This role involves leading the DevSecOps team, owning security tooling, and ensuring the security of code, infrastructure, and cloud workloads throughout CI/CD pipelines. Responsibilities : • ...
This role involves leading the DevSecOps team, owning security tooling, and ensuring the security of code, infrastructure, and cloud workloads throughout CI/CD pipelines. Responsibilities : • ...
Design, implement, and maintain secure DevSecOps pipelines using GitHub and Jenkins/CloudBees ... Manage networking and security configurations across VPCs, IAM roles/policies, and security groups.
Design, implement, and maintain secure DevSecOps pipelines using GitHub and Jenkins/CloudBees ... Manage networking and security configurations across VPCs, IAM roles/policies, and security groups.
Product Security Engineer
$47 - $52/hr
Integrate security controls into DevSecOps pipelines including SCA, SAST, secrets scanning, and release gating. * Develop and maintain required documentation for regulatory submissions. Required ...
Product Security Engineer
$47 - $52/hr
Integrate security controls into DevSecOps pipelines including SCA, SAST, secrets scanning, and release gating. * Develop and maintain required documentation for regulatory submissions. Required ...
AWS Information Security Architect
Reston, VA · On-site
$67.50 - $87.50/hr
Application security, Threat Modelling, API Security, DevSecOps, Pipeline security, Infrastructure security, AuthN/Z, Encryption, Key Management, Data discovery and encryption, SIEM, CSPM, CWPP ...
AWS Information Security Architect
Reston, VA · On-site
$67.50 - $87.50/hr
Application security, Threat Modelling, API Security, DevSecOps, Pipeline security, Infrastructure security, AuthN/Z, Encryption, Key Management, Data discovery and encryption, SIEM, CSPM, CWPP ...
DevSecOps Engineer
Hawthorne, CA · On-site
They are seeking a DevSecOps Engineer to embed security into every layer of the software development and infrastructure delivery lifecycle, focusing on CI/CD pipeline security, automation of ...
DevSecOps Engineer
Hawthorne, CA · On-site
They are seeking a DevSecOps Engineer to embed security into every layer of the software development and infrastructure delivery lifecycle, focusing on CI/CD pipeline security, automation of ...
Senior Artifact Scanning & Policy Engineer
$122.10K - $167.50K/yr
... pipeline security controls within classified or federal multi-enclave environments. • Demonstrated hands-on experience with vulnerability-scanning and pipeline-security tools-including Kubernetes ...
New
Senior Artifact Scanning & Policy Engineer
$122.10K - $167.50K/yr
... pipeline security controls within classified or federal multi-enclave environments. • Demonstrated hands-on experience with vulnerability-scanning and pipeline-security tools-including Kubernetes ...
New
Member of Technical Staff (Offensive Security Engineer)
New York, NY · On-site +1
$220K - $405K/yr
Contribute to the security of CI/CD pipelines, supply chain integrity, and secrets management ... through offensive assessment * Stay current on emerging attack techniques, vulnerability research ...
Member of Technical Staff (Offensive Security Engineer)
New York, NY · On-site +1
$220K - $405K/yr
Contribute to the security of CI/CD pipelines, supply chain integrity, and secrets management ... through offensive assessment * Stay current on emerging attack techniques, vulnerability research ...
Product Security Engineer
$47 - $52/hr
Integrate security controls into DevSecOps pipelines including SCA, SAST, secrets scanning, and release gating. * Develop and maintain required documentation for regulatory submissions. Required ...
Product Security Engineer
$47 - $52/hr
Integrate security controls into DevSecOps pipelines including SCA, SAST, secrets scanning, and release gating. * Develop and maintain required documentation for regulatory submissions. Required ...
Application Security Penetration Tester
Fort Mill, SC · On-site
$51.75 - $69/hr
Automate security scans and integrate them into CI/CD pipelines (Jenkins, GitHub Actions, etc.). * Enhance threat modeling and improve asset management processes. * Maintain dashboards and provide ...
Application Security Penetration Tester
Fort Mill, SC · On-site
$51.75 - $69/hr
Automate security scans and integrate them into CI/CD pipelines (Jenkins, GitHub Actions, etc.). * Enhance threat modeling and improve asset management processes. * Maintain dashboards and provide ...
Responsibilities : • Define and execute enterprise DevSecOps strategy across all development teams • Integrate security controls into CI/CD pipelines (build, test, release) • Establish "shift ...
Responsibilities : • Define and execute enterprise DevSecOps strategy across all development teams • Integrate security controls into CI/CD pipelines (build, test, release) • Establish "shift ...
AWS Information Security Architect
Reston, VA · On-site
$67.50 - $87.50/hr
Application security, Threat Modelling, API Security, DevSecOps, Pipeline security, Infrastructure security, AuthN/Z, Encryption, Key Management, Data discovery and encryption, SIEM, CSPM, CWPP ...
Quick apply
AWS Information Security Architect
Reston, VA · On-site
$67.50 - $87.50/hr
Application security, Threat Modelling, API Security, DevSecOps, Pipeline security, Infrastructure security, AuthN/Z, Encryption, Key Management, Data discovery and encryption, SIEM, CSPM, CWPP ...
Senior DevOps Engineer
Houston, TX · On-site
$112.60K - $144.70K/yr
Ensure cloud security and compliance through Vault/AWS Secrets Manager, pipeline security, vulnerability scanning (SAST/DAST), secret management, and IAM policy automation. * Establish robust Git ...
Quick apply
Senior DevOps Engineer
Houston, TX · On-site
$112.60K - $144.70K/yr
Ensure cloud security and compliance through Vault/AWS Secrets Manager, pipeline security, vulnerability scanning (SAST/DAST), secret management, and IAM policy automation. * Establish robust Git ...
Senior Artifact Scanning & Policy Engineer
$118K - $161.80K/yr
Demonstrated hands-on experience with vulnerability-scanning and pipeline-security tools--including Kubernetes, GitLab CI, SonarQube, and Tenable Nessus--with a proven ability to develop rule sets ...
New
Senior Artifact Scanning & Policy Engineer
$118K - $161.80K/yr
Demonstrated hands-on experience with vulnerability-scanning and pipeline-security tools--including Kubernetes, GitLab CI, SonarQube, and Tenable Nessus--with a proven ability to develop rule sets ...
New
Senior Artifact Scanning & Policy Engineer
Falls Church, VA · On-site
$122.10K - $167.50K/yr
... pipeline security controls within classified or federal multi-enclave environments. • Demonstrated hands-on experience with vulnerability-scanning and pipeline-security tools-including Kubernetes ...
New
Senior Artifact Scanning & Policy Engineer
Falls Church, VA · On-site
$122.10K - $167.50K/yr
... pipeline security controls within classified or federal multi-enclave environments. • Demonstrated hands-on experience with vulnerability-scanning and pipeline-security tools-including Kubernetes ...
New
Director of Software Security
San Jose, CA · On-site
$164.50K - $305.50K/yr
Integrate security controls into CI/CD pipelines (build, test, release) * Establish "shift-left" security practices across the SDLC * Drive adoption of secure coding, SAST, DAST, and SCA tools Secure ...
Director of Software Security
San Jose, CA · On-site
$164.50K - $305.50K/yr
Integrate security controls into CI/CD pipelines (build, test, release) * Establish "shift-left" security practices across the SDLC * Drive adoption of secure coding, SAST, DAST, and SCA tools Secure ...
Sr DevOps Engineer
Chicago, IL · On-site
$134K - $172.20K/yr
Ensure cloud security and compliance through Vault/AWS Secrets Manager, pipeline security, vulnerability scanning (SAST/DAST), secret management, and IAM policy automation. * Establish robust Git ...
Quick apply
Sr DevOps Engineer
Chicago, IL · On-site
$134K - $172.20K/yr
Ensure cloud security and compliance through Vault/AWS Secrets Manager, pipeline security, vulnerability scanning (SAST/DAST), secret management, and IAM policy automation. * Establish robust Git ...
Senior DevOps Engineer
Houston, TX · Hybrid
$124.10K - $159.50K/yr
Ensure cloud security and compliance through Vault/AWS Secrets Manager, pipeline security, vulnerability scanning (SAST/DAST), secret management, and IAM policy automation. * Establish robust Git ...
Senior DevOps Engineer
Houston, TX · Hybrid
$124.10K - $159.50K/yr
Ensure cloud security and compliance through Vault/AWS Secrets Manager, pipeline security, vulnerability scanning (SAST/DAST), secret management, and IAM policy automation. * Establish robust Git ...
Director of Software Security
$164.50K - $305.50K/yr
Integrate security controls into CI/CD pipelines (build, test, release) * Establish "shift-left" security practices across the SDLC * Drive adoption of secure coding, SAST, DAST, and SCA tools Secure ...
Director of Software Security
$164.50K - $305.50K/yr
Integrate security controls into CI/CD pipelines (build, test, release) * Establish "shift-left" security practices across the SDLC * Drive adoption of secure coding, SAST, DAST, and SCA tools Secure ...
Sr DevOps Engineer
Chicago, IL · Hybrid
$134K - $172.20K/yr
Ensure cloud security and compliance through Vault/AWS Secrets Manager, pipeline security, vulnerability scanning (SAST/DAST), secret management, and IAM policy automation. * Establish robust Git ...
Sr DevOps Engineer
Chicago, IL · Hybrid
$134K - $172.20K/yr
Ensure cloud security and compliance through Vault/AWS Secrets Manager, pipeline security, vulnerability scanning (SAST/DAST), secret management, and IAM policy automation. * Establish robust Git ...
The role also supports the security review of AI/ML-enabled systems, CI/CD pipelines, and cloud-based environments while contributing to cybersecurity exercises and readiness activities.
The role also supports the security review of AI/ML-enabled systems, CI/CD pipelines, and cloud-based environments while contributing to cybersecurity exercises and readiness activities.
Pipeline Security information
See salary details
$16.83 - $18.14
5% of jobs
$18.14 - $19.45
2% of jobs
$20.67 is the 25th percentile. Wages below this are outliers.
$19.45 - $20.76
19% of jobs
$20.76 - $22.07
4% of jobs
$22.07 - $23.38
2% of jobs
$23.38 - $24.69
11% of jobs
The median wage is $25.64 / hr.
$24.69 - $26.01
9% of jobs
$26.01 - $27.32
11% of jobs
$28.14 is the 75th percentile. Wages above this are outliers.
$27.32 - $28.63
19% of jobs
$28.63 - $29.94
13% of jobs
$29.94 - $31.25
5% of jobs
$16
$25
$31
How much do pipeline security jobs pay per hour?
What is a Pipeline Security job?
What are the key skills and qualifications needed to thrive in the Pipeline Security position, and why are they important?
What are some typical challenges faced by professionals working in Pipeline Security?
Job description
Allegiant is a national air carrier seeking a Principal Engineer for their DevSecOps program. This role involves leading the DevSecOps team, owning security tooling, and ensuring the security of code, infrastructure, and cloud workloads throughout CI/CD pipelines.
Responsibilities:
• Proven and demonstrable ability to lead at least two other team members in an official capacity towards specific DevSecOps outcomes.
• Lead the DevSecOps team (two engineers) in daily execution, weekly syncs, and PI planning. Ensure stories are accurate, scoped, and deliverable.
• Own and drive the DevSecOps roadmap across pipeline security, IaC policy enforcement, application security tooling, and cloud security posture management.
• Embedding threat modeling into pipelines and workflows to provide real-time analysis of architectural changes in products.
• Architect and maintain security gates in GitHub Actions CI/CD pipelines. Define when and how scans run, what blocks a merge, and how results route to developers.
• Administer GitHub Advanced Security across the organization: CodeQL query suites, secret scanning policies, Dependabot configuration, and developer-facing campaign management.
• Author and deploy Checkov custom policies for Terraform IaC scanning. Drive golden policy adoption from current 25% pipeline coverage toward 75%+ with hard-fail enforcement.
• Operate and configure Palo Alto Prisma or Cortex (CNAPP) for cloud security posture, image scanning, and AppSec integration.
• Manage Terraform-based infrastructure security across multi-account AWS environments using Control Tower, IAM, VPC, and Transit Gateway.
• Integrate security tooling outputs into SIEM and SOAR for alerting, triage, and response workflows.
• Mentor two mid-level engineers. Identify skills gaps, provide hands-on training, and review their work.
• Collaborate with Security Governance to produce compliance evidence for PCI-DSS, NIST, and CIS controls derived from DevSecOps tooling.
• Support acquisition security assessments by evaluating incoming technology stacks against Allegiant's IaC and pipeline security standards.
• Define and enforce security governance for agentic AI tooling, including MCP server registries, gateway configurations, and trust policies for AI-to-tool interactions.
• Document architecture decisions, policy rationale, and runbooks. Maintain documentation quality standards across the DevSecOps team.
• Participate in SAFe Agile planning. Maintain strong Jira hygiene. Assist security leadership in backlog prioritization and capacity negotiation with product owners.
• Provide technical leadership to the DevSecOps team daily and during PI planning.
• Lead the DevSecOps team in weekly syncs to track program progress, remove blockers, and adjust priorities.
• Advises the IT organization towards adoption of standards and influences security security culture—setting the tone and expectations for secure SDLC.
• Own GitHub Advanced Security administration: manage CodeQL query suites, configure secret scanning policies, tune Dependabot alerts, and run developer adoption campaigns.
• Build, maintain, and enforce security scanning stages in GitHub Actions pipelines across the organization.
• Author custom Checkov policies for Terraform IaC. Drive golden policy deployment across all pipelines toward hard-fail enforcement.
• Operate and configure Cortex Cloud (CNAPP) for cloud workload protection, image scanning, and application security posture.
• Manage Terraform-based security infrastructure across multi-account AWS environments (Control Tower, IAM, VPC, Transit Gateway).
• Integrate DevSecOps tooling outputs into SIEM and Cortex XSOAR (SOAR) for detection, alerting, and automated response.
• Collaborate with Security Governance to generate and validate compliance evidence from automated tooling for PCI-DSS, NIST, and CIS.
• Evaluate incoming technology stacks from acquisitions against Allegiant's pipeline and IaC security standards.
• Document architecture decisions, security policies, and operational runbooks. Maintain team documentation standards.
• Identify skills gaps on the DevSecOps team. Provide training, pair on complex work, and review output from junior and mid-level engineers.
• Work with DevOps and Full Stack Engineering to ensure security gates are adopted, not circumvented. Measure and report on developer adoption.
• Maintain SAFe Agile practices. Keep Jira hygiene current. Assist security leadership with story sizing, capacity planning, and backlog negotiation.
• Promote awareness of DevSecOps program objectives during PI planning and cross-team syncs.
• Recommend and implement efficiencies for security alerting, triage workflows, and operational intake.
• Define and maintain security controls for agentic AI tooling: MCP trusted server registries, gateway configurations, tool-use authorization policies, and usage standards.
• Troubleshoot and resolve escalated security tooling issues across pipelines, cloud infrastructure, and application scanning.
• Support the security manager in long-range planning, roadmap development, and team growth strategy.
• Other duties as assigned.
Qualifications:
Required:
• Proven and demonstrable ability to lead at least two other team members in an official capacity towards specific DevSecOps outcomes.
• Lead the DevSecOps team (two engineers) in daily execution, weekly syncs, and PI planning. Ensure stories are accurate, scoped, and deliverable.
• Own and drive the DevSecOps roadmap across pipeline security, IaC policy enforcement, application security tooling, and cloud security posture management.
• Embedding threat modeling into pipelines and workflows to provide real-time analysis of architectural changes in products.
• Architect and maintain security gates in GitHub Actions CI/CD pipelines. Define when and how scans run, what blocks a merge, and how results route to developers.
• Administer GitHub Advanced Security across the organization: CodeQL query suites, secret scanning policies, Dependabot configuration, and developer-facing campaign management.
• Author and deploy Checkov custom policies for Terraform IaC scanning. Drive golden policy adoption from current 25% pipeline coverage toward 75%+ with hard-fail enforcement.
• Operate and configure Palo Alto Prisma or Cortex (CNAPP) for cloud security posture, image scanning, and AppSec integration.
• Manage Terraform-based infrastructure security across multi-account AWS environments using Control Tower, IAM, VPC, and Transit Gateway.
• Integrate security tooling outputs into SIEM and SOAR for alerting, triage, and response workflows.
• Mentor two mid-level engineers. Identify skills gaps, provide hands-on training, and review their work.
• Collaborate with Security Governance to produce compliance evidence for PCI-DSS, NIST, and CIS controls derived from DevSecOps tooling.
• Support acquisition security assessments by evaluating incoming technology stacks against Allegiant's IaC and pipeline security standards.
• Define and enforce security governance for agentic AI tooling, including MCP server registries, gateway configurations, and trust policies for AI-to-tool interactions.
• Document architecture decisions, policy rationale, and runbooks. Maintain documentation quality standards across the DevSecOps team.
• Participate in SAFe Agile planning. Maintain strong Jira hygiene. Assist security leadership in backlog prioritization and capacity negotiation with product owners.
• Combination of Education and Experience will be considered. Must be authorized to work in the US as defined by the Immigration Act of 1986.
• Must pass a Criminal Background Check.
• Education: Bachelor’s Degree or equivalent experience.
• Years of Experience: Minimum eight (8) years experience in information security.
• Minimum eight (8) years supporting / implementing network security platforms & strategies.
Preferred:
• Has production experience across all four domains: application security, pipeline engineering, cloud infrastructure security, and IaC governance. Can demonstrate work in each, not just one or two.
• Has administered GitHub Advanced Security (CodeQL, secret scanning, Dependabot) for an organization with active developer adoption metrics.
• Has authored custom Checkov or equivalent IaC policies that enforced specific compliance or security outcomes in production pipelines.
• Has operated a CNAPP platform (Palo Alto Cortex Cloud, Prisma Cloud, Wiz, or Orca) including onboarding, policy configuration, and integration with engineering workflows.
• Has integrated security scan outputs into a SIEM and SOAR (Cortex XSOAR preferred) platform.
• Has experience with Cloud Custodian or similar cloud governance automation.
• Has gathered compliance evidence from automated tooling for PCI-DSS, NIST, or CIS audits.
• Has led or mentored a small engineering team (2-5 engineers).
• Has hands-on experience securing agentic AI systems: MCP server configuration, AI gateway trust policies, tool-use authorization, or prompt injection controls. Can point to public artifacts (GitHub repos, blog posts, talks, open-source work) demonstrating this experience.
• Can provide references or artifacts demonstrating security tooling adopted by development teams in production.
Company:
Las Vegas-based Allegiant (NASDAQ: ALGT) is focused on linking travelers in small cities to world-class leisure destinations. Founded in 1997, the company is headquartered in Las Vegas, USA, with a team of 1001-5000 employees. The company is currently Late Stage.
About Allegiant Healthcare
Sourced by ZipRecruiter
Industry
Health care and social assistance
Company size
501 - 1,000 Employees
Headquarters location
Mesa, AZ, US