N.C. Department of Information Technology is seeking a DevSecOps/Application Security Specialist to join their team in Wake County, NC. The role involves integrating security across the development lifecycle to ensure state services remain trusted and resilient.
About the Role
As a DevSecOps/Application Security Specialist, you will automate security testing within CI/CD pipelines, conduct threat modeling, code reviews, and application-level vulnerability assessments. You will enforce secure coding standards, collaborate with cloud and platform teams to implement Infrastructure-as-code security practices, and support compliance efforts aligned with state and federal frameworks.
About You
Required:
Experience integrating application security tools into automated development pipelines.
Experience with secure coding practices and/or threat modeling methodologies.
Hands-on experience in cloud platform security (e.g., AWS, Azure, or GCP).
Experience in scripting (e.g., Python, Bash) for automating security controls.
Experience with security compliance frameworks (e.g., NIST 800-53, OWASP Top 10, and CIS benchmarks).
Benefits
Medical insurance
Pension plan
Participation in health insurance options
Standard and supplemental retirement plans
NCFlex program with numerous high-quality, low-cost benefits on a pre-tax basis
Paid vacation, sick, and community service leave
Paid parental leave
Best funded pension plan/retirement system in the nation according to Moody’s Investor’s Service
Twelve holidays/year
Fourteen vacation days/year which increase with length of service
Twelve sick days/year which are cumulative indefinitely
Longevity pay lump sum payout yearly based on length of service
The N.C. Department of Information Technology promotes a stronger North Carolina through broadband, public safety, healthcare, cybersecurity and customer service.
Government AgencyCompany Size: 1001 - 5000IT Services and IT Consulting