DevOps Engineer 3 (Sr DevSec Engineer)

Black Duck Software

USonsite$136k-$180k/yrPosted Jul 10, 2026
Posting intelligenceActively listedReposted 9×, possible evergreen/ghost posting

Skills

kubernetesterraformjenkinsdockergithubpythoncicdjavagooglecloudllmgo

About the role

Black Duck Software, Inc. helps organizations build secure, high-quality software, minimizing risks while maximizing speed and productivity. Black Duck, a recognized pioneer in application security, provides SAST, SCA, and DAST solutions that enable teams to quickly find and fix vulnerabilities and defects in proprietary code, open source components, and application behavior. With a combination of industry-leading tools, services, and expertise, only Black Duck helps organizations maximize security and quality in DevSecOps and throughout the software development life cycle.

Sr DevSec Engineer, Cloud Operations

Staff. DevOps Engineer will be a key player on the Cloud Operations team responsible for all SaaS and Hosted services across the company's product portfolio. They will proactively work with Engineering, Product, IT, and other functional departments to design, implement, and operate our global customer-facing infrastructure on Google Cloud Platform (GCP). The ideal candidate brings strong hands-on GCP infrastructure and networking expertise, is a self-starter who thrives in a fast-paced environment, excels at problem solving, actively leverages AI and LLM tools to accelerate their work, and is committed to delivering seamless, highly available service experiences to enterprise customers worldwide.

Responsibilities:

Design, build, and maintain resilient, secure, and highly available infrastructure for all SaaS and Hosted services on GCP to meet established SLAs

Design and manage secure, scalable GCP network architecture - including VPC design, VPC peering, shared VPC, Cloud Interconnect/VPN, Cloud NAT, firewall rules, and DNS

Automate deployment pipelines, monitoring, alerting, and incident response using modern CI/CD and GitOps practices

Monitor site stability and performance using GCP-native observability tooling (Cloud Monitoring, Cloud Logging, Error Reporting) and troubleshoot issues across the stack

Scale infrastructure to meet rapidly increasing demand using GCP autoscaling, load balancing, and cost-optimization best practices

Own end-to-end operational responsibility for all customer-facing SaaS and Hosted environments, including availability, performance, and change management

Manage cross-functional requirements working with Engineering, Product, Services, and other departments

Collaborate with developers to bring new features and services into production via containerized, Kubernetes-native deployment patterns

Develop and improve operational practices, runbooks, and procedures - using AI and LLM tools to accelerate automation, generate scripts, diagnose incidents, and improve documentation quality

Proactively meet standards for information security and compliance, such as ISO, SOX, SSAE 16, etc.

Background & Experience:

7+ years' experience in 24x7 production operations supporting a highly available SaaS or cloud service environment

Proactively meet standards for information security and compliance, such as SOC2 Type 2, ISO-27001, NIST 800-53

Strong, hands-on experience with Google Cloud Platform (GCP) - including GKE, Cloud Run, Cloud Storage, VPC networking, IAM, and GCP-native monitoring and logging services

Strong, hands-on GCP infrastructure and networking experience - including VPC architecture, Cloud Interconnect/VPN, load balancing (GLB, ILB), Cloud DNS, firewall policies, and multi-region network design

Experience with containerization and image management using Docker; familiarity with container security best practices

CI/CD pipeline experience (Jenkins, GitHub Actions, ArgoCD, or equivalent); GitOps workflow experience a strong plus

Experience with Java applications and related J2EE technology stack

Proficiency in scripting languages (Python, Bash, or Go preferred); experience with infrastructure-as-code tools (Terraform, or equivalent)

Comfortable using AI and LLM tools (e.g., GitHub Copilot, ChatGPT, Claude, or similar) as everyday productivity aids - for scripting, troubleshooting, documentation, and on-call investigation

Strong understanding of networking concepts (DNS, TLS, load balancing, service mesh) and troubleshooting techniques

Strong interpersonal and teaming skills - ability to set and enforce process and influence engineers who are not direct reports.

Education:

Bachelor's degree in Computer Science or other technical discipline, or equivalent experience.

About Black Duck

Organizations worldwide use Black Duck Software's industry-leading products to secure and manage open source software, eliminating the pain related to security vulnerabilities, compliance and operational risk. Black Duck is headquartered in Burlington.

Compensation

This DevOps / SRE role pays $136k-$180k/yr. Within typical range for devops / sre roles in United States.

Questions about this role

Click "Apply with AI Applyd" above. We auto-fill the application from your resume and answer screening questions in seconds. No copy and paste, no juggling tabs.

Compensation for DevOps / SRE roles in United States varies widely by seniority, employer size, and remote vs onsite arrangement. Check the salary range on this listing when published, or browse our DevOps / SRE hub for United States medians across recent openings.

Most applications complete in under 90 seconds. You can track the status in your dashboard and watch the screenshot proof land the moment the application submits.

AI Applyd supports Greenhouse, Lever, Ashby, Workday, iCIMS, SmartRecruiters, Personio, Teamtailor and other major ATS platforms. If we can submit through the platform, we do.

Want AI Applyd to auto-apply to roles like this?

We tailor your resume per posting, fill the forms, and track replies for you.