DevSecOps

Orion Innovation
$88,105 - $111,561 a year
Quebec
1 day ago

Orion Innovation is a premier, award-winning, global business and technology services firm. Orion delivers game-changing business transformation and product development rooted in digital strategy, experience design, and engineering, with a unique combination of agility, scale, and maturity. We work with a wide range of clients across many industries including financial services, professional services, telecommunications and media, consumer products, automotive, industrial automation, professional sports and entertainment, life sciences, ecommerce, and education.

Role Overview

As a Security Engineer, you will focus on integrating security into our CI/CD pipelines, cloud-native workloads, and development environments. You'll work closely with software engineers, DevOps, architects, and compliance teams to ensure our code, pipelines, and infrastructure meet modern security standards and compliance expectations. This role balances hands-on engineering with strategic influence—ideal for someone ready to own security tooling, automation, and governance in a fast-paced environment.

Key Responsibilities

  • Design and implement secure CI/CD pipelines using GitHub Actions, integrating tools for code scanning, dependency management, and artifact integrity
  • Enable and enforce GitHub Advanced Security features across all repositories
  • Collaborate with engineering teams to apply secure coding practices across applications written in C#, Java, and Python
  • Harden and secure Kubernetes environments—focusing on workload policies, RBAC, secrets management, and network segmentation
  • Develop reusable security automation for scanning source code, containers, and dependencies
  • Build monitoring and alerting around pipeline and runtime security events
  • Conduct internal threat modelling, code reviews, and pipeline security assessments
  • Contribute to secure development lifecycle (SDLC) policies and documentation
  • Support compliance efforts by aligning engineering practices with standards such as NIST 800-53, FedRAMP, and others (as applicable)

Required Skills & Experience

  • 3–5+ years of relevant experience in security engineering, DevSecOps, or platform security roles
  • Strong hands-on experience with GitHub and GitHub Actions, including workflow creation and security scanning integration
  • Exposure to security compliance frameworks (NIST 800-53, FedRAMP, SOC 2, ISO 27001)
  • Experience with container/image scanning tools (e.g., Trivy, Grype, Aqua, Prisma)
  • Knowledge of Infrastructure-as-Code (IaC) security (Terraform, Checkov, OPA, etc.)
  • Practical experience with CI/CD pipelines and embedding security into build, test, and deploy stages
  • Familiarity with containerized workloads and securing Kubernetes clusters in production
  • Strong coding/scripting skills in C#, Java, and/or Python
  • Solid understanding of secure development principles, OWASP Top 10, and software supply chain security and familiarity with SBOMs, SLSA, and supply chain integrity practices
  • Proficient in vulnerability triage and remediation processes across code, pipelines, and containers
  • Good to have Certifications such as GCSA, CKS, CSSLP, or CISSP

Orion is an equal opportunity employer, and all qualified applicants will receive consideration for employment without regard to race, color, creed, religion, sex, sexual orientation, gender identity or expression, pregnancy, age, national origin, citizenship status, disability status, genetic information, protected veteran status, or any other characteristic protected by law.

Candidate Privacy Policy

Orion Systems Integrators, LLC and its subsidiaries and its affiliates (collectively, "Orion," "we" or "us") are committed to protecting your privacy. This Candidate Privacy Policy (orioninc.com) ("Notice") explains:

  • What information we collect during our application and recruitment process and why we collect it;
  • How we handle that information; and
  • How to access and update that information.

Your use of Orion services is governed by any applicable terms in this notice and our general Privacy Policy.

Apply
Other Job Recommendations:

Techincal Specialist, DevSecOps Cloud (Computer Services Off 3)

Province of Nova Scotia
Halifax, Nova Scotia
$2,653 - $3,231 a month
At CSDS, we prioritize people—both within our team and in the communities we serve. Our mission is to redefine how Nova Scotians...
1 week ago

Platform DevSecOps Engineer

KUBRA
Mississauga, Ontario
  • Strengthen the configuration of security related aspects of...
  • To ensure success as a Platform DevSecOps Engineer, you...
2 days ago

DevSecOps Engineer

Livingston International
Toronto, Ontario
  • Embed security controls into CI/CD pipelines, source code...
  • Partner with DevOps and engineering teams to build...
1 week ago

Concepteur(trice) logiciel DevSecOps

Dimonoff
Quebec, Quebec
  • Collaborer avec les équipes afin de concevoir et mettre en...
  • Développer des scripts et des outils pour exécuter le...
2 weeks ago

Flooring Associate

J.D. Irving, Limited
St. John's, Newfoundland and Labrador
The service that we offer customers includes ensuring that our product displays are safe and easy to shop Able to work outside in...
19 hours ago

Pharmacy Assistant - FT

Sobeys
Calgary, Alberta
$42,754 - $54,136 a year
  • Excellent attention to detail, ability to multi-task and...
  • Adhere to and implement all applicable company standards...
1 day ago

Nike Gestionnaire régional de la présentation visuelle, Quebec

retailors
Toronto, Ontario
$51,937 - $65,764 a year
  • Collaborer étroitement avec les partenaires de Nike et les...
  • Encadrer, diriger et développer une équipe de responsables...
1 day ago

Merchandise Processing Team Member - Langley (Full Time)

Talize
City of Langley, British Columbia
  • Ensure department bins are clearly marked with the accurate...
  • Ensure that the merchandise processing area is kept in an...
1 day ago

Technical Service Representative (Part Time)

Best Buy
Saint John County, New Brunswick
No experience required! Your everyday tech use has already given you a great foundation, and we’ll provide the rest of the...
1 day ago

Service Transformation Consultant

MJB Technology Solutions Ltd.
Calgary, Alberta
$100 - $125 an hour
  • Experience working on agile software development and modern,...
  • Experience working with a dedicated public sector central...
1 day ago