and organizational performance.
#CyberES27
Cloud Security - DevSecOps Manager
Position Summary
Are you interested in working in a dynamic environment that offers opportunities for professional growth and new responsibilities? If so, Deloitte & Touche LLP could be the place for you. Traditional security programs have often been unsuccessful in unifying the need to both secure and support technology innovation required by the business. Join Deloitte's Cloud Cyber Services team and become a member of the largest group of cybersecurity professionals worldwide.
Recruiting for this role will end on 12/31/2026
Work you'll do
As a DevSecOps Security(Manager), you will lead client engagements that define, operationalize, and scale secure-by-design software delivery in cloud-agnostic environments. Responsibilities include:
- Lead delivery of DevSecOps / Secure SDLC programs as a project manager and/or architect, overseeing onsite/offshore teams across governance, identity, application security, platform/infrastructure security, monitoring, resilience, and data protection.
- Design and implement Secure by Design / security engagement intake workflows that streamline how engineering teams initiate governance/security processes (e.g., rationalizing questionnaires, automating routing/approvals, reducing cycle time).
- Build or tailor controls frameworks and control mappings (e.g., aligned to NIST 800-53 and enterprise policies/standards) and translate them into actionable engineering requirements and measurable outcomes.
- Conduct DevSecOps current-state assessments (people/process/technology), facilitate leading-practices workshops, and produce multi-year roadmaps with sequenced initiatives, resourcing, and cost estimates.
- Define DevSecOps operating model options (team structure, service catalog, intake, RACI, governance forums) and drive executive decision-making on the target approach.
- Embed security into CI/CD and SDLC workflows (requirements, design, build, test, deploy, operate) including security controls, evidence capture, and release/go-live governance.
- Advance software supply chain security (e.g., dependency risk, artifact integrity, code signing, PKI/HSM considerations) and guide implementation patterns appropriate to client context.
- Support container and runtime security assessments and backlog acceleration; help teams prioritize security work without stalling delivery.
- Define metrics, reporting, and dashboards (e.g., delivery throughput, control compliance, intake cycle time, risk burndown, vulnerability trends) to improve transparency and accountability.
- Function as the primary day-to-day client interface, building rapport and driving outcomes across Engineering, Security, Risk/Compliance, and Operations.
- Assist in business development (scope, estimates, pricing, proposals) and contribute to eminence (POVs/whitepapers) and internal enablement
The team
Deloitte's Cyber Cloud team helps complex organizations more confidently pursue their growth, innovation and performance agendas through proactive management of the associated cyber risks. Our professionals provide advisory and implementation services that integrate risk, regulatory, and technology skills to help clients transform their legacy programs into proactive Secure.Vigilant.Resilient.TM cyber risk programs. Join the team developing the future state of cyber risk solutions.
Required:
- 6+ years of experience in technical consulting, client problem solving, and delivery leadership.
- 2+ years designing or leading DevSecOps / Secure SDLC programs (assessment, roadmap, operating model, and implementation oversight).
- Experience translating policy/standards into engineering-ready controls and workflows; familiarity with security control frameworks (e.g., NIST CSF and/or NIST 800-53).
- Experience with automation/workflow platforms (e.g., ServiceNow or similar) to support security intake, governance, and evidence collection.
- Experience with application security and modern engineering ecosystems (CI/CD concepts, containers, SDLC tooling).
- BA/BS degree preferably in a technical field.
- Ability to travel up to 80%, on average, based on the work you do and the clients and industries/sectors you serve
- Locations include: Houston, Dallas, Cleveland, Detroit, St. Louis, Pittsburgh, Boston, Charlotte, Atlanta, Miami, Memphis, Denver, Phoenix, Salt Lake City, Los Angeles, San Diego, San Franciso, Seattle. Must be within a reasonable commute and willing to work part-time in the Deloitte and/or client offices.
Preferred:
- Previous consulting or Big 4 experience.
- Certifications (e.g., CCSP or comparable); familiarity with industry maturity models (e.g., OWASP SAMM, BSIMM) and/or supply chain frameworks (e.g., SLSA).
- Experience with code signing/PKI concepts and security tooling ecosystems; experience with dashboarding/analytics (e.g., Power BI) a plus.
- Understanding of regulatory/compliance requirements (e.g., ISO 27001/27017, SOC 2, PCI, HIPAA, SOX, GLBA, NIST 800-53).
'Information for applicants with a need for accommodation: https://www2.deloitte.com/us/en/pages/careers/articles/join-deloitte-assistance-for-disabled-applicants.html
The wage range for this role takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. At Deloitte, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is $134,500 to $265,100.
You may also be eligible to participate in a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various factors, including, without limitation, individual and organizational performance.
#CyberES27