Role Description
Trility Consulting is seeking a Principal DevSecOps Consultant to lead a short-term engagement focused on establishing secure secrets management patterns, strengthening application security practices, and creating repeatable DevSecOps standards across a modern Azure-based environment.
In this role, you will serve as a trusted advisor and hands-on technical leader, partnering with engineering and architecture teams to:
-
Assess current-state practices, identify security gaps, and design future-state patterns.
-
Implement foundational security controls.
-
Design and implement secure secrets management solutions.
-
Establish application security standards.
-
Improve SDLC controls.
-
Create reusable guidance that can be adopted across multiple teams and applications.
The ideal consultant combines enterprise architecture thinking with hands-on engineering expertise and is comfortable moving between technical implementation, security assessment, stakeholder discussions, and technical coaching.
This is a remote 1099 consulting engagement anticipated to last 6 weeks with potential to extend further.
Qualifications
-
5+ years of experience in DevSecOps, Cloud Architecture, Application Security, Platform Engineering, or related disciplines.
-
Strong experience designing and implementing enterprise secrets management solutions.
-
Hands-on experience with Azure Key Vault, Managed Identities, and Azure-native security patterns.
-
Strong Azure architecture experience, including secure application integration and cloud security best practices.
-
Experience designing and implementing secure application development and deployment patterns.
-
Strong Python development experience with the ability to design and implement reusable security frameworks and application patterns.
-
Working knowledge of .NET application architectures and secure application integration practices.
-
Experience designing and implementing DevSecOps controls within CI/CD pipelines and software delivery workflows.
-
Experience with Azure DevOps and modern source control and deployment practices.
-
Experience implementing secret scanning, security validation, and secure deployment controls within software delivery pipelines.
-
Experience troubleshooting complex deployment, networking, authentication, and security issues across cloud-native application environments.
-
Ability to assess existing environments, identify gaps, and develop practical remediation plans.
-
Strong written and verbal communication skills with the ability to influence senior technical stakeholders and engineering leadership.
Requirements
-
Must reside within the United States.
-
Must be authorized to work in the United States without sponsorship now or in the future.
-
Must be able to pass a background check.
Benefits
-
Work remotely anywhere in the United States with flexible work hours.
-
Sponsored and supported learning opportunities.