Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

DevSecOps Architect - Artifact Management & Software Supply Chain Security

$125k - $165k

S&P Global HQ North America

Key Responsibilities Design, deploy, and operate enterprise artifact repository platforms supporting cloud and hybrid environments. Define and enforce package curation, promotion, and trust models aligned with application security and compliance requirements. Implement and govern waiver and approval workflows for dependency and artifact usage, ensuring risk‑based decision‑making. Partner with AppSec, platform, and engineering teams to standardize secure dependency and artifact consumption patterns. Define and maintain repository architectures supporting multiple environments, teams, and trust boundaries. Enforce policies ensuring artifact immutability, provenance, versioning, and trusted sourcing. Integrate artifact repositories into CI/CD pipelines built on GitHub, Jenkins, and Azure DevOps. Embed security controls for AI/ML and GenAI workloads within CI/CD pipelines and developer workflows. Define and enforce secure usage patterns for LLMs and AI services, including prompt handling, data protection, and model access controls. Implement safeguards against AI‑specific threats, including prompt injection, model poisoning, data leakage, and insecure model outputs. Integrate AI security scanning and validation into build pipelines, ensuring safe model usage and dependency integrity. Collaborate with engineering teams to establish secure‑by‑design AI application architectures. Ensure compliance with enterprise Responsible AI policies (data privacy, bias management, model governance). Secure AI‑related secrets, tokens, and API access used in pipelines and applications. Monitor and respond to security risks introduced by AI/ML components, including third‑party models and APIs. Contribute to AI risk governance, auditability, and traceability across the SDLC. Stay current on emerging AI security threats, vulnerabilities, and regulatory expectations. Align artifact and dependency controls with cloud security best practices for deployed applications. Monitor usage, risk posture, and effectiveness of artifact controls and drive continuous improvement. Develop automation and policy‑as‑code for artifact lifecycle management, approvals, and governance. Support security incident investigations related to software supply chain integrity or dependency risk. Create documentation, standards, and enablement materials for secure developer adoption. Required Qualifications Bachelor’s degree in Computer Science, Engineering, Cybersecurity, or equivalent experience. 3–6 years of experience in DevSecOps, platform security, or software supply chain security. Strong hands‑on experience with JFrog Artifactory, including deployment and enterprise architecture. Experience designing package curation and promotion models. Foundational understanding of AI/ML and Generative AI concepts, including LLMs and model lifecycle. Knowledge of AI/ML security risks such as prompt injection, data poisoning, model evasion, and data leakage. Experience integrating AI or ML components into applications or pipelines (preferred hands‑on exposure). Familiarity with Responsible AI principles and AI governance frameworks. Experience implementing waiver and approval workflows for dependencies and artifacts. Strong understanding of application security principles and dependency risk management. Hands‑on experience integrating repositories with GitHub, Jenkins, and Azure DevOps pipelines. Experience working in cloud environments (Azure preferred; AWS/GCP acceptable). Proficiency with automation and scripting (Python, Groovy, Terraform, etc.). Knowledge of modern SDLC and DevSecOps operating models. Compensation & Benefits Information (This section is only applicable to US candidates) S&P Global states that the anticipated base salary range for this position is $125,000 to $165,000. Final base salary for this role will be based on the individual’s geographic location, as well as experience level, skill set, training, licenses and certifications. In addition to base compensation, this role is eligible for an annual incentive plan. This role is not eligible for additional compensation such as an annual incentive bonus or sales commission plan. This role is eligible to receive additional S&P Global benefits. For more information on the benefits we provide to our employees, please click here ( . Health & Wellness: Health care coverage designed for the mind and body. Flexible Downtime: Generous time off helps keep you energized for your time on. Continuous Learning: Access a wealth of resources to grow your career and learn valuable new skills. Invest in Your Future: Secure your financial future through competitive pay, retirement planning, a continuing education program with a company-matched student loan contribution, and financial wellness programs. Family Friendly Perks: It’s not just about you. S&P Global has perks for your partners and little ones, too, with some best‑in‑class benefits for families. Beyond the Basics: From retail discounts to referral incentive awards—small perks can make a big difference. Equal Opportunity Employer S&P Global is an equal opportunity employer and all qualified candidates will receive consideration for employment without regard to race/ethnicity, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, marital status, military veteran status, unemployment status, or any other status protected by law. Only electronic job submissions will be considered for employment. If you need an accommodation during the application process due to a disability, please send an email to: View email address on click.appcast.io and your request will be forwarded to the appropriate person. US Candidates Only: Know Your Rights: Workplace discrimination is illegal ( 103 - Middle Management (EEO Job Group) (inactive), 10 - Officials or Managers (EEO-2 Job Categories-United States of America), IFTECH103.2 - Middle Management Tier II (EEO Job Group) Job ID: 328396 Posted On: 2026-05-25 Location: Princeton, New Jersey, United States #J-18808-Ljbffr S&P Global

Vacancy posted 18 hours ago
Similar jobs that could be interesting for youBased on the DevSecOps Architect - Artifact Management & Software Supply Chain Security in New York, NY vacancy
  • Join our Team as a Hands-On Lead Principal Architect, DevSecOps! If you have a passion for integrating security into the software development process and are excited to play...  ...that ensure seamless security integration and artifact handoff. Engineering Team Enablement:... 
    Software
    Work at office
    2 days per week

    Broughton Group

    New York, NY
    18 hours ago
  • Broughton Group is seeking a Hands-On Lead Principal Architect to help shape enterprise architecture for secure software delivery. This hybrid role involves...  ...senior architecture, candidates will drive the DevSecOps strategy and governance across the enterprise. Competitive... 
    Software

    Broughton Group

    New York, NY
    18 hours ago
  •  ...IT infrastructure and supply chain processes by delivering...  ...top manufacturers, managed and professional services...  ..., proprietary software, and patented business...  ...objective of the Regional Security Sales Director (RSSD)...  ...teamed with the regional architect assigned to a geographical... 
    Software
    Work at office
    Flexible hours

    Niche Talent Finders

    New York, NY
    2 days ago
  •  ...A leading financial group is seeking a Senior DevSecOps Engineer in Jersey City. This role requires strong experience in DevOps, CI/CD model, and security integration in software development. The ideal candidate will have over 7 years in the field, strong programming... 
    Software

    MUFG Americas

    Jersey City, NJ
    1 day ago
  •  ...in Jersey City is looking for a Senior DevSecOps Engineer to lead the modernization of DevSecOps...  .... This role focuses on driving security-first automation across cloud-native architectures...  ...7+ years in DevOps, solid experience in software development, and strong skills in AWS... 
    Software

    MUFG Bank, Ltd

    Jersey City, NJ
    1 day ago
  •  ...Jobright.ai is looking for a DevSecOps Software Engineer SME to lead a dedicated team in delivering architectural guidance and developing marketing strategies. This remote role is open to U.S. candidates and requires 15+ years of experience in DevOps and Cloud environments... 
    Software
    Remote work
    Flexible hours

    jobright.com

    New York, NY
    5 days ago
  • $98.15k - $120.79k

     ...cloud modernization, software development, data analytics...  ...The Service Management Platform (SMP) Management...  ...ensures platform stability, security, and compliance while...  ...The ServiceNow Architect aligns as an E3 position...  ...architecture diagrams, and ATO artifacts. Requirements Bachelor... 
    Software
    Local area

    9th Way Insignia

    New York, NY
    5 days ago
  • $100k - $125k

     ...Sr. Architect - Enterprise Application - Oracle SReady to turn bold...  ...and implement database security policies and best practices;...  ...Information Technology, Masters - Software...  ..., Automated Testing, Change Management, Client Relations, Collaboration... 
    Software
    Shift work

    Genpact

    New York, NY
    1 day ago
  •  ...Customer Success Architect - Federal Government Remote...  ...orchestration platform for DevSecOps. GitLab enables...  ...operational efficiency, reduce security and compliance risk,...  ...better, more secure software faster. The same...  ...coordinate with Product Management, Engineering, Sales, Professional... 
    Software
    Remote work

    GitLab

    New York, NY
    5 days ago
  • $240k - $265k

     ...Title: Principal Architect Location: New...  ...stakeholder management skills, and the ability...  ...into scalable, secure, and practical...  ...technology consulting, software engineering, or...  ...architecture artifacts suitable for both...  ...Experience with DevSecOps, build and release... 
    Software
    Minimum wage
    Work at office
    Local area
    Remote work
    Work from home
    Flexible hours
    3 days per week
    1 day per week

    Marsh McLennan

    New York, NY
    2 days ago
  •  ...Working knowledge of SMP/E software installation process, analysing...  ...Adhere to Travelers change management processes regarding change...  ...exploitation, proof of concepts, security enhancements, etc. Attend...  ...Software Engineer II, Supply Chain Senior Software Engineer, Fabric... 
    Software
    Permanent employment
    Contract work
    Temporary work
    Remote work
    Worldwide

    Smart IT Frame

    New York, NY
    5 days ago
  • $140k - $155k

     ...Walker & Dunlop is looking for a Senior Cloud and Software Development Security Engineer to secure its cloud and application environments, including AWS and Azure. This role involves designing security architectures, guiding developers on secure practices, and ensuring... 
    Software

    Walker & Dunlop

    New York, NY
    4 days ago
  • $120k - $160k

     ...Robotics FORT Robotics is the safety and security layer for smart machines and...  ...Controllers, Endpoint Controllers, and the FORT Manager software suite — gives builders and operators...  ...you. About the job As the Manager of Supply Chain at FORT Robotics, you will take ownership... 
    Software
    Contract work
    Remote work
    Flexible hours

    SCALIS

    New York, NY
    1 day ago
  •  ...decision makers to evangelize building secure and reliable software. Our sales team walks a mile in...  ...inbound and outbound leads, develop and manage leads funnel Manage business and...  ...eliminate threats in their software supply chains. Founded by the industry's leading experts... 
    Software
    Local area
    Remote work
    Flexible hours

    Chainguard

    New York, NY
    5 days ago
  • $131k - $260k

     ...Senior Manager, DevSecOps What you'll do...  ...teams integrating security into our DevOps,...  ..., and efficient software delivery across...  ...leader who can architect secure solutions...  ...security, and AI supply chain risk management....  ...scanning for AI artifacts including model... 
    Software

    DoubleVerify

    New York, NY
    4 days ago
  •  ...CloudSEK , one of India’s most trusted Cyber security product companies, is on a mission to...  ..., and then provides workflows to manage and remediate all identified threats...  ...CloudSEK’s Contextual AI SVigil identifies software supply chain risks by monitoring Software, Cloud... 
    Software
    Flexible hours

    Crane Venture Partners

    New York, NY
    5 days ago
  •  ...Sales activities. • Manage a team of technical consultants...  ...of 3rd party software products as well as the...  ...and design artifacts that clearly convey both...  ...• Design appropriate security controls in every solution...  ...Document business processes, supply chain scenarios and overall... 
    Software
    Full time

    Zortech Solutions

    Jersey City, NJ
    5 days ago
  • $72.31k - $123.96k

     ...everyday with us! The Security Systems Senior Sales Executive...  ...plans to grow, develop, and manage contractor, consultant,...  ...independently. Salesforce CRM?? Software, IoT, and networking...  ...factories, resilient supply chains, and smarter buildings and grids... 
    Software
    Permanent employment
    Full time
    For contractors
    Work at office
    Immediate start
    Night shift

    Siemens

    New York, NY
    3 days ago
  • $90k - $110k

     ...Description Job Title: Marketing Operations Manager Job Type: Full-time Location: Remote -...  ...to deliver scalable, compliant, and secure software, empowering developers to do their best...  ...organizations at every step of their DevSecOps journey, whether using Jenkins on-premise... 
    Software
    Full time
    Temporary work
    For contractors
    Local area
    Remote work
    Flexible hours

    CloudBees

    New York, NY
    5 days ago
  • $85k - $110k

     ...EUC Release Manager • Own and govern the end-to-end EUC release pipeline...  ..., rollback playbooks as living artifacts • Coordinate with application owners, security teams, and service desk to align...  ...-level knowledge of SCCM / MECM software distribution, OSD, patch... 
    Software
    Permanent employment
    Work at office

    Tata Consultancy Services

    New York, NY
    3 days ago
  • $125.77k - $205k

     ...Job Overview The Oracle Fusion Supply Chain Management (SCM) Consultant delivers Enterprise Resource Planning (ERP) solutions that help our healthcare...  ...and best practices. Proficient with office productivity software such as Word, Excel, PowerPoint, Outlook; experience with... 
    Software
    Contract work
    Work experience placement
    Work at office

    100 Impact Advisors LLC

    New York, NY
    4 days ago
  • $160k - $237k

     ...Semgrep, the leader in code security for builders, empowers invention...  ...positives across Code and Supply Chain, dramatically shrinking the...  ...Senior/Staff Product Manager to join our small, but mighty...  ...of PM experience, managing software products from inception through... 
    Software
    Currently hiring
    Work at office
    Local area
    Remote work
    Weekend work
    2 days per week

    Semgrep

    New York, NY
    1 day ago
  • DoubleVerify in New York is looking for a Senior Manager, DevSecOps, to oversee security integration across DevOps, CI/CD, and AI pipelines. The role involves leading multiple engineering teams, mentoring talent, and shaping the security strategy that covers both traditional... 

    DoubleVerify

    New York, NY
    2 days ago
  •  ...Shape secure digital experiences and drive Customer Identity and Access Management strategy and customer security. If you are excited...  ...solutions. As a Senior Lead Architect at JPMorgan Chase within the...  ...architecture solutions for various software applications and platform... 
    Software

    Aumni

    Jersey City, NJ
    1 day ago
  • $100k

     ...Manifest is on a mission to secure the global software and AI supply chain. Our platform automates the discovery and...  ...revenue. You will directly manage a Team of Federal Account Executives...  ...in software supply chain security, DevSecOps, or AI security Deep understanding... 
    Software
    Contract work
    For contractors
    Remote work

    Manifest Cyber Public

    New York, NY
    5 days ago
  • $180k - $190k

     ...Senior Security Engineer (DevSecOps) Remote in US (workingండ్ EST hours)รุ่ง...  ...to the CTO and lets you architect the entire security program...  ...like SIEM and identity management. Requirements 5+ years...  ...implementing and improving software supply chain security, integrating... 
    Software
    Full time
    Remote work
    Visa sponsorship

    D24 Search

    New York, NY
    5 days ago
  • $135.6k - $210k

     ...Semgrep, the leader in code security for builders, empowers invention...  ...positives across Code and Supply Chain, dramatically shrinking the...  ...a Senior Product Marketing Manager, your work will be critical...  ...our audience of security and software engineers to understand the... 
    Software
    Currently hiring
    Local area
    Remote work
    Weekend work

    Semgrep, Inc

    New York, NY
    5 days ago
  •  ...Director, Infrastructure & Information Security About Core Education Core Education is a...  ...7 incident response. ITIL‐based service management across change, incident, problem, and request...  ...the practice budget for hardware, software, licensing, telecom, training, and contractor... 
    Software
    Contract work
    For contractors
    Remote work

    Core Education, LLC

    New York, NY
    5 days ago
  •  ...Cloudsmith is transforming how organizations handle software artifacts and secure their supply chains. As a fully managed multi-tenant Software as a Service (SaaS)...  ...Architecture: Analyze customer environments and architect scalable, secure, and reliable solutions using... 
    Software
    Work experience placement
    Work at office
    Remote work
    Worldwide
    Flexible hours

    Cloudsmith

    New York, NY
    a month ago
  • $145k - $210k

     ...Semgrep, the leader in code security for builders, empowers invention...  ...positives across Code and Supply Chain, dramatically shrinking the...  ...Senior Technical Account Manager (TAM) is a critical role that...  ...background or genuine interest in DevSecOps or AppSec ~ Engineering or... 
    Currently hiring
    Local area
    Remote work
    Weekend work

    Semgrep, Inc

    New York, NY
    5 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to DevSecOps Architect - Artifact Management & Software Supply Chain Security. Be the first to apply!