Lead IT DevSecOps Engineer

Cleveland-Cliffs
$120,000 - $160,000Onsite

About The Position

Cleveland-Cliffs is hiring a Lead IT DevSecOps Engineer to partner with application development teams, consolidate source control and CI/CD onto GitHub, and embed Secure SDLC into every pipeline. This role has direct executive support from Cybersecurity, IT Infrastructure, and Applications leadership. The right candidate is passionate about Secure by Design, firm on CI/CD discipline, and energized by the work of bringing a large, multi-platform engineering estate into a single modern workflow. The program goal in year one is consolidation and Secure SDLC foundation, with scope expanding in year two and beyond to include a voice in AI/ML pipeline security as Cleveland-Cliffs' AI footprint grows. Potential professional growth opportunities include either a technical path such as Architect and Principal, or a leadership path by managing a team as the program grows.

Requirements

  • Bachelor's degree in Computer Science, Information Technology, or related field, or equivalent work experience
  • 6+ years in DevOps, DevSecOps, or platform engineering
  • Hands-on experience with repository and CI/CD platform consolidations or migrations
  • Strong scripting and programming skills in NodeJS and and C# (Python also valued)
  • Deep proficiency with Git, GitHub, and GitHub Actions
  • Experience integrating SAST, DAST, dependency scanning, and secret detection into CI/CD pipelines
  • Working knowledge of containerization and a major cloud platform (Azure preferred)
  • Other duties as assigned
  • Must be able to work full-time onsite
  • Applicants must be legally authorized to work in the United States.
  • Cleveland-Cliffs does not provide sponsorship for this position.

Nice To Haves

  • Experience consolidating from Azure DevOps, GitLab, Jenkins, or TFS into GitHub
  • Familiarity with .NET applications and legacy application environments
  • Interest or experience in AI/ML pipeline security
  • Experience with Infrastructure as Code (Terraform, ARM, or similar)
  • Relevant certifications (AZ-400, GIAC GWEB/GCSA, or similar)

Responsibilities

  • Consolidate source control and CI/CD onto GitHub.
  • Partner with application development teams to migrate repositories, and set the standards, branching strategy, and governance that make the consolidation durable
  • Champion Secure SDLC.
  • Integrate SAST, DAST, dependency scanning, secret detection, and code scanning into every pipeline, drive adoption, not just deployment
  • Build the automation and the platform
  • Design CI/CD pipelines using GitHub Actions
  • Author build and deployment automation in NodeJS and C#.
  • Administer DevOps infrastructure, container registries, and cloud platform services
  • Coach developers and build the paved road
  • Create the templates and reusable patterns that make secure-by-default the easy path.
  • Go hands-on where it accelerates the change
  • Program goal in year one (1) is consolidation and Secure SDLC foundation.
  • Year two (2) and beyond, the scope expands to include a voice in AI/ML pipeline security as Cleveland-Cliffs' AI footprint grows.
  • Potential professional growth opportunities include either a technical path such as Architect and Principal, or a leadership path by managing a team as the program grows.
  • Other duties as assigned.

Benefits

  • excellent total compensation package
  • competitive pay with variable compensation opportunity
  • health insurance
  • retirement plan
  • education assistance
  • paid time off
  • meaningful annual bonus opportunity tied to company and individual performance
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service