Live opening · Posted 6 hours ago
At a glance
The key details from the original listing.
Your early-applicant advantage
Live timing from JobBeeper.
About the role
Description supplied by the original job listing.
What you do in this role:
Responsible for vulnerability management and security automation across the Moveworks AI cloud infrastructure and developer platform
Closely work with platform, machine learning, search, data, and frontend teams to understand their security and infrastructure needs, and execute on DevSecOps roadmap initiatives
Triage and drive remediation of findings from SAST, dependency, and container vulnerability scans across multi-cloud infrastructure, including AWS and Azure environments
Implement and tune policy-as-code guardrails for Kubernetes and infrastructure-as-code, closing gaps identified through audits and scans
Support secrets management operations, identity federation (IRSA on AWS, Managed Identity/Workload Identity on Azure), and least-privilege access patterns across the environment
Build and manage CI/CD pipeline security controls (artifact signing, build provenance, dependency pinning) as part of the broader infrastructure-as-code and automation stack
Support replatformization efforts extending infrastructure and security controls to Azure and other hyperscaler environments, including AKS cluster security posture
Work closely with the security team on compliance automation, evidence collection, and audit readiness as ServiceNow's controls are adopted
To be successful in this role you have:
Experience in leveraging or critically thinking about how to integrate AI into work processes, decision-making, or problem-solving. This may include using AI-powered tools, automating workflows, analyzing AI-driven insights, or exploring AI's potential impact on the function or industry.
3-5 years of experience in DevOps, Platform, or Security Engineering
Hands-on technical contributor with a strong sense of ownership, able to work through vulnerability findings and remediation from triage to closure
Working knowledge of AWS infrastructure, including IAM roles, security groups, and core networking (VPC, DNS)
Working knowledge of, or strong interest in, Azure infrastructure and security services (Azure AD/Entra ID, Azure Key Vault, Network Security Groups, Azure Policy, Microsoft Defender for Cloud)
Experience with vulnerability scanning and security tooling: SAST, container/image scanning, dependency scanning, SBOM generation, across AWS and/or Azure
Experience with Kubernetes cluster fundamentals and workload security; exposure to both EKS and AKS is a plus
Working knowledge of secrets management, encryption, certificate management, and related security practices across cloud providers
Comfortability with tools such as Terraform, Vault, OPA/Kyverno, Jenkins, ArgoCD/Flux, Helm
Scripting proficiency in Python, Bash, or Go for automating repetitive security and operations tasks
An appetite for working at a startup pace on challenging problems with a high degree of ownership
Employment type
Full-time
Work arrangement
No
More openings worth a look
Recently tracked roles with full details and direct application links.