Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

DevOps Security Engineer

Decentralized Masters

About Legacy

Legacy is an easy-to-use, non-custodial Web3 wallet designed to protect digital assets through beneficiary protection and seamless DeFi access. Users can swap across chains, earn yield in one click, and safeguard wealth for the next generation.

Legacy is built by the team behind Decentralized Masters - a profitable $50M+ education and investment ecosystem with 4,000+ high-net-worth investors.

We’ve launched. Demand is strong. Now we need someone to own the post-acquisition customer journey and turn users into long-term, high-LTV subscribers.

About the Software Division

We are building a portfolio of software products inside the Decentralized Masters ecosystem, including:

  • Legacy Wallet – a non-custodial Web3 wallet with beneficiary protection and seamless DeFi access
  • Trading Bot – automated crypto execution tools for serious investors
  • Future fintech and investor infrastructure tools

We are now building the retention and lifecycle engine that will power long-term recurring revenue across all products.

About the Role

You will be the single person responsible for the security of a platform that tracks hundreds of millions in digital assets. That is the job. Everything else is secondary.

We need someone who breaks things for a living. Someone who looks at a login page and sees six attack vectors. Someone who reads a pull request and catches the injection vulnerability that two senior developers missed. Someone who lies awake thinking about the phishing campaign that hasn't been invented yet. If that sounds exhausting, this is not your role. If that sounds like Tuesday, keep reading.

Your primary responsibilities are security and quality assurance. You own penetration testing, vulnerability assessments, threat modeling, automated test frameworks, and CI quality gates across every product we ship. You also own infrastructure: AWS, CI/CD pipelines, monitoring, and incident response. And because we are a small, senior team, you will write production code when security and QA responsibilities are covered. You are not a consultant or a checkbox auditor. You are an engineer who ships, and whose code happens to make everything else harder to break.

The ideal candidate has spent time at major product-driven fintech and crypto companies where a single security failure can destroy user trust overnight.

What You Will Own

Security (Primary)

  • Own the security posture across all products: Legacy, Trading Bot, and future platforms. If something gets breached, it is your problem. If nothing gets breached, it is because of your work.
  • Conduct regular penetration testing, vulnerability assessments, and threat modeling aligned with OWASP standards and methodologies
  • Ensure full coverage of the OWASP Top 10 in application security testing, code reviews, and deployment checks
  • Perform security-focused code reviews across frontend, backend, and infrastructure code, catching what standard code reviews miss
  • Implement and manage secrets management (Vault, AWS Secrets Manager, or KMS), access controls, and least-privilege policies
  • Build and maintain incident response playbooks. When something breaks, you lead the response, run the post-mortem, and ship the fix
  • Stay ahead of Web3 and crypto-specific attack vectors: phishing campaigns, wallet exploits, API key compromises, supply chain attacks, and social engineering
  • Manage and coordinate external security audits and penetration tests from third-party firms

Quality Assurance & Testing (Primary)

  • Design and implement test strategies across all products: unit tests, integration tests, end-to-end tests, API tests, and regression suites
  • Build and maintain automated testing frameworks and CI quality gates that prevent broken code from reaching production
  • Define and track quality metrics: test coverage, flakiness rate, regression detection latency, and bug escape rate
  • Write and execute security test cases: authentication flows, authorization controls, input validation, API abuse scenarios, and edge cases around financial data
  • Perform both white-box and black-box testing, leveraging full codebase access to catch issues that surface-level QA would miss
  • Test across the full stack: frontend UI, backend APIs, database queries, third-party integrations, and on-chain interactions

Infrastructure & DevOps (Foundation)

  • Maintain and improve cloud infrastructure on AWS using Infrastructure as Code (Terraform or CloudFormation)
  • Own CI/CD pipelines (GitHub Actions preferred): automated testing, security scanning, linting, and deployment
  • Harden infrastructure: network security, IAM policies, container security, and environment isolation
  • Build logging, monitoring, and alerting across all services (CloudWatch, Prometheus, Grafana, or equivalent)
  • Ensure audit trails for user actions, system changes, and access events
  • Manage production reliability, incident response, and cost optimization

Fullstack Development (When the fortress is secure)

  • Contribute production code across frontend and backend, bringing a security-first mindset to every feature you build
  • Build features, fix bugs, and ship improvements alongside the engineering team
  • Every line you write should make the product better and harder to break: input validation, error handling, authentication, and data protection by default
  • Participate in architecture discussions and code reviews, advocating for testability, reliability, and security in every decision

Requirements

What You Bring

Required

  • 5+ years in software engineering roles with meaningful, hands-on security and QA experience. We will verify this. If your security experience is theoretical, this is not the right fit.
  • Fullstack development experience: you can build and ship features across frontend (React or equivalent) and backend (Node.js, Python, Go, or equivalent)
  • Hands-on penetration testing and vulnerability assessment experience across web applications, APIs, and cloud infrastructure
  • Strong working knowledge of OWASP standards, including the OWASP Top 10, OWASP Testing Guide, and OWASP secure coding practices
  • Experience building automated test frameworks and integrating testing into CI/CD pipelines
  • AWS expertise (EC2, ECS/EKS, Lambda, VPC, IAM, S3, RDS, CloudFront, WAF)
  • Infrastructure as Code experience (Terraform, CloudFormation, or Pulumi)
  • Container technologies: Docker and Kubernetes in production environments
  • Scripting and automation proficiency in Bash and Python
  • Experience with secrets management tools (HashiCorp Vault, AWS Secrets Manager, or similar)
  • Familiarity with security and testing tools (Burp Suite, OWASP ZAP, Selenium, Cypress, Jest, Postman, or equivalent)
  • Strong communication skills: you can explain security risks and quality tradeoffs clearly to non-technical stakeholders

Nice-to-Have

  • Security certifications: OSCP, CISSP, CompTIA Security+, AWS Security Specialty, or equivalent
  • Experience at a crypto, DeFi, Web3, or fintech product company (Coinbase, Phantom, Stripe, Casa, MetaMask, Zerion, Ramp, or similar)
  • Familiarity with Web3-specific security concerns: wallet security, key management, on-chain monitoring, phishing mitigation
  • SDET background or experience in a hybrid development-and-testing role
  • Experience testing financial systems: payment flows, ledger integrity, double-spend prevention, or transaction monitoring
  • Experience implementing zero-trust architectures
  • Bug bounty participation, CVE publications, or contributions to open-source security tooling

Benefits

What We Offer
  • Competitive salary + performance-based incentives tied to retention & LTV improvement
  • Direct exposure to founders
  • Team Offsites
  • Remote work
  • High ownership, high-impact role
Vacancy posted 3 days ago
Similar jobs that could be interesting for youBased on the DevOps Security Engineer in United States vacancy
  •  ...Senior DevOps Engineer We are looking for a highly skilled Senior DevOps Engineer with deep expertise in DevOps practices and enterprise...  ...for building, and maintaining scalable, reliable, and secure infrastructure across multiple environments. You will work closely... 
    Suggested
    Remote work

    Zoom Video Communications

    United States
    1 day ago
  •  ...DevOps Security Engineer InfoSec Engineering support Mitigation and Remediation of security vulnerabilities Experience with Java, AWS and how to mitigate/remediate those security vulnerabilities Could look at a server migration schedule, heat maps for application... 
    Suggested

    Software Technology Inc

    Washington DC
    2 days ago
  •  ...About the job Security Clearance DevOps Engineer Security Clearance DevOps Engineer needs 5+ years of experience in DevOps Engineering or Software Development (Java preferred) Security Clearance DevOps Engineer requires: Security Clearance - A current TS... 
    Suggested

    Global Channel Management

    Maryland
    2 days ago
  •  ...Network Security DevOps Engineer We are building a new Network Security DevOps organization responsible for modernizing and operating enterprise firewall and network security services. As a contractor on this team, you will play a highly visible role in driving... 
    Suggested
    For contractors

    Cynet Systems

    Spring, Montgomery County, TX
    4 days ago
  •  ...enterprises, Kai is building a future where security has no categories, no silos, and no...  ...class leadership team: Our Heads of AI, Engineering, and Product bring extensive experience...  ...experience) ~7-8+ years of experience in DevOps, security engineering, or DevSecOps... 
    Suggested

    Kai Cyber, Inc.

    San Jose, CA
    1 day ago
  • $171.6k - $302.2k

     ...Senior Security DevOps Engineer Software is often referred to as the "soul" of Apple's products. In this position you will play a critical role in ensuring the security of the systems and infrastructure used to manage, build, and distribute, Apple's software. You will... 
    Relocation

    Apple

    San Diego, CA
    4 days ago
  •  ...DevOps & Security Engineer Location: Englewood, NJ Note: Need local candidates who can attend in person interview Job Description: Test Automation & Quality Engineering Design, build, and maintain scalable automation frameworks for web, API, and backend systems... 
    Local area
    Shift work

    Futran Tech Solutions Pvt. Ltd.

    Englewood, NJ
    2 days ago
  •  ...Overview: Job Title:- Network Security DevOps Engineer Location:- Spring Texas (On-Site) Job Type:- Long Term Contract Responsibilities: Overview We are standing up a new Network Security DevOps organization focused on modernizing, automating, and... 
    Long term contract

    Guru Schools

    Spring, Montgomery County, TX
    2 days ago
  • $105k - $115k

     ...Global delivers world-class end-to-end engineering solutions by leveraging our deep industry...  ...create robust CI/CD pipelines. Implement security measures into every stage of the...  ...What You Will Bring: Experience with DevOps methodologies, cloud platforms, and scripting... 
    Full time

    QuEST Global

    Cupertino, CA
    1 day ago
  •  ...DevOps Security Engineer Location: Ogden, UTAH, 100% Onsite role. NO REMOTE US Citizens only with active clearance REQUIRED Blue Yonder Defense Solutions (BYDS) is seeking a DevSecOps Engineer to help integrate security practices into our software development... 
    Remote work
    Flexible hours

    Blue Yonder

    Ogden, UT
    16 hours ago
  •  ...'re excited to be part of a winning team, CirrusLabs () is a great place to grow your career. Job Title: Network Security DevOps Engineer Duration: Long Term Contract Opportunity Location: Spring, Texas/ 5 Days Onsite Each Week Only Job Description... 
    Long term contract

    CirrusLabs

    Spring, Montgomery County, TX
    4 days ago
  •  ...Consulting Travel Required: Up to 10% Clearance Required: Active Public Trust What You Will Do: The Border Security DevOps Engineer will join a dynamic team supporting U.S Federal border security customers. In this role, the candidate will support the... 
    Temporary work
    Flexible hours

    Guidehouse

    Sterling, VA
    16 hours ago
  • $133.6k - $185.1k

     ...technology and ingenuity for clients across defense, national security, public safety, civilian, and military health organizations....  ...currently seeking a highly skilled and experienced Senior Security DevOps Engineer . The ideal candidate will have a deep understanding of... 
    Live in
    Work at office
    Local area

    Accenture

    Tampa, FL
    4 days ago
  •  ...Role - Devops Cloud Security Engineer Location -Louisville, KY Duration - Fulltime Role Must Have Technical/Functional Skills • 5+ years of hands-on experience as a Cloud Engineer or Cloud Security Engineer. • 3+ years of hands-on experience with... 
    Full time

    Diverse Lynx

    Louisville, KY
    16 hours ago
  •  ...Devops Cloud Security Engineer Work location – San Antonio TX or Irvine, CA Mandatory skills – DevOps Handson expert and Cloud SECURITY Expert Domain – Finance Any certification required – DevOps and CloudSec certifications helps Key Responsibilities... 

    Diverse Lynx

    Irvine, CA
    2 days ago
  •  ...Job ID : 87846-1 Job Title : Devops Cloud Security Engineer Location: Louisville, KY 40202 Salary Range: $35 - $45/hr on W2/C2C all Inclusive Note : Only W2 Candidates. NO Visa / Work Permit / Employment Authorization Document Holding Candidates Allowed... 
    Work experience placement

    Artech

    Louisville, KY
    2 days ago
  •  ...Senior Cloud Security DevOps Engineer Our client is a Global Financial Services located in Atlanta. Our client is looking for a Senior Cloud Security DevOps Engineer to join the Cloud Security Team within Technology and Operations Risk. The candidate should have excellent... 

    ERS Search

    Atlanta, GA
    2 days ago
  • $50 - $60 per hour

     ...Job Title: Azure DevOps Cloud Security Engineer Location: Chicago, IL ( Onsite ) Position : ( C2C Role ) Duration : ( 6+ Months) Pay Range : $50 - 60/Hr Skills: Azure, IAM, Cloud Infrastructure. Job Description: 1.Design hybrid Workforce... 

    Diverse Lynx

    Chicago, IL
    2 days ago
  •  ...Job title - Devops CloudSecurity Engineer Work location - San Antonio TX or Irvine, CA Is it Hybrid, onsite or remote position - Onsite...  ...- Mandatory skills - DevOps Handson expert and Cloud SECURITY Expert Minimum years of experience needed in the required... 
    Contract work
    Work experience placement
    Immediate start
    Remote work

    eTeam

    Irvine, CA
    3 days ago
  • $171.6k - $302.2k

    Apple Inc. is seeking a Security Engineer in San Diego, California to ensure the security of systems and infrastructure. Responsibilities include implementing security measures and guiding engineers to enhance security practices. The ideal candidate will have over 5 years... 

    Apple Inc.

    San Diego, CA
    3 days ago
  • $130k - $140k

     ...Mid-Level DevSecOps SME / Cloud Security Engineer (ISSE) Herndon, VA or Colorado Springs, CO Dark Wolf is looking for a Mid-Level DevSecOps...  ...Security Specialist (CKS), or cloud-specific professional DevOps/Security certifications The estimated salary range for... 
    Full time
    For contractors

    Dark Wolf Solutions

    Herndon, VA
    2 days ago
  •  ...Technology LLC is seeking a highly motivated DevSecOps / Cloud Security Engineer to join our engineering team. The ideal candidate will be...  ...implementing, and maintaining secure cloud infrastructure and DevOps pipelines across hybrid environments. This role focuses on... 

    TGS Technology

    Charlotte, NC
    4 days ago
  • A fast-growing software startup in Richmond, Virginia, is seeking a Senior DevOps Engineer. The ideal candidate will improve AWS infrastructure, manage CI/CD pipelines, and enforce security best practices. Responsibilities include cloud security management, collaborating... 
    Full time
    Flexible hours

    BlueRock

    Richmond, VA
    6 hours ago
  •  ...The purpose of this is to procure qualified resource to design, implement, and enhance the State of Missouri's enterprise cloud security capabilities across multi-cloud environments. This includes advancing security architecture, automation, governance, and compliance... 
    Remote work

    RICEFW Technologies

    United States
    3 days ago
  • $65k - $80k

     ...Systems Security Engineer (Cybersecurity / Quarantine Release) Location: Dahlgren, VA (Hybrid - 3 days onsite / 2 remote) Employment Type: Contract-to-Hire / Full-Time Clearance: Active Secret required (Top Secret preferred) Certification: DoD 8570 IAT Level... 
    Full time
    Contract work
    Remote work

    Apex Systems

    King George, VA
    16 hours ago
  • Thorne is seeking a Senior DevSecOps / Security Engineer - Application & Cloud to enhance the security of our ecommerce platforms and applications. The role focuses on application security, AWS cloud components, and incorporates DevSecOps principles. We offer competitive... 

    Thorne

    Columbia, SC
    3 days ago
  • A leading defense contractor is seeking a DevSecOps Engineer to join their dynamic team in Huntsville, Alabama. The role requires expertise...  ..., cloud resources, and CI/CD processes, aiming to enhance security and efficiency. The ideal candidate will have a Bachelor's degree... 
    For contractors

    MB Solutions inc

    Huntsville, AL
    1 day ago
  •  ...Overview: Cyber Recovery Engineer Location: Chicago, IL Work Model: Hybrid...  ...strong foundation in infrastructure or security, prior exposure to regulated industries,...  ...database teams to understand dependencies in recovery sequencing. Skills: DevOPs
    Long term contract
    3 days per week

    Stellar IT Group

    Chicago, IL
    1 day ago
  •  ...Security Engineer Role: Security Engineer Location: Hybrid in Boston, MA Job Type: Contract Job Description: Key Responsibilities Implement, configure, and maintain Google SecOps (Chronicle SIEM + SOAR) Own SecOps platform configuration end-to-end... 
    Contract work
    Immediate start
    Relocation

    JConnect Infotech

    Boston, MA
    2 days ago
  •  ...benefits, paid time off, and more! Become a part of the team today!****** We are seeking a highly skilled and experienced Senior Security Engineer to join our dynamic Information Security team. Reporting to the Manager SecOps, the ideal candidate will possess extensive... 
    Monday to Friday
    Afternoon shift

    Police & Fire Federal Credit Union

    Philadelphia, PA
    2 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to DevOps Security Engineer. Be the first to apply!