Job Description
Insight Global is looking for a DevSecOps Architect to join one of our state and local government clients in a hybrid role out of Lansing, Michigan. This person will serve as a strategic and technical leader within the Secure Application Development Lifecycle program, driving secure by design practices, modernizing application security capabilities, and advancing enterprise DevSecOps maturity. They will be responsible for making sure applications are built and deployed securely. They will help developers, security teams, and IT teams work together so security is included from the start and set the overall security strategy, choose security tools, coach teams, and make sure everything follows company standards and government security requirements. Other responsbilites include:
• Design and maintain secure application security testing platforms and DevSecOps solutions
• Conduct security architecture reviews for applications, systems, cloud environments, and integrations
• Implement and enforce secure SDLC, DevSecOps automation, and security best practices
• Evaluate, recommend, and integrate security tools and technologies aligned with enterprise standards
• Define and validate application, infrastructure, database, and platform security requirements
• Develop security architecture documentation, technical standards, and design specifications
• Support implementation of security controls, including NIST, CIS, encryption, access management, and compliance requirements
• Provide technical guidance on secure database design, data protection, and application security
• Oversee network and perimeter security architecture, including segmentation, firewall policies, and zero-trust principles
• Govern and secure Microsoft Power Platform environments through DLP policies, connector controls, environment strategy, and enterprise guardrails
• Collaborate with development, infrastructure, and architecture teams to resolve security risks and ensure compliant deployments
$45/hr to $60/hr : Exact compensation may vary based on several factors, including skills, experience, and education.
Benefit packages while on contract for this role will start on the 31st day of employment and include medical, dental, and vision insurance, as well as HSA, FSA, and DCFSA account options, and 401k retirement account access with employer matching. Employees in this role are also entitled to paid sick leave and/or other paid time off as provided by applicable law.
We are a company committed to creating diverse and inclusive environments where people can bring their full, authentic selves to work every day. We are an equal opportunity/affirmative action employer that believes everyone matters. Qualified candidates will receive consideration for employment regardless of their race, color, ethnicity, religion, sex (including pregnancy), sexual orientation, gender identity and expression, marital status, national origin, ancestry, genetic factors, age, disability, protected veteran status, military or uniformed service member status, or any other status or characteristic protected by applicable laws, regulations, and ordinances. If you need assistance and/or a reasonable accommodation due to a disability during the application or recruiting process, please send a request to HR@insightglobal.com.To learn more about how we collect, keep, and process your private information, please review Insight Global's Workforce Privacy Policy: https://insightglobal.com/workforce-privacy-policy/.
Required Skills & Experience
• 8+ years of experience within application security or development, with a background within DevSecOps (.Net, Java, Apex, PHP, Node.js, Ruby on Rails)
• 5+ years of experience within security controls ((e.g. NIST and CIS Top 20 and related)
• Understanding of authentication / access control technologies (MS Active Directory, LDAP, SAML, Form-based authentication, etc.) and identify & access management (IAM)
• Experience in Open Web Application Security Project (OWASP)
• In-depth knowledge in Static and Dynamic Application Security Testing
• Bachelors Degree in Engineering related field
Nice to Have Skills & Experience
• Understanding of security frameworks (e.g. ISO27001)
• Experience with regulatory security controls (e.g. PCI, HIPAA, CJIS, FISMA)
Benefit packages for this role will start on the 1st day of employment and include medical, dental, and vision insurance, as well as HSA, FSA, and DCFSA account options, and 401k retirement account access with employer matching. Employees in this role are also entitled to paid sick leave and/or other paid time off as provided by applicable law.