DevOps Security Engineer (Experiences with C#, Java , PHP )

DevOps Security Engineer (Experiences with C#, Java , PHP )

Posted 2 weeks ago by 1752741436

Negotiable
Outside
Remote
USA

Summary: The role of DevOps Security Engineer focuses on enhancing security within CI/CD pipelines and legacy code remediation, requiring strong automation and scripting skills. Candidates should have extensive experience in PHP, JavaScript, and C#, with a solid understanding of cloud-native security, particularly in Azure. The position emphasizes the need for expertise in managing security tooling and infrastructure as code. Local candidates are preferred, but the role is remote.

Key Responsibilities:

  • Secure legacy code remediation and modernization of CI/CD pipelines.
  • Manage GitHub Enterprise Cloud repositories, including migrations and permissions.
  • Build tooling/scripts for automation and integration with APIs.
  • Implement security practices using Azure Key Vault and Managed Identities.
  • Utilize security tooling to triage, automate, and remediate findings.
  • Design and optimize MySQL databases while ensuring security best practices.
  • Maintain and refactor legacy .NET components and contribute to modernization efforts.

Key Skills:

  • Strong automation and scripting skills.
  • Deep experience with PHP, JavaScript, and C#.
  • Proficiency in GitHub Actions and CI/CD tools.
  • Experience with Azure Key Vault and cloud-native security.
  • Familiarity with security tooling such as TruffleHog and Qualys.
  • Knowledge of Infrastructure as Code (IaC) using Terraform or ARM templates.
  • Proficiency in MySQL database design and optimization.

Salary (Rate): undetermined

City: undetermined

Country: USA

Working Arrangements: remote

IR35 Status: outside IR35

Seniority Level: undetermined

Industry: IT

Detailed Description From Employer:

Hi

Please find my direct client job requirement for your consideration.

Title: DevOps Security Engineer (Experiences with C#, Java , PHP )

Locations: Alpharetta, GA

Duration :12 Months

Note: Local Candidates are preferred

DevOps / Platform / Security Engineer with strong automation and scripting skills
Backend developers with deep PHP, JavaScript, and C# experience focused on secure legacy code remediation
Proven track record in securing and modernizing CI/CD pipelines
Skilled in cloud-native security and identity management, especially within Azure

Primary Skills

GitHub Enterprise Cloud
Deep experience managing repos, migrations, permissions, branch protection, CODEOWNERS, CI/CD integration.

CI/CD Pipelines
Strong with GitHub Actions, and possibly Azure DevOps or other pipeline tools depending on what you currently use.

Python
Ability to build tooling/scripts for automation, integration with APIs (Akeyless, Azure Key Vault, GitHub, etc.).

Azure

  • Azure Key Vault (integration, secret rotation, access policies)
  • Managed Identities (design and migration)
  • General Azure platform understanding (RBAC, networking for MI, etc.)

Security Tooling Familiarity with:

  • TruffleHog
  • Dependabot
  • Wiz
  • Qualys
  • io
    Ability to triage, automate, and remediate findings from these tools.

Infrastructure as Code (IaC)
Terraform or ARM templates for automating MI, Key Vault, etc.

PHP & JavaScript (Legacy Code Security)

  • Strong PHP and JavaScript skills, particularly in debugging and refactoring legacy code
  • Experience identifying and resolving security CVEs
  • Ability to work with static code analysis tools and implement secure coding practices
  • Familiarity with PHP upgrade paths (e.g., PHP 7.x to 8.x), legacy frameworks, and browser compatibility issues

C# / .NET (Legacy Code Security & Modernization)

  • Strong C# skills for maintaining and refactoring legacy .NET components
  • Experience remediating security vulnerabilities (e.g., outdated libraries, CVEs)
  • Familiarity with .NET Framework to .NET Core/.NET 6+ migrations
  • Understanding of secure coding practices in enterprise C# environments
  • Ability to contribute to modernization efforts and integrate with CI/CD workflows

MySQL

  • Proficiency in designing, querying, and optimizing MySQL databases.
  • Knowledge of MySQL security best practices (e.g., privilege management, connection encryption).
  • Experience with migrations and upgrades of MySQL databases.

Nice-to-Have Skills

  • PowerShell / Bash scripting
  • js or TypeScript (if used in any tooling or pipelines)
  • Experience archiving / decommissioning GitHub repositories properly
  • Experience managing secrets migration and rotation
  • Azure AD / Identity and Access Management (IAM) for service accounts