DevSecops Engineer

Company Description
Talan is an international consulting and technology expertise group supporting Corporate and Investment Banking (CIB) and Financial Services clients through large-scale transformation programs driven by data, technology, and innovation.
In North America, Talan works with some of the largest U.S., French, and Japanese banks, delivering high-value expertise across front-office, risk, finance, regulatory, and technology domains.
With over 20 years of experience, a presence across five continents and 21 countries, and Great Place to Work® certification, the Group is on track to reach 8,000 employees worldwide, including 600 in North America.
Job Description
Location: NYC - 3 days per wee onsite.
Visa Sponsorship: Talan does not sponsor U.S. work permits or employment visas.
We are seeking a talented DevSecOps Engineer to join our team and work on secure CI/CD, cloud, and application delivery platforms.
The ideal candidate will have strong expertise in CI/CD automation, cloud infrastructure, and security integration, and will be passionate about embedding security throughout the software development lifecycle (SDLC).
Role and responsibilities
- Design, implement, and maintain secure, enterprise-grade CI/CD pipelines for application build, test, and deployment.
- Integrate security scanning, code quality checks, and vulnerability management into CI/CD workflows (SAST, compliance, policy enforcement).
- Automate infrastructure provisioning, configuration, and application deployment using Infrastructure as Code (IaC) and configuration management tools.
- Collaborate closely with development, QA, security, and operations teams to ensure security is embedded across all stages of the SDLC.
- Support and enhance cloud, containerized, and orchestration environments, with a strong focus on security best practices.
- Contribute to pipeline reliability, performance optimization, and ongoing operational support.
- Ensure high-quality, secure automation through scripting, testing, documentation, and best DevSecOps practices.
#LI-MNRK
Qualifications
- +2 years experience designing and maintaining enterprise-grade CI/CD pipelines using GitHub, GitHub Actions, and Jenkins (scripted and declarative pipelines).
- Hands-on experience integrating security and code quality tools into CI/CD workflows, including SonarQube and Fortify (SAST, vulnerability scanning, policy enforcement).
- Solid knowledge of Infrastructure as Code (IaC) and automation using Terraform or CloudFormation, as well as configuration management tools such as Ansible and Puppet.
- Proficiency in scripting and automation, including Bash, Python, and Groovy.
- Strong hands-on experience with AWS cloud services, including EC2, S3, IAM (roles and policies), VPC networking, CloudWatch, SSM, and ECS/EKS.
- Experience working in secure, regulated, or enterprise environments, with a strong understanding of DevSecOps best practices.
- Ability to collaborate effectively with cross-functional teams (development, QA, security, and operations).
- Nice to have: experience with Docker, OpenShift, Helm, and container orchestration platforms.
Company’s Benefits
At Talan, we invest in our employees' well-being and empower them with benefits, including:
- 💵 The salary range for this role is US$90,000 - US$105,000
- 💸401(k) retirement plan with company matching
- 🌴15 days of paid vacation per year at hire and up to 27 according to seniority (annual untaken vacation days are cashed out)
- 📴8 paid holidays + 5 sick days + 2 personal days per year
- ❤️🩹Company health, dental, and vision insurance plans + FSA
- 🦺Voluntary STD and LTD
- 🚍 Commuter/transit benefits
All your information will be kept confidential according to EEO guidelines.