Himalayas logo
FourKitesFO

Staff DevSecOps Engineer

FourKites is a real-time supply chain visibility platform that helps freight brokers and shippers track shipments and manage exceptions. It utilizes AI and a vast data network to provide predictive insights and automate supply chain orchestration for global brands.

FourKites

Employee count: 501-1000

India only

Stay safe on Himalayas

Never send money to companies. Jobs on Himalayas will never require payment from applicants.

At FourKites we have the opportunity to tackle complex challenges with real-world impacts. Whether it’s medical supplies from Cardinal Health or groceries for Walmart, the FourKites platform helps customers operate global supply chains that are efficient, agile and sustainable.

Join a team of curious problem solvers that celebrates differences, leads with empathy and values inclusivity.

We are seeking an experienced DevSecOps Engineer with a strong background in cloud security, infrastructure management, and secure software development. The ideal candidate will have extensive hands-on expertise across major cloud platforms, containerization technologies, and security frameworks. You will be responsible for architecting, implementing, and maintaining secure cloud environments while ensuring that security is seamlessly integrated throughout the development lifecycle.

What you’ll be doing:

Cloud Infrastructure Security

  • Architect and secure highly available, scalable, and fault-tolerant systems across AWS and Azure environments.
  • Design and implement Layer 3/Layer 4 firewalls, network segmentation, and secure routing policies.
  • Deploy and manage Intrusion Detection (IDS), Intrusion Prevention (IPS), and Endpoint Detection and Response (EDR) solutions for servers, containers, and cloud workloads.
  • Implement container and Kubernetes security for EKS (Amazon Elastic Kubernetes Service) and AKS (Azure Kubernetes Service) — ensuring zero-vulnerability base images, runtime protection, and least-privilege configurations.
  • Manage cloud-native security services such as WAF, Shield , CSPM (Cloud Security Posture Management), and CNAPP (Cloud-Native Application Protection Platform).
  • Ensure 99.99% uptime while maintaining a strong defense-in-depth security posture.

DevOps Automation

  • Develop and maintain Infrastructure-as-Code (IaC) using Terraform, CloudFormation, and Azure Resource Manager (ARM) templates.
  • Build secure CI/CD pipelines integrating SAST, DAST, IaC scanning, container scanning, and EDR integrations for runtime visibility.
  • Automate deployments and security validation using Ansible, Chef, Puppet, Jenkins, or GitHub Actions.
  • Enforce image signing, vulnerability scanning, and policy enforcement to ensure zero-vulnerability images are promoted to production.
  • Integrate open-source and commercial security tools (e.g., Trivy, Aqua, Wiz, Prisma Cloud, Checkov, SonarQube) for continuous assurance.

Security Engineering Governance

  • Implement and maintain CSPM and CNAPP solutions to detect misconfigurations and enforce compliance baselines across AWS and Azure.
  • Develop and automate security controls, configuration baselines, and hardening standards using policy-as-code.
  • Perform threat modeling, risk analysis, and vulnerability remediation for cloud and containerized workloads.
  • Document security architectures, DevSecOps workflows, and compliance evidence.
  • Provide security training and awareness sessions for DevOps and development teams.

API Application Security

  • Implement API security best practices, including OAuth2, JWT, rate limiting, and gateway-level authentication.
  • Integrate SAST/DAST and dependency scanning tools within CI/CD pipelines.
  • Troubleshoot and manage SSL/TLS, certificates, and key rotation processes.
  • Enforce secure coding, linting, and code review standards across projects.

Monitoring Incident Response

  • Lead incident detection, containment, and response activities for cloud and containerized workloads.
  • Configure and maintain EDR and SIEM/SOAR tools for unified visibility and automated threat response.
  • Implement automated response playbooks using AWS Lambda or Azure Functions for real-time mitigation.
  • Conduct root cause analysis (RCA) and develop post-incident improvement plans.

Who You Are

  • 8+ years of experience in DevSecOps, Cloud Security, or Security Engineering.
  • Strong hands-on experience with AWS and Azure, including EKS and AKS security hardening.
  • Expertise in EDR implementation and maintenance across cloud and containerized environments.
  • Deep understanding of Kubernetes, container security, and zero-vulnerability image pipelines.
  • Skilled in integrating SAST, DAST, and IaC security tools into automated CI/CD pipelines.
  • Strong experience with CSPM and CNAPP platforms for compliance and risk management.
  • Proficiency in Terraform, CloudFormation, ARM, and scripting languages (Python, Bash, PowerShell).
  • Solid understanding of network, cloud, and endpoint security principles.
  • Strong communicator with the ability to bridge DevOps, Security, and Product teams.
  • Proactive learner, passionate about automation and cloud-native security innovation.

Preferred Qualifications

  • Certifications: AWS Certified Security – Specialty, Azure Security Engineer Associate, CKS, CISSP, or CEH.
  • Hands-on experience with CSPM/CNAPP/EDR platforms (e.g., Lacework, Defender for Cloud, CrowdStrike, ).
  • Familiarity with SOC 2, ISO 27001, or NIST frameworks.
  • Experience implementing Zero-Trust Architecture.
  • Experience mentoring DevOps/Security Engineers and improving team maturity.

Who we are:FourKites®, the leader in AI-driven supply chain transformation for global enterprises and pioneer of advanced real-time visibility, turns supply chain data into automated action. FourKites’ Intelligent Control Tower™ breaks down enterprise silos by creating a real-time digital twin of orders, shipments, inventory and assets. This comprehensive view, combined with AI-powered digital workers, enables companies to prevent disruptions, automate routine tasks, and optimize performance across their supply chain. FourKites processes over 3.2 million supply chain events daily — from purchase orders to final delivery — helping 1,600+ global brands prevent disruptions, make faster decisions and move from reactive tracking to proactive supply chain orchestration.

Working at FourKites
We provide competitive compensation with stock options, outstanding benefits and a collaborative culture for all employees around the globe, including:

5 global recharge days, in addition to standard holidays, and a hybrid, flexible approach to work.
Parental leave for all parents, an annual wellness stipend and volunteer days also provide you with time and resources for self care and to care for others.
Opportunities throughout the year to learn and celebrate diversity.
Access to leading AI tools and foundation models, with the freedom to experiment and find creative ways to be more effective in your role
And we're always listening for new ways to support everyone in and out of the office.

About the job

Apply before

Posted on

Job type

Full Time

Experience level

Senior

Location requirements

Hiring timezones

India +/- 0 hours

About FourKites

Learn more about FourKites and their company culture.

View company profile

FourKites is a company that specializes in developing a real-time supply chain visibility platform aimed at freight brokers and shippers. Founded in 2014 and headquartered in Chicago, Illinois, FourKites provides solutions for tracking shipment locations and temperatures while proactively managing exceptions. The platform utilizes a proprietary predictive algorithm to estimate arrival times, enabling users to reduce operating costs and enhance on-time performance. FourKites aggregates data from various transportation modes, including ocean, rail, parcel, and truckload, through over four million GPS and electronic logging devices. Its offerings include BackHaul Management, which identifies potential deadhead miles, and CarrierLink, which facilitates real-time synchronization between brokers and owner-operators. The platform is designed for mobile use and prioritizes end-to-end security, making it a trusted choice for Fortune 500 companies and third-party logistics providers.

As the leader in AI-driven supply chain transformation, FourKites pioneered the Intelligent Control Tower™ powered by the world's largest real-time visibility network. Their platform creates comprehensive digital twins of supply chains with AI-powered digital workers to automate resolution, improve collaboration, and drive outcomes across all stakeholders. Unlike traditional control towers, FourKites enables true real-time execution and intelligent fulfillment, transforming both supply and customer-facing operations. The company tracks over 3.2 million shipments daily across 200+ countries and territories, covering road, rail, ocean, and air, and includes over 1.1 million carriers and 98% of the world's ocean container traffic. Over 1,600 of the world's most recognized brands, including 9 of the top-10 CPG and 18 of the top-20 Food & Beverage companies, trust FourKites to prevent disruptions, make faster decisions, and move from reactive tracking to proactive supply chain orchestration. FourKites recently launched Fin AI, a natural language interface to help customers surface insights, identify optimization opportunities, and automate tasks. The company has also introduced digital workers, Tracy and Sam, to further automate supply chain orchestration.

Employee benefits

Learn about the employee benefits and perks provided at FourKites.

View benefits

Paid sick days

Paid sick days are offered.

Vision insurance

Vision insurance is available.

401(K)

FourKites offers a 401(K) plan.

Bereavement leave benefits

Bereavement leave is available.

View FourKites's employee benefits
Claim this profileFourKites logoFO

FourKites

View company profile

Similar remote jobs

Here are other jobs you might want to apply for.

View all remote jobs

7 remote jobs at FourKites

Explore the variety of open remote roles at FourKites, offering flexible work options across multiple disciplines and skill levels.

View all jobs at FourKites

Remote companies like FourKites

Find your next opportunity by exploring profiles of companies that are similar to FourKites. Compare culture, benefits, and job openings on Himalayas.

View all companies

Find your dream job

Sign up now and join over 100,000 remote workers who receive personalized job alerts, curated job matches, and more for free!

Sign up
Himalayas profile for an example user named Frankie Sullivan