Coveo Logo

Coveo

DevSecOps Specialist

Reposted 12 Days Ago
Be an Early Applicant
Remote
Hiring Remotely in Canada
Mid level
Remote
Hiring Remotely in Canada
Mid level
Design and operate security automation across CI/CD and cloud infrastructure, embed security into IaC and pipelines, manage secrets and IAM, integrate vulnerability management (SAST/DAST/SCA/container scanning), automate compliance, and partner with engineering to make security tooling developer-friendly.
The summary above was generated by AI
Build security into every deployment, without slowing innovation!

What if security was embedded in every commit, every build, and every release by design? As a DevSecOps Specialist at Coveo, you’ll make that vision real by integrating security seamlessly into our continuous integration and continuous delivery (CI/CD) pipelines and cloud infrastructure.

You’ll transform security from a checkpoint into an accelerator, building automation and self-service tooling that empower developers to ship confidently. If you’re passionate about scaling secure software delivery in the cloud, this is where you’ll have real impact.

As one of our DevSecOps Specialists, you will:
  • Design and maintain security automation across CI/CD pipelines, embedding controls and security gates without slowing delivery.
  • Build and operate infrastructure-as-code (IaC) pipelines with security built in, managing secrets, identity and access management (IAM) policies, and hardened configurations at scale.
  • Integrate and evolve vulnerability management workflows, including static application security testing (SAST), dynamic application security testing (DAST), software composition analysis (SCA), and container scanning.
  • Automate compliance checks and policy enforcement across Amazon Web Services (AWS) environments to ensure continuous alignment with security standards.
  • Design and maintain access management automation to provision, audit, and monitor access to infrastructure and sensitive resources.
  • Partner with engineering and platform teams to make security tooling intuitive, scalable, and developer-friendly, reducing friction across the delivery lifecycle.
Here is what will qualify you for the role:
  • Strong hands-on experience with CI/CD platforms (GitHub Actions, GitLab CI, Jenkins, or similar) and embedding security controls directly into pipelines.
  • Proficiency in Python or other scripting languages to build reliable automation and integrations.
  • Practical experience securing and automating cloud environments (AWS preferred), including compute, storage, networking, and Kubernetes.
  • Deep understanding of DevSecOps toolchains, including container security, secrets management, infrastructure-as-code scanning, dependency analysis, and vulnerability remediation workflows.
What will make you stand out:
  • Advanced experience with Terraform for security-focused infrastructure, including IAM roles, encryption keys, and network controls.
  • Hands-on experience with Kubernetes security, including role-based access control (RBAC), network policies, admission controllers, or image signing.
  • Experience implementing compliance-as-code frameworks such as Open Policy Agent or AWS Config Rules.
  • Relevant certifications such as AWS Security Specialty, Certified Kubernetes Security Specialist (CKS), or similar credentials.

Do you think you can bring this role to life? Send us your application, we want to hear from you!

Join the Coveolife!

We encourage all qualified candidates to apply regardless of, for example, age, gender, disability, gaps in CV, national or ethnic background.

This job description was written by humans, assisted by AI. We may leverage technology in our hiring process to help us see the person behind the resume.

Coveo is committed to providing accessible employment practices. If you require accommodation due to a disability at any point during the recruitment process, please contact [email protected] to discuss your needs.

Top Skills

Admission Controllers
AWS
Aws Config Rules
Container Scanning
Dast
Github Actions
Gitlab Ci
Iam
Image Signing
Infrastructure-As-Code
Jenkins
Kubernetes
Open Policy Agent
Python
Rbac
Sast
Sca
Secrets Management
Terraform

Similar Jobs

12 Days Ago
Remote
Québec, QC, CAN
Senior level
Senior level
Software
Design and implement scalable threat detection strategies for cloud environments, collaborating with engineering teams to enhance security capabilities.
Top Skills: AWSCloudFormationPythonTerraformXsiamXsoar
7 Hours Ago
Easy Apply
Remote or Hybrid
British Columbia, BC, CAN
Easy Apply
Senior level
Senior level
Big Data • Cloud • Software • Database
The Staff Engineer will lead the development of data migration tools, focusing on architecture and mentoring while collaborating on technical strategies to solve complex customer challenges.
Top Skills: DebeziumJavaKafkaReactSpring BootSQL
21 Hours Ago
Remote or Hybrid
Ontario, ON, CAN
Junior
Junior
AdTech • Consumer Web • Digital Media • eCommerce • Marketing Tech
The Data Engineer 2 will build data integration pipelines, maintain data quality, and collaborate with stakeholders to meet data deliverables.
Top Skills: AWSGCPPythonSQL

What you need to know about the Calgary Tech Scene

Employees can spend up to one-third of their life at work, so choosing the right company is crucial, not just for the job itself but for the company culture as well. While startups often offer dynamic culture and growth opportunities, large corporations provide benefits like career development and networking, especially appealing to recent graduates. Fortunately, Calgary stands out as a hub for both, recognized as one of Startup Genome's Top 100 Emerging Ecosystems, while also playing host to a number of multinational enterprises. In Calgary, job seekers can find a wide range of opportunities.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account