Experience with tools such as Syft, Grype, CycloneDX, SPDX, JFrog Xray, Sonatype, Fortify, or Veracode . * Good understanding of CBOM and cryptography inventory, including TLS/HTTPS, certificates ...
Experience with tools such as Syft, Grype, CycloneDX, SPDX, JFrog Xray, Sonatype, Fortify, or Veracode . * Good understanding of CBOM and cryptography inventory, including TLS/HTTPS, certificates ...
AI Development Enablement Lead
Reston, VA · On-site
Exposure to security and compliance requirements such as RMF, STIG, FedRAMP, and SBOM-related tooling (e.g., Syft, Grype). * Understanding of CI/CD workflows (e.g., Jenkins, GitLab, Nexus) and ...
Quick apply
AI Development Enablement Lead
Reston, VA · On-site
Exposure to security and compliance requirements such as RMF, STIG, FedRAMP, and SBOM-related tooling (e.g., Syft, Grype). * Understanding of CI/CD workflows (e.g., Jenkins, GitLab, Nexus) and ...
... as Syft, Grype, CycloneDX, SPDX, JFrog Xray, Sonatype, Fortify, or Veracode. • Good understanding of CBOM and cryptography inventory, including TLS/HTTPS, certificates, keys, cipher suites ...
... as Syft, Grype, CycloneDX, SPDX, JFrog Xray, Sonatype, Fortify, or Veracode. • Good understanding of CBOM and cryptography inventory, including TLS/HTTPS, certificates, keys, cipher suites ...
Bookkeeper
$30 - $34/hr
Tools used (Xero, Excel, Syft) * Financial services or accounting support background * Strong experience with account reconciliation and financial reporting * High attention to detail with risk and ...
Quick apply
Bookkeeper
$30 - $34/hr
Tools used (Xero, Excel, Syft) * Financial services or accounting support background * Strong experience with account reconciliation and financial reporting * High attention to detail with risk and ...
Staff / Sr Staff DevSecOps Engineer
Boulder, CO · On-site
$98K - $146K/yr
Container security tools (e.g., Grype, Syft) * SAST/SCA tools (e.g., Fortify, SonarQube, Snyk, Trivy, ZAP) * AWS (EKS, EC2, Lambda) * Application networking with tools such as Istio, NGINX, or ...
Staff / Sr Staff DevSecOps Engineer
Boulder, CO · On-site
$98K - $146K/yr
Container security tools (e.g., Grype, Syft) * SAST/SCA tools (e.g., Fortify, SonarQube, Snyk, Trivy, ZAP) * AWS (EKS, EC2, Lambda) * Application networking with tools such as Istio, NGINX, or ...
Staff / Sr Staff DevSecOps Engineer
Boulder, CO · On-site
$98K - $146K/yr
Container security tools (e.g., Grype, Syft) * SAST/SCA tools (e.g., Fortify, SonarQube, Snyk, Trivy, ZAP) * AWS (EKS, EC2, Lambda) * Application networking with tools such as Istio, NGINX, or ...
Staff / Sr Staff DevSecOps Engineer
Boulder, CO · On-site
$98K - $146K/yr
Container security tools (e.g., Grype, Syft) * SAST/SCA tools (e.g., Fortify, SonarQube, Snyk, Trivy, ZAP) * AWS (EKS, EC2, Lambda) * Application networking with tools such as Istio, NGINX, or ...
Business Consulting Accounting Manager
Edina, MN · Hybrid
$95K - $130K/yr
Experience with Quickbooks, Syft and/or Martus Solutions preferred * Desire to work in a fast-paced environment * Collaborative spirit and adaptability to change Attracting, developing, and retaining ...
Business Consulting Accounting Manager
Edina, MN · Hybrid
$95K - $130K/yr
Experience with Quickbooks, Syft and/or Martus Solutions preferred * Desire to work in a fast-paced environment * Collaborative spirit and adaptability to change Attracting, developing, and retaining ...
AI Development Enablement Lead
Reston, VA · On-site
Exposure to security and compliance requirements such as RMF, STIG, FedRAMP, and SBOM-related tooling (e.g., Syft, Grype). * Understanding of CI/CD workflows (e.g., Jenkins, GitLab, Nexus) and ...
AI Development Enablement Lead
Reston, VA · On-site
Exposure to security and compliance requirements such as RMF, STIG, FedRAMP, and SBOM-related tooling (e.g., Syft, Grype). * Understanding of CI/CD workflows (e.g., Jenkins, GitLab, Nexus) and ...
AI Development Enablement Lead
Reston, VA · On-site
Exposure to security and compliance requirements such as RMF, STIG, FedRAMP, and SBOM-related tooling (e.g., Syft, Grype). * Understanding of CI/CD workflows (e.g., Jenkins, GitLab, Nexus) and ...
AI Development Enablement Lead
Reston, VA · On-site
Exposure to security and compliance requirements such as RMF, STIG, FedRAMP, and SBOM-related tooling (e.g., Syft, Grype). * Understanding of CI/CD workflows (e.g., Jenkins, GitLab, Nexus) and ...
Staff / Sr Staff DevSecOps Engineer
Boulder, CO · On-site
$98K - $146K/yr
Container security tools (e.g., Grype, Syft) * SAST/SCA tools (e.g., Fortify, SonarQube, Snyk, Trivy, ZAP) * AWS (EKS, EC2, Lambda) * Application networking with tools such as Istio, NGINX, or ...
Quick apply
Staff / Sr Staff DevSecOps Engineer
Boulder, CO · On-site
$98K - $146K/yr
Container security tools (e.g., Grype, Syft) * SAST/SCA tools (e.g., Fortify, SonarQube, Snyk, Trivy, ZAP) * AWS (EKS, EC2, Lambda) * Application networking with tools such as Istio, NGINX, or ...
Experience with tools such as Syft, Grype, CycloneDX, SPDX, JFrog Xray, Sonatype, Fortify, or Veracode . * Good understanding of CBOM and cryptography inventory, including TLS/HTTPS, certificates ...
Experience with tools such as Syft, Grype, CycloneDX, SPDX, JFrog Xray, Sonatype, Fortify, or Veracode . * Good understanding of CBOM and cryptography inventory, including TLS/HTTPS, certificates ...
DevSecOps Engineer
Dayton, OH · On-site
Experience with technologies including Kubernetes, Helm, Docker, Istio, ArgoCD, GitLab, GitLab CI, Nexus, Grype, Syft, OpenSCAP, NeuVector, Grafana, Jira, Confluence, SonarQube, TwistLock, Coder ...
DevSecOps Engineer
Dayton, OH · On-site
Experience with technologies including Kubernetes, Helm, Docker, Istio, ArgoCD, GitLab, GitLab CI, Nexus, Grype, Syft, OpenSCAP, NeuVector, Grafana, Jira, Confluence, SonarQube, TwistLock, Coder ...
Sr. FullStack Engineer
Irving, TX · On-site
... as Syft, Grype, CycloneDX, SPDX, JFrog Xray, Sonatype, Checkmarx, Fortify, or Veracode. • Good understanding of CBOM and cryptography inventory, including TLS/HTTPS, certificates, keys, cipher ...
Sr. FullStack Engineer
Irving, TX · On-site
... as Syft, Grype, CycloneDX, SPDX, JFrog Xray, Sonatype, Checkmarx, Fortify, or Veracode. • Good understanding of CBOM and cryptography inventory, including TLS/HTTPS, certificates, keys, cipher ...
Syft * Grype * CycloneDX * JFrog Xray * Sonatype * Checkmarx * Fortify * Veracode * Similar enterprise security tools * Build AI-assisted remediation workflows using Claude or similar AI coding ...
Quick apply
Syft * Grype * CycloneDX * JFrog Xray * Sonatype * Checkmarx * Fortify * Veracode * Similar enterprise security tools * Build AI-assisted remediation workflows using Claude or similar AI coding ...
Familiarity with image signing and SBOM tooling (Cosign, Sigstore, Syft, or equivalent). * Scripting proficiency in Bash, Python, or PowerShell. * Must be a U.S. Citizen * An active DoD TS/SCI ...
Familiarity with image signing and SBOM tooling (Cosign, Sigstore, Syft, or equivalent). * Scripting proficiency in Bash, Python, or PowerShell. * Must be a U.S. Citizen * An active DoD TS/SCI ...
Software Development Product Owner
Colorado Springs, CO · Hybrid
$145K - $158K/yr
Experience with SecDevOps processes and tools (e.g., Sonarqube, Splunk, Syft, etc.) #LI-Hybrid The grade-based pay range for this job is listed below. Individual salaries within that range are ...
Software Development Product Owner
Colorado Springs, CO · Hybrid
$145K - $158K/yr
Experience with SecDevOps processes and tools (e.g., Sonarqube, Splunk, Syft, etc.) #LI-Hybrid The grade-based pay range for this job is listed below. Individual salaries within that range are ...
Familiarity with image signing and SBOM tooling (Cosign, Sigstore , Syft , or equivalent). * Scripting proficiency in Bash, Python, or PowerShell. * Must be a U.S. Citizen * An active DoD TS/SCI ...
Familiarity with image signing and SBOM tooling (Cosign, Sigstore , Syft , or equivalent). * Scripting proficiency in Bash, Python, or PowerShell. * Must be a U.S. Citizen * An active DoD TS/SCI ...
Staff / Sr Staff DevSecOps Engineer with Security Clearance
Boulder, CO · On-site
$98K - $146K/yr
Container security tools (e.g., Grype, Syft) * SAST/SCA tools (e.g., Fortify, SonarQube, Snyk, Trivy, ZAP) AWS (EKS, EC2, Lambda) Application networking with tools such as Istio, NGINX, or Traefik
Staff / Sr Staff DevSecOps Engineer with Security Clearance
Boulder, CO · On-site
$98K - $146K/yr
Container security tools (e.g., Grype, Syft) * SAST/SCA tools (e.g., Fortify, SonarQube, Snyk, Trivy, ZAP) AWS (EKS, EC2, Lambda) Application networking with tools such as Istio, NGINX, or Traefik
Senior Software Engineer, Security Applications & Tools
Boston, MA · On-site
$191K - $253K/yr
Familiarity with container security concepts, SBOM generation tools (Syft), and vulnerability scanners (Trivy, Grype, Semgrep) * Experience with Terraform and infrastructure-as-code * Experience with ...
Senior Software Engineer, Security Applications & Tools
Boston, MA · On-site
$191K - $253K/yr
Familiarity with container security concepts, SBOM generation tools (Syft), and vulnerability scanners (Trivy, Grype, Semgrep) * Experience with Terraform and infrastructure-as-code * Experience with ...
Experience with SBOM generation tooling (e.g., Syft, CycloneDX, SPDX) and DoD supply chain security requirements * Familiarity with ITAR/EAR technical controls: CUI handling, export-controlled ...
Experience with SBOM generation tooling (e.g., Syft, CycloneDX, SPDX) and DoD supply chain security requirements * Familiarity with ITAR/EAR technical controls: CUI handling, export-controlled ...
Syft information
See salary details
$8.89 - $13.70
16% of jobs
$15.17 is the 25th percentile. Wages below this are outliers.
$13.70 - $18.51
29% of jobs
The median wage is $19.71 / hr.
$18.51 - $23.32
19% of jobs
$27.58 is the 75th percentile. Wages above this are outliers.
$23.32 - $28.13
12% of jobs
$28.13 - $32.93
8% of jobs
$32.93 - $37.74
5% of jobs
$37.74 - $42.55
4% of jobs
$42.55 - $47.36
2% of jobs
$47.36 - $52.16
2% of jobs
$52.16 - $56.97
1% of jobs
$56.97 - $61.78
1% of jobs
$8
$26
$61
How much do syft jobs pay per hour?
What types of shifts and work environments can I expect when working through Syft?
Syft offers a variety of flexible shifts across multiple sectors, including logistics, hospitality, and retail, allowing you to choose assignments that fit your schedule and preferences. You may work in warehouses, hotels, restaurants, or event venues, each with its unique pace and requirements. Team structures can range from small, collaborative groups to larger operational teams, depending on the assignment. Many shifts are fast-paced and may require standing for long periods or handling physical tasks, so adaptability and energy are important. Syft also provides opportunities to gain experience in different industries, which can help broaden your skillset and support future career growth.
What is a Syft job?
A Syft job refers to temporary or flexible work opportunities available through Syft, a digital staffing platform now part of Indeed Flex. It connects job seekers with employers in industries like hospitality, warehousing, and retail. Workers can choose shifts that fit their schedule, gain experience across various roles, and get paid weekly. The platform allows users to apply for jobs easily and track their earnings through the mobile app.
What are the key skills and qualifications needed to thrive in the Syft position, and why are they important?
To thrive as a Syft warehouse operative or temporary staff member, you need strong attention to detail, time management skills, and experience in warehousing or hospitality roles, often with no formal qualifications required. Familiarity with industry-specific tools such as barcode scanners, POS systems, or warehouse management software is often expected. Excellent communication, reliability, and flexibility are key soft skills for adapting to varying shifts and fast-paced environments. These competencies ensure efficient operations, high-quality service, and strong teamwork in dynamic temporary work settings.
Other
Posted 7 days ago
Job description
Senior Full Stack + DevSecOps Platform Engineer Dallas, TX 3 days F2F
We are looking for a hands-on Senior Full Stack + DevSecOps Platform Engineer to help build an internal security automation platform for SBOM/CBOM inventory, vulnerability scanning, and Claude-based auto-remediation.
This is not a traditional full-stack developer role. The right candidate should be able to build applications, design CI/CD pipelines, integrate security scanning tools, understand cryptography inventory, and automate remediation safely.
Key Responsibilities
- Design and build a centralized platform for SBOM and CBOM inventory.
- Scan applications, repositories, containers, dependencies, certificates, keys, crypto algorithms, TLS configurations, and runtime components.
- Integrate SBOM/CBOM and vulnerability scanning into Jenkins/GitLab CI/CD pipelines.
- Identify vulnerable dependencies, CVEs, weak cryptography, expired certificates, insecure TLS versions, hardcoded secrets, and non-compliant libraries.
- Build automation workflows to support remediation using Claude or similar AI coding agents.
- Automate safe fixes such as dependency upgrades, base image updates, configuration changes, and pull request creation.
- Ensure all AI-assisted remediations are validated through build, test, scan, approval, and audit workflows before merge or deployment.
- Build dashboards and reports for application inventory, vulnerability posture, crypto posture, remediation status, and SLA tracking.
- Work closely with application, security, DevOps, and platform teams.
Required Skills
- Strong hands-on experience with Java/Spring Boot.
- Experience with at least one additional language such as Node.js, Python, or Go.
- Experience building REST APIs, microservices, batch jobs, and platform integrations.
- Hands-on experience with Jenkins and/or GitLab CI/CD.
- Strong understanding of SBOM, dependency scanning, transitive dependencies, CVEs, and container image scanning.
- Experience with tools such as Syft, Grype, CycloneDX, SPDX, JFrog Xray, Sonatype, Fortify, or Veracode.
- Good understanding of CBOM and cryptography inventory, including TLS/HTTPS, certificates, keys, cipher suites, encryption algorithms, hashing algorithms, signing algorithms, keystores, truststores, and secrets.
- Ability to identify weak crypto such as MD5, SHA-1, DES/3DES, RC4, RSA-1024, TLS 1.0/TLS 1.1, and disabled certificate validation.
- Hands-on AWS experience with services such as Lambda, API Gateway, S3, DynamoDB, IAM, ECS/EKS, CloudWatch, X-Ray, Secrets Manager, and KMS.
- Experience with observability tools such as Splunk, ELK/Kibana, CloudWatch, and X-Ray.
- Strong troubleshooting skills across application, pipeline, cloud, and security issues.
- The candidate should understand how to use Claude or similar AI tools in a controlled engineering workflow
Preferred Skills
- Experience building internal developer platforms or security automation platforms.
- Experience with vulnerability management and remediation workflows.
- Experience with policy engines such as OPA or custom rule engines.
- Knowledge of post-quantum cryptography readiness and crypto-agility.
- Experience with certificate lifecycle management, secrets management, and cloud security controls.
- Frontend experience with Angular or React for dashboards and reporting.
Minimum Qualifications
- 8+ years of software engineering experience.
- 3+ years of DevOps, DevSecOps, platform engineering, or security automation experience.
- Strong Java/Spring Boot background.
- Hands-on CI/CD and cloud experience.
- Practical experience with security scanning and vulnerability remediation.
- Strong communication skills and ability to work across security, platform, DevOps, and application teams.
Ideal Candidate
The ideal candidate can code, build pipelines, integrate scanners, understand SBOM/CBOM findings, troubleshoot AWS and production issues, and design safe AI-assisted remediation workflows.
About Infovision
Sourced by ZipRecruiter
Industry
It services
Company size
501 - 1,000 Employees
Headquarters location
Richardson, TX, US
Year founded
1995