About the role
About InvoiceCloud:
InvoiceCloud is a fast-growing fintech leader recognized with 20 major awards in 2025, including USA TODAY and Boston Globe Top Workplaces, multiple SaaS Awards wins for Best Solution for Finance and FinTech, and national customer service honors from Stevie and the Business Intelligence Group. Judges also highlighted our mission to reduce digital exclusion and restore simplicity and dignity to how people pay for essential services, as well as our leadership in AI maturity and responsible innovation. It’s an award-winning, purpose-driven environment where top talent thrives. To learn more, visit InvoiceCloud.com.
- Owns the design, implementation, and ongoing operation of InvoiceCloud’s DevSecOps program, embedding security controls directly into CI/CD pipelines.
- Defines secure coding standards, remediation SLAs, and enforcement guardrails to ensure consistent adoption across engineering teams.
- Serves as the accountable owner for SDLC security posture, coordinating with engineering, cloud, and security stakeholders to resolve risk.
- Communicates security posture, risks, and progress clearly to security leadership and executive stakeholders.
- Integrates automated SAST, DAST, SCA, IaC, container, and secrets scanning into development workflows to reduce manual effort and friction.
- Designs and maintains scalable “golden path” pipelines with standardized guardrails, enabling teams to ship securely by default.
- Establishes policy-as-code, admission controls, and branch protections to ensure repeatable, low-touch enforcement across environments.
- Applies AI-driven and automated analysis to accelerate detection, triage, and remediation of security findings across the SDLC.
- Defines and tracks measurable SDLC security metrics, reporting on maturity, coverage, and risk reduction over time.
- Delivers phased outcomes that balance quick-win security improvements with long-term application security maturity.
- Partners with engineering teams to ensure security improvements translate into meaningful risk reduction, not just tooling adoption.
- Improves visibility into application security posture through consistent reporting and clear success criteria.
- Evolves DevSecOps practices by evaluating and adopting modern application and software supply chain security techniques.
- Continuously improves tooling, workflows, and standards based on data, feedback, and emerging threat patterns.
- Translates technical insights into practical, scalable improvements that strengthen security across business units.
- Stays current on industry trends to ensure InvoiceCloud’s DevSecOps practices remain resilient as the platform scales.
- Bachelor’s degree in Computer Science, Software Engineering, or a related field preferred
- 7+ years of experience in DevOps or Application Security with hands-on CI/CD expertise
- Strong experience with Azure DevOps, application security tooling, infrastructure-as-code, and container security
- Proven ability to operate autonomously, influence without authority, and deliver results in ambiguous environments
InvoiceCloud is committed to providing equal employment opportunities to all employees and applicants. We do not tolerate discrimination or harassment of any kind based on race, color, religion, age, sex, nationality, disability, genetic information, veteran or military status, sexual orientation, gender identity or expression, or any other characteristic protected under applicable laws.
This commitment applies to all aspects of employment, including recruitment, hiring, placement, promotion, termination, layoff, recall, transfer, leave, compensation, and training.
If you require a disability-related or religious accommodation during the application or recruitment process, and wish to discuss possible adjustments, please contact jobs@invoicecloud.com.
Click here to review InvoiceCloud’s Job Applicant Privacy Policy.
For recruitment agencies: InvoiceCloud does not accept unsolicited resumes from agencies. Please do not forward resumes to our job aliases, employees, or any other company location. InvoiceCloud is not responsible for any fees associated with unsolicited submissions.
Aplyr's read
InvoiceCloud is a fintech company specializing in electronic invoicing and payment solutions for municipalities and utilities, attracting tech-savvy professionals in finance and engineering roles.
What's promising
- •InvoiceCloud's platform simplifies payment processing for municipal and utility clients, addressing specific industry needs.
- •The company is expanding its tech and sales teams, indicating growth and new opportunities.
- •InvoiceCloud's focus on cloud solutions aligns with increasing digital transformation trends in finance.
What to watch
- •Limited public information about InvoiceCloud's financial performance could concern potential applicants.
- •The niche market focus may limit broader career opportunities for some professionals.
- •High competition in fintech might pressure InvoiceCloud to continuously innovate to stay relevant.
Why InvoiceCloud
- •InvoiceCloud specializes in serving municipal and utility sectors, differentiating it from broader fintech companies.
- •The company offers roles in specialized areas like AI engineering and identity management.
- •InvoiceCloud's emphasis on business continuity and disaster recovery highlights its commitment to operational resilience.
Aplyr’s read is generated by AI from public sources. Was it useful?
About InvoiceCloud
InvoiceCloud provides a cloud-based platform for managing electronic invoicing and payment processing for municipalities and utility companies.
Similar roles
Product Manager, DevSecOps
Equinix
Principal DevSecOps Lead Engineer
Accenture Federal Services
DevSecOps Lead Software Engineer
Boeing
DevSecOps Project Lead (Sr DevSecOps Engineer)
DEFCON AI
Infrastructure & DevSecOps Lead
Knowledgecity
Engineering Manager – DevOps, DevSecOps & VM Infrastructure Platforms (Python)
Thermo Fisher