Devsecops engineer
we are seeking a highly skilled devsecops engineer to play a key role in our team's success.
* responsibilities:
* collaborate with cross-functional teams to design, develop, and test technical solutions that meet the highest standards of quality and security.
* utilize coding and scripting skills to automate business processes and improve efficiency.
* ensure proper code documentation and security practices are implemented and maintained.
* participate in project kick-off calls and solution delivery handoff meetings to ensure seamless collaboration.
* integrate security into devops pipelines and automate testing using sast, dast, and sca tools to identify and mitigate potential threats.
* implement infrastructure as code with embedded security controls to ensure consistency and reliability.
* collaborate with development, operations, and security teams to align on secure coding, deployment, and monitoring practices that meet regulatory requirements.
* monitor systems and applications for security threats using siem, log analysis, and anomaly detection tools to quickly respond to potential incidents.
* manage secrets and credentials securely using vaults and access control mechanisms to prevent unauthorized access.
* ensure compliance with regulatory standards across the software lifecycle through regular audits and risk assessments.
* respond to security incidents and educate teams on devsecops principles and best practices to improve overall security posture.
* role expectations:
* the ideal candidate will have a strong understanding of their role and be able to perform all facets of it with minimal supervision.
* they will manage projects effectively, ensuring timely completion and meeting or exceeding expectations.
* acts as the technical owner of multiple modules within the cloud solution system, overseeing their design, development, and testing.
* analyzes and recommends solutions to achieve clients' needs and objectives.
* leads the design and development of at least one module, driving innovation and improvement.