The DevSecOps Engineer plays a key role in embedding security into the development lifecycle ensuring that applications are secure from design to production. This role focuses on automating security processes and creating a culture of security awareness within the DevOps teams.
Key Responsibilities:
- Integrate security into the DevOps CI/CD pipeline and workflows.
- Develop and maintain security automation frameworks and tools.
- Collaborate with development teams to ensure secure coding practices.
- Perform vulnerability assessments and penetration testing to identify and mitigate security risks.
- Implement security controls and monitoring mechanisms across cloud infrastructures.
- Educate teams on security best practices and develop a securityfirst mindset.
- Ensure compliance with security standards and regulatory requirements.
Qualifications:
- Bachelors degree in Computer Science Cybersecurity or related field.
- 8 years of experience in DevOps with a focus on security.
- Expertise in automation tools such as Jenkins Ansible Docker and Kubernetes.
- Experience with security tools like SAST DAST and vulnerability management tools.
- Strong understanding of cloud security and infrastructure security principles.
- Knowledge of regulatory requirements (e.g. GDPR ISO 27001).
- Relevant certifications such as CISSP CEH or AWS Certified Security are a plus.
Remote Work :
No