NeverHard

Senior DevSecOps Engineer at Fintel Connect — NeverHard

Senior DevSecOps Engineer at Fintel Connect in Vancouver, Greater Vancouver. Skills: AWS, Cloud Security, Cloud governance, DevSecOps, Infrastructure Automation. Apply on NeverHard.

Company
Fintel Connect
Location
Vancouver, Greater Vancouver
Type
full_time

Required skills:

Job DescriptionJob DescriptionSalary: $115,000.00 - $140,000.00 per year Who We Are: Fintel Connect is a fast growing fintech startup on a mission to helping financial services clients like Scotiabank, Wealthsimple, RBC and many others grow through meaningful partnerships. We're the leading affiliate and influencer marketing platform, network, agency and AI compliance engine exclusively built for fintech and banking - and looking for driven, creative and high-achieving marketers to join our team. The Why: A competitive base salary A rapidly growing organization with real career progression and continuous learning Comprehensive health and wellness benefits 5 Paid personal days Paid volunteer time to support causes that matter to you A balanced hybrid schedule with one remote day each week Team events and social perks Summer Fridays, every second Friday, start the weekend early The Role: As a Senior DevSecOps Engineer, you will lead the implementation and continuous improvement of cloud security, infrastructure automation, platform reliability, and DevSecOps practices within AWS. You will proactively identify and remediate security risks, strengthen cloud governance, improve system resilience, and embed security throughout the software development lifecycle. This role works closely with Engineering, IT, Security, and Product teams to build secure, scalable, and highly available cloud infrastructure that supports Fintel Connect's business objectives. The Responsibilities: AWS Cloud Infrastructure & Security Design, implement, and maintain secure AWS cloud infrastructure following AWS and industry best practices. Remediate vulnerabilities identified through: Penetration testing AWS Security Hub AWS Inspector Cloud Security Posture Management (CSPM) findings SOC 2 control assessments Perform security hardening across cloud environments and patch management, prioritizing Critical and High severity vulnerabilities (CVEs). Conduct regular reviews of AWS environments using the AWS Well-Architected Framework and recommend improvements for: Security Reliability Performance Scalability Cost optimization Operational excellence Administer AWS networking and infrastructure security, including: VPCs, Security Groups, Network ACLs, Firewalls Implement and maintain AWS Control Tower and governance best practices. Utilize AWS Trusted Advisor to improve security, performance, and cost efficiency. Continuously identify and remove unused or legacy cloud resources. Infrastructure Automation & Reliability Develop and maintain Infrastructure as Code (IaC) using Terraform and/or AWS CloudFormation. Automate cloud infrastructure deployment and operational processes. Improve infrastructure consistency, scalability, and operational efficiency. Design and maintain backup and disaster recovery strategies. Conduct periodic Disaster Recovery (DR) testing and validate Recovery Time Objectives (RTOs) and Recovery Point Objectives (RPOs). Support capacity planning and infrastructure optimization. Cloud Security Operations Implement continuous monitoring across AWS environments. Monitor logs, metrics, and alerts for suspicious activity. Investigate and respond to security incidents. Collaborate with Security teams to perform root cause analysis and implement preventative controls. Improve cloud detection and response capabilities. DevSecOps & CI/CD Security Secure CI/CD pipelines in accordance with Secure Pipeline Verification Standard (SPVS) and OWASP Secure Pipeline Verification guidance. Remediate vulnerabilities findings identified through: CI/CD security assessments and penetration testing GitHub Advanced Security SAST (Static Application Security Testing) DAST (Dynamic Application Security Testing) Software Composition Analysis (SCA) Implement and maintain API security testing solutions such as OWASP ZAP. Collaborate with development teams to embed security throughout the Software Development Lifecycle (SDLC). MongoDB Administration Maintain and support MongoDB environments. Manage database access, permissions, authentication, and credential lifecycle. Perform periodic access reviews and credential rotation. Enhance MongoDB monitoring and auditing and monitoring audit logs for suspicious or unauthorized activities Support database performance tuning, availability, backup, and recovery. Platform Monitoring & Observability Enhance monitoring, logging, and alerting across cloud infrastructure. Improve platform observability using Datadog, CloudWatch, or equivalent solutions. Develop operational dashboards and proactive alerting. Reduce operational risk through continuous monitoring. The Qualifications: Bachelor's degree in Computer Science, Information Technology, Engineering, or a related discipline. Minimum 5 years of experience in Cloud Infrastructure, DevSecOps, Site Reliability Engineering (SRE), DevSecOps, or a related role. One or more AWS certifications preferred: AWS Certified Solutions Architect Associate/Professional AWS Certified Security Specialty AWS Certified DevOps Engineer Professional Strong hands-on experience with AWS cloud services, infrastructure, security architecture, and AWS security services. Experience implementing Infrastructure as Code using Terraform and/or AWS CloudFormation. Experience managing CI/CD pipelines and integrating security into software delivery processes. Experience with vulnerability management, cloud security tooling, and remediation. Experience with monitoring and observability tools such as Datadog or CloudWatch. Experience administering MongoDB in production environments Familiarity with Python, JavaScript/TypeScript, and modern web frameworks such as React.js is an asset. Experience supporting backup, disaster recovery, and business continuity planning. Strong organizational skills and ability to work towards tight deadlines Strong written and verbal communication skills and effective problem-solving At Fintel Connect, we are committed to fostering a diverse and inclusive workplace as an equal opportunity employer. We embrace individuals of all backgrounds, ensuring that everyone has the opportunity to thrive and succeed.We believe that humans are an important and vital part of the recruitment process. We do not use AI in any part of our recruitment process. While we cant guarantee an interview, we do commit to review your application in full. Join us and be part of a team shaping the future of growth in the financial sector. For more about us, visit our website:Fintel Connect