Senior DevSecOps Consultant (Azure / Secrets Management)

Other Jobs To Apply

<p><b style="font-size: 14pt">Who We Are</b></p><p><br></p><p><span style="font-size: 16px">At Trility Consulting®, we’ve built a strong, remote-work culture where people thrive, grow, and support each other – earning us Great Place to Work® Certification. Headquartered in Central Iowa, we embrace flexible schedules and collaboration across geographically distributed teams serving clients from all corners of the United States and globally.</span></p><p><br></p><p><span style="font-size: 16px">We seek team members with the grit necessary to forge paths where none previously existed, to get back up when circumstances knock them down, to adapt to the changing needs of the client even when it is uncomfortable, and to deliver on our commitments. Candidates must respect and value people, recognize that over-communication is barely good enough, thrive on solving complex problems, have a passion for building teams, and know that delivering what a client actually values is more important than their own predispositions. They understand value proposition, love delivering value, and take pride in learning the expansive and ever-changing business of clients. Candidates are self-motivated and relentlessly working to become more today than they were yesterday.</span></p><p><br></p><p> </p><h3>What You Will Do</h3> <p>Trility Consulting is seeking a Principal DevSecOps Consultant to lead a short-term engagement focused on establishing secure secrets management patterns, strengthening application security practices, and creating repeatable DevSecOps standards across a modern Azure-based environment.</p> <p>In this role, you will serve as a trusted advisor and hands-on technical leader, partnering with engineering and architecture teams to assess current-state practices, identify security gaps, design future-state patterns, and implement foundational security controls. This work will include designing and implementing secure secrets management solutions, establishing application security standards, improving SDLC controls, and creating reusable guidance that can be adopted across multiple teams and applications.</p> <p>The ideal consultant combines enterprise architecture thinking with hands-on engineering expertise and is comfortable moving between technical implementation, security assessment, stakeholder discussions, and technical coaching.</p> <p><strong><em>This is a remote 1099 consulting engagement anticipated to last 6 weeks with potential to extend further. </em></strong></p> <p></p> <p></p><p><br></p><b>Key Responsibilities</b><div> <ul> <li> <p>Assess current application security, secrets management, and DevSecOps practices to identify risks, gaps, and improvement opportunities</p> </li> <li> <p>Design and implement repeatable secrets management patterns that can be adopted across multiple applications and teams</p> </li> <li> <p>Develop and implement secure application integration patterns leveraging Azure Key Vault, Managed Identities, and related Azure-native services</p> </li> <li> <p>Design and implement a secure Python-based framework or wrapper to standardize secrets handling across applications</p> </li> <li> <p>Provide architectural guidance for extending secure secrets management patterns across Python, .NET, SQL Server, and future application workloads</p> </li> <li> <p>Establish DevSecOps standards related to pipeline security, secret scanning, deployment controls, approval workflows, and secure software delivery practices</p> </li> <li> <p>Analyze application, platform, and pipeline logs to troubleshoot deployment, networking, authentication, and security-related issues that impact solution adoption and operational stability</p> </li> <li> <p>Establish DevSecOps standards related to pipeline security, secret scanning, deployment controls, approval workflows, and secure software delivery practices</p> </li> <li> <p>Evaluate current SDLC processes and recommend improvements to strengthen security, governance, and operational consistency</p> </li> <li> <p>Collaborate with engineering leadership and senior stakeholders to define practical implementation roadmaps and future-state architecture patterns</p> </li> <li> <p>Create architecture documentation, implementation guidance, standards, and reusable playbooks to support long-term adoption</p> </li> <li> <p>Demonstrate implemented solutions and provide coaching to internal engineering teams to accelerate adoption and self-sufficiency</p> </li> </ul> </div><p><br></p><b>Qualifications</b><div> <ul> <li> <p>5+ years of experience in DevSecOps, Cloud Architecture, Application Security, Platform Engineering, or related disciplines</p> </li> <li> <p>Strong experience designing and implementing enterprise secrets management solutions</p> </li> <li> <p>Hands-on experience with Azure Key Vault, Managed Identities, and Azure-native security patterns</p> </li> <li> <p>Strong Azure architecture experience, including secure application integration and cloud security best practices</p> </li> <li> <p>Experience designing and implementing secure application development and deployment patterns</p> </li> <li> <p>Strong Python development experience with the ability to design and implement reusable security frameworks and application patterns</p> </li> <li> <p>Working knowledge of .NET application architectures and secure application integration practices</p> </li> <li> <p>Experience designing and implementing DevSecOps controls within CI/CD pipelines and software delivery workflows</p> </li> <li> <p>Experience with Azure DevOps and modern source control and deployment practices</p> </li> <li> <p>Experience implementing secret scanning, security validation, and secure deployment controls within software delivery pipelines</p> </li> <li> <p>Experience troubleshooting complex deployment, networking, authentication, and security issues across cloud-native application environments</p> </li> <li> <p>Ability to assess existing environments, identify gaps, and develop practical remediation plans</p> </li> <li> <p>Strong written and verbal communication skills with the ability to influence senior technical stakeholders and engineering leadership</p> </li> </ul> </div><p><br></p><b>Preferred Experience</b><div> <ul> <li> <p>Experience modernizing DevSecOps practices from Azure DevOps to GitHub-based workflows</p> </li> <li> <p>Experience working within highly regulated or security-sensitive environments</p> </li> <li> <p>Familiarity with application security assessment methodologies and secure coding practices</p> </li> <li> <p>Experience creating enterprise architecture standards, technical playbooks, and reusable implementation patterns</p> </li> <li> <p>Experience leading consulting engagements involving security transformation initiatives</p> </li> </ul> </div><p><br></p><p></p> <p><b style="font-size: 14pt">How We Put You First </b></p><p><span style="font-size: 12pt">Trility’s culture is built upon the journey, character, and work ethic of our team members. We are a team of honorable and professional lifelong learners who work together to solve problems proactively.</span></p><p><br></p><p><span style="font-size: 12pt">• Work remotely anywhere in the United States with flexible work hours</span></p><p><span style="font-size: 12pt">• Sponsored and supported learning opportunities</span></p><p><br></p><p><b style="font-size: 14pt">Job Requirements </b></p><p><span style="font-size: 12pt">• Must reside within the United States</span></p><p><span style="font-size: 12pt">• Must be authorized to work in the United States without sponsorship now or in the future</span></p><p><span style="font-size: 12pt">• Must be able to pass a background check</span></p>

Back to blog

Common Interview Questions And Answers

1. HOW DO YOU PLAN YOUR DAY?

This is what this question poses: When do you focus and start working seriously? What are the hours you work optimally? Are you a night owl? A morning bird? Remote teams can be made up of people working on different shifts and around the world, so you won't necessarily be stuck in the 9-5 schedule if it's not for you...

2. HOW DO YOU USE THE DIFFERENT COMMUNICATION TOOLS IN DIFFERENT SITUATIONS?

When you're working on a remote team, there's no way to chat in the hallway between meetings or catch up on the latest project during an office carpool. Therefore, virtual communication will be absolutely essential to get your work done...

3. WHAT IS "WORKING REMOTE" REALLY FOR YOU?

Many people want to work remotely because of the flexibility it allows. You can work anywhere and at any time of the day...

4. WHAT DO YOU NEED IN YOUR PHYSICAL WORKSPACE TO SUCCEED IN YOUR WORK?

With this question, companies are looking to see what equipment they may need to provide you with and to verify how aware you are of what remote working could mean for you physically and logistically...

5. HOW DO YOU PROCESS INFORMATION?

Several years ago, I was working in a team to plan a big event. My supervisor made us all work as a team before the big day. One of our activities has been to find out how each of us processes information...

6. HOW DO YOU MANAGE THE CALENDAR AND THE PROGRAM? WHICH APPLICATIONS / SYSTEM DO YOU USE?

Or you may receive even more specific questions, such as: What's on your calendar? Do you plan blocks of time to do certain types of work? Do you have an open calendar that everyone can see?...

7. HOW DO YOU ORGANIZE FILES, LINKS, AND TABS ON YOUR COMPUTER?

Just like your schedule, how you track files and other information is very important. After all, everything is digital!...

8. HOW TO PRIORITIZE WORK?

The day I watched Marie Forleo's film separating the important from the urgent, my life changed. Not all remote jobs start fast, but most of them are...

9. HOW DO YOU PREPARE FOR A MEETING AND PREPARE A MEETING? WHAT DO YOU SEE HAPPENING DURING THE MEETING?

Just as communication is essential when working remotely, so is organization. Because you won't have those opportunities in the elevator or a casual conversation in the lunchroom, you should take advantage of the little time you have in a video or phone conference...

10. HOW DO YOU USE TECHNOLOGY ON A DAILY BASIS, IN YOUR WORK AND FOR YOUR PLEASURE?

This is a great question because it shows your comfort level with technology, which is very important for a remote worker because you will be working with technology over time...