Skip to main content
Tallo logoTallo logo

Senior DevSecOps Engineer (AppSec focus)

Job

Insight Global

Minneapolis, MN (In Person)

Full-Time

Posted 1 day ago (Updated 2 hours ago) • Actively hiring

Expires 6/21/2026

Apply for this opportunity

This job application is on an outside website. Be sure to review the job posting there to verify it's the same.

Review key factors to help you decide if the role fits your goals.
Pay Growth
?
out of 5
Not enough data
Not enough info to score pay or growth
Job Security
?
out of 5
Not enough data
Calculating job security score...
Total Score
79
out of 100
Average of individual scores

Were these scores useful?

Skill Insights

Compare your current skills to what this opportunity needs—we'll show you what you already have and what could strengthen your application.

Job Description

Job Description One of our top financial customers is seeking a Senior DevSecOps Engineer (Application Security Focus) to build and integrate application security solutions across the SDLC. This role is centered around DevSecOps, CI/CD pipeline security, and tool orchestration. As a senior member of the Cyber Engineering Team, you will be responsible for the stand up and integration of SAST/DAST/security tooling, building custom integrations, and creating a centralized, contextualized view of vulnerabilities across tools and environments for the enterprise. The role requires strong ownership in bridging security findings to developer remediation and shaping scalable DevSecOps workflows.
Key responsibilities include:
  • Supporting evaluation and implementation of DAST/Web App security tools (POCs, onboarding)
  • Enhancing security-focused CI/CD pipelines (SAST, DAST, secrets scanning)
  • Building orchestration across tools, pipelines, and environments to improve visibility and prioritization of vulnerabilities
  • Collaborating closely with security and engineering teams to refine workflows and security processes We are a company committed to creating diverse and inclusive environments where people can bring their full, authentic selves to work every day.
We are an equal opportunity/affirmative action employer that believes everyone matters. Qualified candidates will receive consideration for employment regardless of their race, color, ethnicity, religion, sex (including pregnancy), sexual orientation, gender identity and expression, marital status, national origin, ancestry, genetic factors, age, disability, protected veteran status, military or uniformed service member status, or any other status or characteristic protected by applicable laws, regulations, and ordinances. If you need assistance and/or a reasonable accommodation due to a disability during the application or recruiting process, please send a request to HR@insightglobal.com.

To learn more about how we collect, keep, and process your private information, please review
Insight Global's Workforce Privacy Policy:
https://insightglobal.com/workforce-privacy-policy/. Skills and Requirements
  • 7+ years development experience, including 3+ years in Application Security / DevSecOps
  • Strong backend/full stack engineering (non-UI, hands-on builder mindset)
  • Deep experience with CI/CD pipelines and secure SDLC practices
  • Hands-on integration of:
SAST, DAST
/ web app scanning, and Secrets detection
  • Ability to correlate, contextualize, and operationalize vulnerabilities across tools
  • Must have experience with the below technologies listed in the 'Core Tech Stack' section and direct engineering ownership of the key technical responsibilities outlined in the "Engineering + Security Practices" section. Core Tech Stack
  • Languages:
    Python (preferred), TypeScript, Java
  • Cloud & Containers:
    AWS, Kubernetes, Docker (Dockerfile, Docker Compose)
  • IaC:
    Terraform
  • CI/CD & SCM
    GitHub, GitHub Actions, GitHub Workflows, GitOps
APIs:
REST / HTTP
service development
  • Data:
    SQL & NoSQL
  • Focus:
    Pipeline integration, tool orchestration, vulnerability aggregation Engineering + Security Practices
  • Translate security requirements into DevOps implementations
  • Build custom integrations and orchestration layers
  • Experience with testing for resiliency/security
  • Strong debugging/troubleshooting across app + pipeline + security tooling
  • Solid AppSec best practices and cross-team collaboration
  • Experience evaluating/implementing DAST tools (POCs, vendor selection), highly preferred
  • Experience working in a highly regulated environment, finance and government highly preferred.
  • Building end-to-end vulnerability aggregation/reporting platforms
  • Experience in multi-pipeline / complex DevOps environments
  • Experience mentoring engineers or contributing to engineering standards/frameworks

Similar jobs in Minneapolis, MN

Similar jobs in Minnesota