Principal DevSecOps Engineer
DTCC
The impact you will have in this role:
In this role, you will be responsible for the functional and technical design of Identity and Access Management (IAM)‑centric DevSecOps and automation solutions. You will drive automation best practices and industry standards, ensure alignment with regulatory and compliance requirements, coordinate testing, and implementation activities, and provide technical leadership to IAM and DevSecOps teams. The role also serves as a key technology liaison across IT, security, platform engineering, business partners, and external stakeholders to deliver secure, scalable, and automated identity solutions.
Your Primary Responsibilities:
- The design and implementation of standardized automation solutions across provisioning, deprovisioning, access, governance, certificate lifecycle, and secret management.
- Security by design and zero trust principles into automation workflows.
- Partner with IAM architects, security teams, and application teams to translate IAM requirements into reusable automation patterns.
- Own the engineering and operation design practices for the Identity and Access Management Program.
- DevSecOps & CI/CD Enablement
- Build and manage CI/CD pipelines using Jenkins for automation.
- Integrate security gates, compliance checks, and cryptographic policy validation into pipelines.
- Enable automated testing, approvals, and rollback mechanisms aligned with DevSecOps practices.
- Infrastructure as Code & Configuration Management
- Develop reusable Terraform modules for IAM, PKI, and cloud security infrastructure.
- Use Ansible for configuration management, orchestration, and operational automation.
- Ensure infrastructure definitions are version-controlled, compliant, and auditable.
- Development & Scripting
- Develop automation frameworks, APIs, and utilities using Python and PowerShell
- Integrate IAM, PKI, cloud, and security platforms via REST APIs.
- Ensure code quality, testing, documentation, and reusability standards.
- Leadership, Standards & Governance
- Act as solution lead for IAM, DevSecOps, and PQC automation initiatives.
- Mentor engineers and perform design and code reviews.
- Engage with senior stakeholders to communicate roadmap, risks, and progress.
- Ensures solutions adhere to security policies and standards of firm and industry.
**NOTE: The Primary Responsibilities of this role are not limited to the details above. **
Qualifications:
- Minimum of 10+ years' experience in software development and architecture
- Bachelor's degree in computer software or related field and/or equivalent experience
Talents Needed for Success:
- Strong hands-on scripting (Python, PowerShell, Bash).
- Experience with Terraform, Ansible
- CI/CD tools (Jenkins, GitHub Actions, GitLab CI, Azure DevOps).
- API integration and workflow automation.
- Strong understanding of secure SDLC.
- Container security (Docker, Kubernetes).
- Strong stakeholder communication.
- Ability to define and enforce engineering standards.
- Strategic thinking with hands-on execution capability.
- Experience leading technical initiatives across teams.
- Experience in Identity and Access Management platforms and architecture subject areas.
- Expertise in working in large, collaborative teams to achieve organizational goals.
- Experience leading enterprise security automation transformation.
- Knowledge in PQC, PKI and Cryptographic concepts
DTCC proudly supports Flexible Work Arrangements favoring openness and gives people freedom to do their jobs well, by encouraging diverse opinions and emphasizing teamwork. When you join our team, you’ll have an opportunity to make meaningful contributions at a company that is recognized as a thought leader in both the financial services and technology industries. A DTCC career is more than a good way to earn a living. It’s the chance to make a difference at a company that’s truly one of a kind.
Learn more about Clearance and Settlement by clicking here.
IT Risk and Data Services department seeks to meet our clients’ needs by capitalizing on the progress made in both the Risk Technology Program and the Data Analytics work and driving adoption of these capabilities across the enterprise. Important initiatives like the Modernization and Resiliency Programs count on these foundational capabilities to succeed.
In this role, you will be responsible for the functional and technical design of Identity and Access Management (IAM)‑centric DevSecOps and automation solutions. You will drive automation best practices and industry standards, ensure alignment with regulatory and compliance requirements, coordinate testing, and implementation activities, and provide technical leadership to IAM and DevSecOps teams. The role also serves as a key technology liaison across IT, security, platform engineering, business partners, and external stakeholders to deliver secure, scalable, and automated identity solutions.