DevSecOps Engineer Azure DevOps Server CI CD Security Scanning
Mobiloitte
Job Summary
The DevSecOps Engineer will implement and manage CI/CD pipelines within DEWA Azure DevOps Server, integrating mandatory security controls. This role focuses on designing, building, and automating secure release pipelines, including security scanning integration and ensuring deployment reliability for the virtual command center platform. It requires hands-on Azure DevOps Server experience, emphasizing security-by-default practices. Mobiloitte, a global technology consulting firm, delivers enterprise solutions in AI, data, cloud, mobility, and digital platforms, partnering with organizations worldwide to build secure, scalable, and production-ready systems with a strong focus on DevSecOps and compliance.
Must Have
- Set up build and release pipelines, branching strategy, environment promotion controls, and deployment gates in Azure DevOps Server.
- Integrate SAST, DAST, dependency scanning, secrets management, and container hardening security controls into CI/CD pipelines.
- Implement artifact versioning, approvals, traceability, and governance controls for production releases.
- Support infrastructure automation (IaC), deployment reliability monitoring, and rollback capabilities.
- Strong Azure DevOps Server experience including build release pipelines, branching strategies and environment promotion controls.
- Proven experience integrating security scanning tools SAST, DAST, dependency analysis, secrets management and container security.
- Hands on experience with artifact management, versioning, approvals, gates and release traceability requirements.
- Familiarity with infrastructure as code (IaC) deployment reliability practices and security by default pipeline design.
Job Description
Job Description
The DevSecOps Engineer Azure DevOps Server CI CD Security Scanning will implement CI CD pipelines aligned with DEWA Azure DevOps Server including mandatory security controls. The role focuses on secure pipeline design build release automation security scanning integration and deployment reliability for the virtual command center platform. The position requires hands on Azure DevOps Server experience not just cloud DevOps with strong security by default pipeline practices.
Key Responsibilities
- 1.Set up build release pipelines branching strategy environment promotion controls and deployment gates in Azure DevOps Server.
- 2.Integrate SAST DAST dependency scanning secrets management and container hardening security controls into CI CD pipelines.
- 3.Implement artifact versioning approvals traceability and governance controls for production releases.
- 4.Support infrastructure automation IaC deployment reliability monitoring and rollback capabilities.
Qualifications & Requirements
- 1.Strong Azure DevOps Server experience including build release pipelines branching strategies and environment promotion controls.
- 2.Proven experience integrating security scanning tools SAST DAST dependency analysis secrets management and container security.
- 3.Hands on experience with artifact management versioning approvals gates and release traceability requirements.
- 4.Familiarity with infrastructure as code IaC deployment reliability practices and security by default pipeline design.
Experience Requirements
- 5 to 10 years of DevOps and CI CD experience with strong Azure DevOps Server and security integration background adjust as needed
About Our Company
Mobiloitte is a global technology consulting and engineering organization delivering enterprise scale solutions across AI data cloud mobility and digital platforms. The company partners with enterprises governments and fast growing organizations worldwide to design build and operate secure scalable and production ready systems with strong focus on DevSecOps security automation and regulatory compliance.
Additional Information
Core tech stack Azure DevOps Server on premises CI CD pipelines SAST DAST tools secrets management IaC container security and release governance aligned to DEWA security standards. Critical role ensuring security by default across all deployment pipelines working closely with security architect development teams and platform architects.