CPI Security

DevSecOps Engineer

CPI Security  •  Charlotte, NC (Onsite)  •  5 hours ago
Apply
AI can make mistakes so check important info. Chat history is never stored.

Job Description

CPI is looking for a DevSecOps Engineer to join our application engineering teamThis is not a traditional DevOps roleThis role must recognize and imbedsecurity across the entire application delivery lifecycleThis teammate drives efficiency into the engineering team’s work, while embedding controls, automation, and threat-aware thinking into every pipeline, deployment, and platform.

You'll work at the intersection of Salesforce delivery, cloud infrastructure, and application security, partnering with engineers and security teammates to ship faster and safer.


Key Responsibilities

  • Manage release engineering, branching strategies, automated deployments, metadata diffing, sandbox seeding, and rollback playbooks (SalesforceGearSet are currently core applications)
  • Design and operate secure CI/CD pipelines and cloud-native services (Salesforce, AWS, Snowflake)
  • Work in conjunction with other IT teammates to identify and resolve technical pipeline issues and escalate items while retaining ownership
  • Embed automated security gates (SAST, DAST, SCA, IaC scanning), container image scanning, and secrets detection directly into developer workflows
  • Support and extend AI and Snyk code qualitygates
  • Architect and maintain AWS infrastructure IaC (Terraform), with security baselines enforced via policy-as-code
  • Containerize workloads with Docker, orchestrate via ECS/EKS (or AKS), and harden images against CVEs and supply-chain attacks (SBOMs, signing, provenance)
  • Partner with security team for pipeline incident response and infrastructure security events and postmortems
  • Continuously evaluate tool alerts and reduce alert fatigue through tuning and automation
  • Support and troubleshoot all pipeline & IaC tools to ensure engineering adoption
  • Contribute to scrum ceremonies as a technical voice on delivery, release readiness, and risk

Core Experience

  • 10+ years of professional software development experience across one or more of: Java, NET/C#, Python, Node.js, or Apex
  • 5+ years in a DevOps, SRE, or Platform Engineering role, with at least the last 2 years explicitly focused on DevSecOps practices
  • Demonstrated history of owning production systems end-to-end (design, deployment, monitoring, and incident response)
  • Independent problem solver able to investigate, identify, evaluate, and drive practical solutions

Salesforce Delivery

  • Hands-on experience for Salesforce CI/CD: pipeline configuration, automated testing, problem analysis, and unit test coverage enforcement (GearSetpreferred)
  • Strong understanding of Salesforce metadata, sandbox strategy, and Apex test automation
  • Experience integrating Salesforce deployments with Git-based source-of-truth workflows

Cloud & Infrastructure

  • AWS at depth: IAM, VPC design, KMS, Secrets Manager, GuardDuty, Security Hub, CloudTrail, Config, WAF
  • Docker and container orchestration (ECS, EKS, or Kubernetes) in production
  • Infrastructure as Code: Terraform (preferred) with modular, reusable, policy-checked patterns.
  • CI/CD platforms: GitHub Actions, GitLab CI, Jenkins, or CircleCI

Security Tooling & Practices

  • SAST/DAST/SCA tooling; e.g.Snyk (preferrable), Checkmarx, SonarQube
  • Container/image scanning, SBOM generation, and policy-as-code

Soft Skills

  • Strong communication — you can explain a vulnerability to an executive and a regex to a junior engineer in the same afternoon
  • Pragmatic risk thinker — you know when to block a deploy and when to file a ticket
  • Collaborative; sensitive to "security as a department of no"

Nice to Have

  • Salesforce certifications (Platform Developer I/II)
  • AWS certifications (Solutions Architect Professional, Security Specialty)
CPI Security

About CPI Security

For more than 30 years, CPI Security has been a leader in customized security and home automation solutions. We are one of the only providers to design, install, monitor and service our own security systems.

What's it like to work at CPI?

CPI realizes that its success depends on employees who are excited about coming to work every day. We offer our employees a positive and rewarding work environment with competitive pay and benefits, paid training, and educational assistance. Our employees are driven, independent, passionate, and team-oriented. Everyone at CPI comes into work knowing they will make an impact, whether that means with their team or customers. There’s a reason why we were voted one of the top places to work in the Carolinas!

CPI’s culture is built around our strong desire to give back. Because we live and work in the regions serviced by CPI Security, we actively participate in our communities. Several times a year, we ask employees to participate in our spirit of giving back and always have a great time doing so. We even offer volunteer time off for charitable time outside of work.

Ready to join the fastest growing security company in the Southeast? Check out our openings in Sales, Operations, Customer Service, and Corporate roles today. Visit www.cpisecurity.com/careers to learn more!

Industry
Unknown
Company Size
501-1,000 employees
Headquarters
Charlotte, NC
Year Founded
1991
Social Media