Point your AI agent at freehire and let it find you a job.

Get the CLI →

Infinity Quest UK

New

DevSecOps Engineer (Pipeline Security) - AI

Posted Updated 2 views
Discussion

Summary

DevSecOps engineer who embeds security into developer workflows using Claude Code: integrating SAST (SonarQube, Semgrep, Checkmarx) and secrets scanning (Trufflehog, GitGuardian) into CI/CD pipelines, enforcing secure code review gates for AI-generated code, feeding security telemetry to a SIEM, and supporting incident response.

Embed security controls into the developer workflows that use Claude Code, including SAST integration on AI-generated code, secrets scanning, and secure CI/CD pipeline design.

Key Responsibilities

Integrate SAST tools (SonarQube, Semgrep, Checkmarx) into CI/CD pipelines to scan AI-generated code.

Deploy and maintain secrets scanning (Trufflehog, GitGuardian) on Claude Code outputs and repositories.

Define and enforce secure code review gates for AI-assisted development.

Provide developer-facing security guidance and embed security champions within engineering teams.

Instrument Claude Code usage for security telemetry; feed data to SIEM.

Support incident response for code-related security events.

Required Skills / Experience

5+ years in DevSecOps or application security.

Strong CI/CD pipeline experience (GitHub Actions, GitLab CI, Jenkins).

Experience with SAST, DAST, and secrets scanning tooling.

Application security knowledge: OWASP Top 10, secure coding practices.

Scripting: Python, Bash, or similar.

Desirable Skills / Experience

Familiarity with AI code generation tools and their security implications.

Experience with supply chain security (SBOM, SLSA).

CSSLP or equivalent certification.

Skills

Apply

See also

Security jobs by country — openings, pay and top skills →

Tailor your CV for this role?

We couldn't check your fit for this role — add a CV to your profile to see it next time.

A new version of freehire is available