Job Description A respected enterprise organization is seeking a
Technology and Data Engineer 5 for a hybrid opportunity in
Minneapolis, Minnesota.
In this role, you will help advance security practices across cloud infrastructure and software delivery environments by integrating security controls directly into the deployment process. The team is focused on improving Infrastructure as Code security, strengthening governance standards, and providing engineering teams with actionable feedback that supports secure deployments.
This position offers the opportunity to work on complex cloud security initiatives while partnering with development, platform, and DevOps teams to improve risk visibility, automate security validation, and enhance overall operational effectiveness. Required Skills & Experience
- 7+ years of Engineering experience, or equivalent demonstrated through one or a combination of the following: work or consulting experience, training, military experience, education.
- 8+ years in AppSec, Cloud Security, or DevSecOps with hands-on Terraform and Kubernetes security experience.
- Practical experience operating Wiz (or similar) for IaC in CI/CD environments.
- Policy as Code skills using OPA/Rego or equivalent rule tuning experience.
- Strong CI/CD knowledge and Git workflow experience.
- Excellent communication skills with the ability to support development teams and drive remediation efforts.
Desired Skills & Experience
- ServiceNow AVR/CVR/ITSM integration experience.
- JIRA or defect-routing experience.
- VS Code and IDE enablement experience.
- Cloud certifications including AWS, Azure, or GCP.
- Terraform Associate, CKA, or CKAD certifications.
- Python, Bash, or PowerShell scripting experience.
What You Will Be Doing Daily Responsibilities
- Design, implement, and tune custom IaC rules in Rego/OPA to extend security coverage beyond built-in capabilities.
- Build automated regression tests using Terraform plans, Kubernetes manifests, and sample repositories.
- Perform pipeline health checks and investigate failed security scans.
- Monitor platform availability and scanning effectiveness to minimize engineering disruption.
- Validate finding severity and remove duplicate or inaccurate results.
- Route security issues to the appropriate service and application owners.
- Tune policy-as-code controls in alignment with enterprise standards and governance requirements.
- Implement staged enforcement models using report, warning, and blocking controls.
- Integrate Wiz CLI into CI/CD workflows and configure security gates.
- Publish security artifacts for traceability and compliance reporting.
- Deploy and maintain Wiz DevOps extensions and scanning integrations.
- Support GitHub, GitLab, Azure DevOps, and Jenkins security workflows.
- Enable pull-request, merge-request, local workstation, and IDE-based scanning capabilities.
- Partner with platform engineering teams to standardize secure deployment templates.
- Deliver remediation guidance and support developer adoption efforts.
- Conduct office hours, troubleshooting sessions, and training activities.
- Manage policy package updates, platform upgrades, and regression testing efforts.
- Coordinate with vendors regarding defects, enhancements, and product roadmap items.
- Maintain findings exception processes and compensating-control documentation.
- Integrate findings management activities with ServiceNow workflows.
- Produce operational metrics, audit evidence, executive dashboards, and compliance reporting.
The Offer
- Hybrid Schedule
- 6-Month Contract
- W2 Only
You will receive the following benefits
- Medical Insurance
- Dental Benefits
- Vision Benefits
- Paid Time Off (PTO)
- 401(k)
Applicants must be currently authorized to work in the US on a full-time basis now and in the future.