Back to job search
S
SPECTRAFORCEVerified Job Source

DevSecops Engineer

Design and deploy automated workflows for cryptographic services, including certificate lifecycle and key management. Develop APIs and integration frameworks to embed secure cryptographic operations into CI/CD pipelines and enterprise applications.

  • Hybrid
  • Markham, ON
  • Posted Aug 6, 2026
  • Apply by Sep 5, 2026
  • 1 position

Job summary

Job Title: Security Engineer (DevSecOps) Duration: 12 months (Possibility of extension/conversion) Location: Markham, ON (Hybrid – 2 days a week) Scope of Project: automation project (new features, maintenance, bug fixes) Team Size/Culture: 7 people Required Degree/Level of Education: Post secondary is an asset Certifications Required: CISSP is an asset Required Years of Overall Experience: 8+ years of experience The Crypto Solution Validation Team is responsible for the cryptographic solution certification, design, develop and deploy enterprise cryptographic automation solution. The team plays a critical role in safeguarding organizational data and systems by delivering secure, scalable, and automated cryptographic services. This includes automating key management, certificate lifecycle management, encryption processes, and other cryptographic operations to improve efficiency, reliability, and the organization's overall security posture. The team works closely with enterprise DevOps team, Crypto Requirements Team, Crypto Operations Team, and Security Architecture Team to ensure cryptographic solutions are certified, operationally sustainable, and aligned with enterprise security standards and strategic objectives. Key Responsibilities Automation Design and Development Design, develop, test, and deploy automated solutions and workflows for cryptographic services and operations, including: Certificate lifecycle management (issuance, renewal, revocation, and compliance monitoring). Symmetric and asymmetric key generation, distribution, rotation, escrow, and retirement. Integration with enterprise-approved key management and certificate management platforms. Cryptographic Service Integration Develop APIs, automation frameworks, and reusable tools that enable seamless integration of cryptographic services (encryption, decryption, digital signing, verification, and key management) into enterprise applications, infrastructure platforms, and CI/CD pipelines. Cryptographic Solution Certification Evaluate, validate, and certify cryptographic products, platforms, and integrations to ensure they meet enterprise security, risk, compliance, and operational requirements. Develop certification standards, test plans, and implementation guidance to support enterprise adoption of approved cryptographic solutions. Tooling and Software Development Develop and maintain high-quality, secure, and maintainable code using languages such as Python, PowerShell, and Bash. Leverage modern automation and orchestration platforms to accelerate cryptographic service delivery and reduce operational risk. Documentation and Standards Produce and maintain comprehensive technical documentation, including automation workflows, operational procedures, certification artifacts, and configuration standards. Contribute to enterprise cryptographic standards, best practices, and governance requirements. Must-Have Skills: 8+ years of security related technology experience 3+ years of experience in Security Engineering, DevSecOps, SRE, Infrastructure Engineering, or Software Engineering with a strong focus on automation and security. 5+ years of scripting/programming languages, including Python, PowerShell, and Bash. 5+ years of experience with automation and Infrastructure-as-Code tools such as Ansible, Terraform, Jenkins, GitHub Actions, or equivalent platforms. Soft Skills: Strong communication skills (written and verbal) Strong time management, priority management skills Attention to detail and someone who is a self-starter and adaptable Nice-To-Have CISSP certification Experience designing and implementing automation solutions for certificate lifecycle management and cryptographic operations. Strong understanding of cryptographic fundamentals, including: Symmetric and asymmetric encryption Key management and lifecycle management Public Key Infrastructure (PKI) TLS/SSL Digital signatures and hashing algorithms Experience supporting Linux and/or Windows server environments

What you’ll do

Design and deploy automated workflows for cryptographic services, including certificate lifecycle and key management. Develop APIs and integration frameworks to embed secure cryptographic operations into CI/CD pipelines and enterprise applications.

Requirements

Requires over 8 years of security technology experience, with specific expertise in Python, PowerShell, Bash, and Infrastructure-as-Code tools. A strong background in cryptographic fundamentals and automation engineering is essential.

Listed skills

  • TerraformPreferred
  • PythonPreferred

Other relevant skills

Identified from the job description. Confirm important requirements above.

  • Security Engineering
  • DevSecOps
  • Python
  • PowerShell
  • Bash
  • Ansible
  • Terraform
  • Jenkins
  • GitHub Actions
  • Certificate Lifecycle Management
  • Public Key Infrastructure (PKI)
  • Cryptographic Automation
  • Infrastructure-as-Code
  • Symmetric and Asymmetric Encryption
  • TLS/SSL
  • API Development

Job areas

  • Security & Safety
  • Technology
  • Software
  • Engineering

Additional details

Minimum education
Professional degree
Minimum experience
10+ years
Apply by
Sep 5, 2026
Posting language
English
Working hours
40 hours per week
Office presence
2 days per week
Seniority
Mid-Senior level
Application method
Direct apply is available