Software Development Platform Engineer

AVEVASan Leandro, CA
Hybrid

About The Position

AVEVA is creating software trusted by over 90% of leading industrial companies. This role focuses on administering and governing the software development platform, ensuring security, compliance, and efficiency for development teams. The engineer will manage tools like Azure DevOps and GitHub, implement CI/CD pipelines, handle identity and access management, and integrate security tooling. The position also involves contributing to the platform's architecture and continuous improvement, evaluating new technologies, and supporting AI-assisted development tools. The company emphasizes innovation, collaboration, and inclusivity in its R&D efforts, working on a diverse portfolio of industrial automation and engineering products with a focus on AI and cloud.

Requirements

  • Hands-on experience administering Azure DevOps and GitHub in an enterprise environment.
  • Strong understanding of CI/CD concepts, pipelines, and automation workflows.
  • Familiarity with SDLC methodologies and development lifecycle tooling.
  • Experience managing service principals, tokens, and identity based automation.
  • Understanding of identity and access management (IAM) principles, including RBAC, least privilege, birthright, and credential hygiene.
  • Ability to troubleshoot platform, pipeline, identity, integration issues, and REST APIs.
  • Experience with security tooling such as code scanning, dependency management, or secrets detection.
  • Strong communication skills and a collaborative mindset.
  • Scripting experience (PowerShell, Bash, Python) for automation and identity governance.
  • Applies Azure CLI to manage service principals, role assignments, and identity policies supporting secure DevOps architectures across Azure DevOps, GitHub, and Azure services.

Nice To Haves

  • Experience with infrastructure-as-code (Terraform, ARM/Bicep) for platform and identity provisioning.
  • Knowledge of cloud platforms, especially Azure and Microsoft Entra ID.
  • Exposure to workload identity federation and modern token based authentication patterns.
  • Experience administering Identity Governance platforms, including ConductorOne and SailPoint, with a focus on enterprise ‑level access governance and platform administration
  • Experience integrating GHAS findings into Azure DevOps, SIEM/SOAR platforms, and secure SDLC pipelines to drive automated remediation and continuous hardening.
  • Experience applying Hypervelocity engineering principles to accelerate developer workflows, reduce cognitive load, and streamline platform operations across Azure DevOps and GitHub.
  • Experience designing and implementing Azure DevOps pipeline decorators to enforce organization‑wide governance, inject mandatory security and compliance tasks, and standardize CI/CD behavior across all pipelines without requiring changes from individual development teams.

Responsibilities

  • Administer and maintain Azure DevOps and GitHub organizations, including projects, repositories, pipelines, permissions, and policies.
  • Manage platform governance, including branch protections, environment controls, and repository standards.
  • Support onboarding, configuration, and lifecycle management of development tools, integrations, and automation services.
  • Manage and govern service principals, managed identities, and application registrations used across CI/CD and automation workflows.
  • Implement best practices for token lifecycle management, including PATs, OAuth tokens, GitHub App tokens, and workload identities.
  • Enforce secure authentication and authorization patterns, including least privilege access, role-based access control (RBAC), and conditional access policies.
  • Monitor and audit identity usage across platforms to detect anomalies, expired credentials, or misconfigurations.
  • Partner with security teams to ensure compliance with enterprise identity standards and regulatory requirements.
  • Support teams in implementing and optimizing SDLC processes aligned with organizational standards.
  • Build, maintain, and troubleshoot CI/CD pipelines across Azure DevOps and GitHub Actions.
  • Improve build, test, and deployment workflows to increase reliability, repeatability, and speed.
  • Promote best practices in automation, artifact management, and release engineering.
  • Implement and maintain security tooling such as SAST, dependency scanning, secrets detection, and policy enforcement.
  • Ensure secure configuration of pipelines, runners/agents, and platform integrations.
  • Assess, govern, and securely integrate AI-assisted development tools (e.g., copilots, code review assistants, chat/agent automations) into Azure DevOps/GitHub and SDLC workflows by enforcing data protection and access controls (least privilege, secrets isolation, token hygiene), validating vendor/security posture, defining acceptable-use and logging/audit requirements, and mitigating risks such as sensitive data leakage, prompt injection, and supply-chain compromise.
  • Participate in incident response and root cause analysis for platform or identity related issues.
  • Document standards, patterns, and platform configurations to support operational excellence.
  • Contribute to the design and evolution of the software development platform architecture.
  • Evaluate new tools, integrations, and identity models to improve developer productivity and platform scalability.
  • Identify opportunities to simplify workflows, reduce friction, and standardize platform usage across teams.

Benefits

  • Flex work hours
  • 20 days PTO rising to 25 with service
  • three paid volunteering days
  • primary and secondary parental leave
  • well-being support
  • medical
  • dental
  • vision
  • 401K
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service