DevSecOps Engineer (Pipeline Security) - AI
Summary
DevSecOps engineer who embeds security into developer workflows using Claude Code: integrating SAST (SonarQube, Semgrep, Checkmarx) and secrets scanning (Trufflehog, GitGuardian) into CI/CD pipelines, enforcing secure code review gates for AI-generated code, feeding security telemetry to a SIEM, and supporting incident response.
Embed security controls into the developer workflows that use Claude Code, including SAST integration on AI-generated code, secrets scanning, and secure CI/CD pipeline design.
Key Responsibilities
Integrate SAST tools (SonarQube, Semgrep, Checkmarx) into CI/CD pipelines to scan AI-generated code.
Deploy and maintain secrets scanning (Trufflehog, GitGuardian) on Claude Code outputs and repositories.
Define and enforce secure code review gates for AI-assisted development.
Provide developer-facing security guidance and embed security champions within engineering teams.
Instrument Claude Code usage for security telemetry; feed data to SIEM.
Support incident response for code-related security events.
Required Skills / Experience
5+ years in DevSecOps or application security.
Strong CI/CD pipeline experience (GitHub Actions, GitLab CI, Jenkins).
Experience with SAST, DAST, and secrets scanning tooling.
Application security knowledge: OWASP Top 10, secure coding practices.
Scripting: Python, Bash, or similar.
Desirable Skills / Experience
Familiarity with AI code generation tools and their security implications.
Experience with supply chain security (SBOM, SLSA).
CSSLP or equivalent certification.