Divergent logo

Divergent

DevSecOps Engineer at Divergent

Torrance, California, United StatesFull-time54-ITPosted 6 days ago
Apply with Pipeline

About the Role

<div class="content-intro"><p>Divergent is building the new industrial age. Every day, our teams design, manufacture, and assemble advanced systems for some of the world’s most demanding industries. Our integrated engineering and manufacturing platform transforms complex designs into production-ready solutions, helping customers move faster, build smarter, and deliver critical systems when they matter most. Divergent is a qualified Tier 1 supplier to global automotive OEMs and supports leading U.S. aerospace and defense companies.&nbsp;</p> <p>Join us and help push the boundaries of what can be built.</p></div><h2>Purpose</h2> <p><span class="TextRun SCXW117836450 BCX0" lang="EN-US" data-contrast="auto"><span class="NormalTextRun SCXW117836450 BCX0">We are seeking a </span><span class="NormalTextRun SpellingErrorV2Themed SCXW117836450 BCX0">DevSecOps</span><span class="NormalTextRun SCXW117836450 BCX0"> Engineer to embed security into every stage of the software delivery lifecycle, from the first commit through production operation. Divergent Technologies Inc. builds and </span><span class="NormalTextRun SCXW117836450 BCX0">operates</span><span class="NormalTextRun SCXW117836450 BCX0"> a digital manufacturing platform in which software, hardware, and physical production are tightly coupled, which means the pipelines that ship our code </span><span class="NormalTextRun SCXW117836450 BCX0">warrant</span><span class="NormalTextRun SCXW117836450 BCX0"> the same protection as the code itself. In this role you will own the automation that makes secure delivery the default rather than the exception: hardened CI/CD pipelines, policy-as-code guardrails, reproducibly provisioned cloud infrastructure, and vulnerability findings that reach the responsible engineer with enough context to act on. You will partner with software, platform, and IT teams to reduce risk without slowing delivery, treating security controls as engineering problems to be solved with tooling rather than checklists to be enforced after the fact.</span></span><span class="EOP Selected SCXW117836450 BCX0" data-ccp-props="{&quot;201341983&quot;:0,&quot;335559739&quot;:160,&quot;335559740&quot;:240}">&nbsp;</span></p> <h2>The Role</h2> <ul> <li><span data-contrast="auto">Design, build, and maintain CI/CD pipelines with automated security gates — static analysis, software composition analysis, secrets detection, container image scanning, and infrastructure-as-code policy checks — that fail fast and produce actionable findings.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559739&quot;:60,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">Provision and manage cloud infrastructure as code across Azure and AWS environments and enforce configuration standards through policy-as-code rather than manual review.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559739&quot;:60,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">Harden container and Kubernetes workloads, including base image lifecycle, admission control, runtime policy, network segmentation, and least-privilege workload identity.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559739&quot;:60,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">Own secrets management and pipeline authentication — vaulted credentials, short-lived tokens, and federated identity — and drive the elimination of long-lived static keys.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559739&quot;:60,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">Triage and prioritize vulnerability findings across source code, third-party dependencies, container images, and cloud posture; partner with engineering owners to drive remediation to closure against defined service levels.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559739&quot;:60,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">Build and maintain software supply chain controls, including dependency and lockfile hygiene, artifact signing and provenance, and software bill of materials generation and distribution.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559739&quot;:60,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">Instrument delivery and runtime environments for security observability by defining detections, dashboards, and alerting, and participate in response for pipeline and infrastructure incidents.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559739&quot;:60,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">Automate cloud security posture assessment and remediation across accounts and subscriptions, covering identity, network, logging, and encryption baselines.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559739&quot;:60,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">Support control mapping and audit evidence collection for applicable frameworks, favoring automated evidence generation over manual attestation.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559739&quot;:60,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">Raise the security baseline of other engineers through reusable pipeline templates, documented golden paths, code review, and hands-on mentoring.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559739&quot;:60,&quot;335559740&quot;:240}">&nbsp;</span></li> </ul> <h2>Basic Qualifications</h2> <ul> <li><span data-contrast="auto">Must be a U.S. Person as defined by the International Traffic in Arms Regulations (22 CFR §120.62) — a U.S. citizen, lawful permanent resident, or other protected individual.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559739&quot;:60,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">5–10 years of professional experience in DevOps, platform, site reliability, security, or software engineering, including at least 3 years with direct responsibility for securing CI/CD pipelines or cloud infrastructure.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559739&quot;:60,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">Bachelor's degree in Computer Science, Information Systems, Cybersecurity, Engineering, or a related technical field, or equivalent demonstrated experience.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559739&quot;:60,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">Production experience with at least one major cloud provider (Azure or AWS), including its identity and access management, networking, and logging services.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559739&quot;:60,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">Hands-on experience building and maintaining pipelines in a modern CI/CD system such as GitHub Actions, GitLab CI, Azure Pipelines, or Jenkins.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559739&quot;:60,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">Proficiency with infrastructure as code (Terraform, Bicep, CloudFormation, or Pulumi), with changes managed through version control and peer review.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559739&quot;:60,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">Working knowledge of containers and orchestration (Docker and Kubernetes), including image hardening and cluster access control.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559739&quot;:60,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">Automation and scripting ability in Python, Go, Bash, or PowerShell sufficient to build internal tooling and integrate vendor APIs, not solely to configure existing tools.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559739&quot;:60,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">Practical experience integrating and operating application security tooling (Blackduck or Rapid7) — SAST, software composition analysis, secrets scanning, and image scanning — and triaging its output.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559739&quot;:60,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">Solid grasp of core security concepts, including least privilege, network segmentation, key management, authentication and authorization protocols (OAuth 2.0, OIDC, SAML), and common vulnerability classes such as the OWASP Top 10.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559739&quot;:60,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">Experience with Git-based team workflows, code review, and branch protection.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559739&quot;:60,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">Clear written and verbal communication, with the ability to explain security risk and engineering tradeoffs to both technical and non-technical audiences.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559739&quot;:60,&quot;335559740&quot;:240}">&nbsp;</span></li> </ul> <h2>Preferred Qualifications</h2> <ul> <li><span data-contrast="auto">Experience in an export-controlled or otherwise regulated environment (ITAR/EAR, CMMC, NIST SP 800-171), or in aerospace, automotive, or advanced manufacturing.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559739&quot;:60,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">Exposure to manufacturing or operational technology systems, including securing build, test, or production-floor systems that cannot tolerate unplanned downtime.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559739&quot;:60,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">Software supply chain security experience with SBOM tooling (Syft, CycloneDX, SPDX), artifact signing (Sigstore/cosign), SLSA provenance, or platforms such as Black Duck, Snyk, or Dependency-Track.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559739&quot;:60,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">Policy-as-code experience with Open Policy Agent/Rego, Kyverno, Conftest, Checkov, or cloud-native policy engines.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559739&quot;:60,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">Kubernetes security depth, including admission controllers, service mesh mTLS, and runtime detection tooling such as Falco or Tetragon.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559739&quot;:60,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">Secrets platform experience with HashiCorp Vault, Azure Key Vault, or AWS Secrets Manager, including dynamically issued credentials.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559739&quot;:60,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">Detection engineering or SIEM experience (Microsoft Sentinel, Splunk, or Elastic), including log pipeline design and tuning.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559739&quot;:60,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">Threat modeling experience and familiarity with the MITRE ATT&amp;CK framework.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559739&quot;:60,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">Observability tooling experience with Prometheus, Grafana, OpenTelemetry, or Datadog.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559739&quot;:60,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">Relevant certifications such as CISSP, CCSP, CKS, GIAC (GCSA, GCLD, GWAPT), or a cloud provider security specialty.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559739&quot;:60,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">Contributions to internal developer platforms, golden-path templates, or open-source security tooling.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559739&quot;:60,&quot;335559740&quot;:240}">&nbsp;</span></li> </ul> <h2>Work Environment</h2> <ul> <li><span data-contrast="auto">This is a hybrid on-site role located at our Torrance, CA headquarters.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559739&quot;:60,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">Standard schedule is Monday through Friday during core business hours, with flexibility required for occasional after-hours deployment windows, maintenance, and security incident response.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559739&quot;:60,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">Participation in a shared on-call rotation for pipeline and infrastructure incidents.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559739&quot;:60,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">Work is performed primarily in office and laboratory settings, with periodic time on the manufacturing floor where personal protective equipment is required.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559739&quot;:60,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">Prolonged periods of sitting and working at a computer.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559739&quot;:60,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">Occasional lifting and moving of equipment weighing up to 25 pounds.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559739&quot;:60,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">The role requires access to export-controlled technical data; continued access is contingent on maintaining U.S. Person status.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559739&quot;:60,&quot;335559740&quot;:240}">&nbsp;</span></li> </ul> <p><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559739&quot;:60,&quot;335559740&quot;:240}"></span></p> <p></p> <p><span class="TextRun SCXW117836450 BCX0" lang="EN-US" data-contrast="auto"><span class="NormalTextRun SCXW117836450 BCX0">teams to reduce risk without slowing delivery, treating security controls as engineering problems to be solved with tooling rather than checklists to be enforced after the fact.</span></span><span class="EOP Selected SCXW117836450 BCX0" data-ccp-props="{&quot;201341983&quot;:0,&quot;335559739&quot;:160,&quot;335559740&quot;:240}">&nbsp;</span></p> <h2>The Role</h2> <ul> <li><span data-contrast="auto">Design, build, and maintain CI/CD pipelines with automated security gates — static analysis, software composition analysis, secrets detection, container image scanning, and infrastructure-as-code policy checks — that fail fast and produce actionable findings.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559739&quot;:60,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">Provision and manage cloud infrastructure as code across Azure and AWS environments and enforce configuration standards through policy-as-code rather than manual review.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559739&quot;:60,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">Harden container and Kubernetes workloads, including base image lifecycle, admission control, runtime policy, network segmentation, and least-privilege workload identity.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559739&quot;:60,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">Own secrets management and pipeline authentication — vaulted credentials, short-lived tokens, and federated identity — and drive the elimination of long-lived static keys.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559739&quot;:60,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">Triage and prioritize vulnerability findings across source code, third-party dependencies, container images, and cloud posture; partner with engineering owners to drive remediation to closure against defined service levels.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559739&quot;:60,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">Build and maintain software supply chain controls, including dependency and lockfile hygiene, artifact signing and provenance, and software bill of materials generation and distribution.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559739&quot;:60,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">Instrument delivery and runtime environments for security observability by defining detections, dashboards, and alerting, and participate in response for pipeline and infrastructure incidents.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559739&quot;:60,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">Automate cloud security posture assessment and remediation across accounts and subscriptions, covering identity, network, logging, and encryption baselines.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559739&quot;:60,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">Support control mapping and audit evidence collection for applicable frameworks, favoring automated evidence generation over manual attestation.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559739&quot;:60,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">Raise the security baseline of other engineers through reusable pipeline templates, documented golden paths, code review, and hands-on mentoring.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559739&quot;:60,&quot;335559740&quot;:240}">&nbsp;</span></li> </ul> <h2>Basic Qualifications</h2> <ul> <li><span data-contrast="auto">Must be a U.S. Person as defined by the International Traffic in Arms Regulations (22 CFR §120.62) — a U.S. citizen, lawful permanent resident, or other protected individual.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559739&quot;:60,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">5–10 years of professional experience in DevOps, platform, site reliability, security, or software engineering, including at least 3 years with direct responsibility for securing CI/CD pipelines or cloud infrastructure.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559739&quot;:60,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">Bachelor's degree in Computer Science, Information Systems, Cybersecurity, Engineering, or a related technical field, or equivalent demonstrated experience.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559739&quot;:60,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">Production experience with at least one major cloud provider (Azure or AWS), including its identity and access management, networking, and logging services.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559739&quot;:60,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">Hands-on experience building and maintaining pipelines in a modern CI/CD system such as GitHub Actions, GitLab CI, Azure Pipelines, or Jenkins.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559739&quot;:60,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">Proficiency with infrastructure as code (Terraform, Bicep, CloudFormation, or Pulumi), with changes managed through version control and peer review.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559739&quot;:60,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">Working knowledge of containers and orchestration (Docker and Kubernetes), including image hardening and cluster access control.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559739&quot;:60,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">Automation and scripting ability in Python, Go, Bash, or PowerShell sufficient to build internal tooling and integrate vendor APIs, not solely to configure existing tools.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559739&quot;:60,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">Practical experience integrating and operating application security tooling (Blackduck or Rapid7) — SAST, software composition analysis, secrets scanning, and image scanning — and triaging its output.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559739&quot;:60,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">Solid grasp of core security concepts, including least privilege, network segmentation, key management, authentication and authorization protocols (OAuth 2.0, OIDC, SAML), and common vulnerability classes such as the OWASP Top 10.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559739&quot;:60,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">Experience with Git-based team workflows, code review, and branch protection.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559739&quot;:60,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">Clear written and verbal communication, with the ability to explain security risk and engineering tradeoffs to both technical and non-technical audiences.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559739&quot;:60,&quot;335559740&quot;:240}">&nbsp;</span></li> </ul> <h2>Preferred Qualifications</h2> <ul> <li><span data-contrast="auto">Experience in an export-controlled or otherwise regulated environment (ITAR/EAR, CMMC, NIST SP 800-171), or in aerospace, automotive, or advanced manufacturing.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559739&quot;:60,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">Exposure to manufacturing or operational technology systems, including securing build, test, or production-floor systems that cannot tolerate unplanned downtime.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559739&quot;:60,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">Software supply chain security experience with SBOM tooling (Syft, CycloneDX, SPDX), artifact signing (Sigstore/cosign), SLSA provenance, or platforms such as Black Duck, Snyk, or Dependency-Track.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559739&quot;:60,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">Policy-as-code experience with Open Policy Agent/Rego, Kyverno, Conftest, Checkov, or cloud-native policy engines.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559739&quot;:60,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">Kubernetes security depth, including admission controllers, service mesh mTLS, and runtime detection tooling such as Falco or Tetragon.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559739&quot;:60,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">Secrets platform experience with HashiCorp Vault, Azure Key Vault, or AWS Secrets Manager, including dynamically issued credentials.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559739&quot;:60,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">Detection engineering or SIEM experience (Microsoft Sentinel, Splunk, or Elastic), including log pipeline design and tuning.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559739&quot;:60,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">Threat modeling experience and familiarity with the MITRE ATT&amp;CK framework.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559739&quot;:60,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">Observability tooling experience with Prometheus, Grafana, OpenTelemetry, or Datadog.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559739&quot;:60,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">Relevant certifications such as CISSP, CCSP, CKS, GIAC (GCSA, GCLD, GWAPT), or a cloud provider security specialty.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559739&quot;:60,&quot;335559740&quot;:240}">&nbsp;</span></li> <li><span data-contrast="auto">Contributions to internal developer platforms, golden-path templates, or open-source security tooling.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559739&quot;:60,&quot;335559740&quot;:240}">&nbsp;</span></li> </ul> <h2>Compensation</h2> <p></p> <p>At Divergent, our pay range is based on the level of the job. For this role, we will consider candidates at levels S04 - S05 as evaluated through our interview process.&nbsp;</p> <ul> <li>INT S04/ Specialist 4: $115,843 - $156,729</li> <li>INT S05/ Senior Specialist: $133,766 - $180,977</li> </ul> <p><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559739&quot;:60,&quot;335559740&quot;:240}"></span></p><div class="content-pay-transparency"><div class="pay-input"><div class="title">Pay Range</div><div class="pay-range"><span>$115,843</span><span class="divider">&mdash;</span><span>$180,977 USD</span></div></div></div><div class="content-conclusion"><p><strong>What We Offer:</strong></p> <ul> <li><strong>Holistic Compensation Package:</strong> Enjoy a world-class compensation package that includes a competitive salary, equity plan, and discretionary results-based incentive bonus opportunities, ensuring you're truly valued for your contributions.</li> <li><strong>Wellness and Time Off: </strong>Embrace a healthy lifestyle with paid vacation, sick time, and company holidays, including a year-end shutdown to recharge. We support growing families with paid parental leave, recognizing the importance of bonding time.</li> <li><strong>Comprehensive Health and Wellness: </strong>Prioritize your well-being with our comprehensive health and wellness benefits, offering both HMO and Premium PPO options. Additionally, benefit from company-sponsored life insurance and short and long-term disability coverage for peace of mind.</li> <li><strong>Investment in Growth:</strong> We're committed to your professional development. Take advantage of reimbursement opportunities for learning and development initiatives, empowering you to continuously expand your skill set and reach peak performance.</li> <li><strong>Collaborative and High-Performing Environment:</strong> Join our collaborative, dynamic, and high-performing team within a fast-paced, mission-driven company. Together, we're disrupting the traditional manufacturing industry, fostering innovation, and integrating people and technology to reduce our footprint.&nbsp;</li> </ul> <p><br><strong><em>Equal Employment Opportunity</em></strong><br><em>Divergent is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability or veteran status, or any other applicable state or federal protected characteristic. Divergent provides affirmative action in employment for qualified Individuals with Disabilities and Protected Veterans in compliance with Section 503 of the Rehabilitation Act and the Vietnam Era Veterans’ Readjustment Assistance Act.</em><br><a href="https://www.eeoc.gov/sites/default/files/2023-06/22-088_EEOC_KnowYourRights6.12.pdf"><em>EEO Poster&nbsp;</em></a></p> <p><em>In order to adjust to changes in our business, it may become necessary to add, remove or modify certain duties and responsibilities, or to reassign you to another job position. From time to time you may be asked to work on special projects or to assist with other work. Your cooperation and assistance in performing such additional work is expected.&nbsp;</em><br><em>&nbsp;</em><br><strong><em>E-Verify: Right to Work</em></strong><br><em>Our company participates in <a href="https://e-verify.uscis.gov/web/media/resourcesContents/E-Verify_Participation_Poster_ES.pdf">E-Verify</a>. E-Verify is a program that electronically confirms a candidate’s eligibility to work in the United States after completing the Employment Eligibility Verification (Form I-9). The information provided on the Form I-9 is compared to the records contained in the Social Security Administration and Department of Homeland Security (DHS) databases. This helps employers verify the identity and employment eligibility of newly hired employees.</em><br><em><a href="https://www.e-verify.gov/sites/default/files/IER_RightToWorkPoster.pdf">Eligibility to Work Poster (English)</a> |&nbsp;<a href="https://www.e-verify.gov/sites/default/files/everify/posters/IER_RighttoWorkPosterES.pdf">Eligibility to Work Poster (Spanish)</a></em><br><em>&nbsp;</em><br><strong><em>Los Angeles Fair Chance Initiative for Hiring Ordinance (FCIHO)</em></strong><br><em>Pursuant to the Los Angeles Fair Chance Initiative for Hiring Ordinance (FCIHO), we will consider for employment qualified applicants with arrest and conviction records.</em></p> <p><strong><em>No agencies, no solicitations, and no calls please.</em></strong></p></div>