HM Note: This hybrid contract role is three (3) days in office. Candidates resume must include first and last name. This opportunity commences April 1 2025
Description
Key Responsibilities:
- Architecture Design: Develop and maintain secure architectures for applications and infrastructure focusing on automation and scalability.
- Security Integration: Integrate security practices into the DevOps pipeline ensuring continuous security checks and compliance.
- Policy Development: Create and enforce security policies standards and procedures tailored to DevSecOps environments.
- Collaboration: Work closely with development operations and security teams to ensure security is a shared responsibility
- Advisory Role: Act as an internal consultant providing expert advice on security matters to various teams and stakeholders
Skills
Experience and Skill Set Requirements
Experience
- Programming Languages: Proficiency in languages such as Python SPLUNK SPL and Kusto Query Language (KQL).
- Security Frameworks: Knowledge of security frameworks and standards like NIST ISO 27001 and OWASP.
- Cryptography: Understanding of cryptographic principles and practices to ensure data integrity and confidentiality.
- Network Security: Familiarity with network protocols firewalls IDS/IPS and VPNs.
- Cloud Security: Experience with securing cloud environments (AWS Azure GCP) and understanding of cloud security best practices.
- Secure Coding Practices: Ability to write secure code to prevent vulnerabilities such as SQL injection and XSS.
- DevSecOps: Knowledge of integrating security practices into the DevOps pipeline to ensure continuous security throughout the development lifecycle
- Threat Modeling: Skills in identifying and mitigating potential security threats during the design phase.
Strong Technical Knowledge of enterprise security platforms:
- Palo Alto Cortex XDR
- Microsoft Defender for Endpoint
- Microsoft Sentinel
- SPLUNK Cloud / Enterprise Security
- SPLUNK SOAR
- Service NOW Security Incident Response (SIR) and nbsp;
- Service NOW Vulnerability Response (VR) and nbsp;
Must Haves:
Experience with Security Automation and orchestration.
5 years of experience in within and nbsp;Security Automation and orchestration.