Innowise
Innowise

DevSecOps Engineer

Brak informacji o wynagrodzeniu
MidFull-time
#257057·Dodano 7 miesięcy temu·109
Źródło: nofluffjobs.com
Aplikuj szybko

Tech Stack / Keywords

DevSecOpsSecurityCI/CDAWSDockerSoCAI

Wymagania

  • Extensive experience with automation and CI/CD tools (e.g., Jenkins, GitHub Actions, GitLab CI/CD, Azure DevOps).
  • Strong proficiency with security analysis tools: SonarQube, Checkmarx, Snyk, Veracode including SAST, DAST, SCA.
  • In-depth knowledge of cloud security principles and best practices in AWS, Azure, GCP.
  • Hands-on experience managing security infrastructure tools such as WAFs, IDS/IPS, and SIEM.
  • Proven track record working with Infrastructure as Code tools (Terraform, AWS CloudFormation).
  • Ability to use monitoring and logging solutions including Splunk, ELK Stack, Datadog.
  • Solid understanding of security standards and frameworks (NIST, ISO 27001, CIS Controls, PCI DSS, HIPAA).
  • Practical experience with containerization technologies (Docker, Kubernetes) and securing their deployment lifecycle.
  • Familiarity with scripting and programming languages (Python, Bash, PowerShell) to automate security processes.
  • Exceptional communication skills.
  • English proficiency at Upper-Intermediate level.

Nice to have:

  • Experience working within a Security Operations Center (SOC) environment.
  • Relevant security and cloud provider certifications (e.g., CISSP, CISM, AWS/Azure Security certifications).
  • Proficiency in penetration testing using tools like Kali Linux, Metasploit, and Burp Suite.
  • Background in Zero Trust architectures and Identity and Access Management (IAM) systems.
  • Familiarity with modern AI tools and practical experience applying them to security operations.

Obowiązki

  • Use automation and CI/CD tools such as Jenkins, GitHub Actions, GitLab CI/CD, and Azure DevOps.
  • Conduct security analysis using tools including SonarQube, Checkmarx, Snyk, Veracode (SAST, DAST, SCA).
  • Manage security infrastructure tools like WAFs, IDS/IPS, and SIEM solutions.
  • Work with Infrastructure as Code tools such as Terraform and AWS CloudFormation.
  • Utilize monitoring and logging solutions (Splunk, ELK Stack, Datadog) for threat detection and analysis.
  • Implement containerization deployments with Docker and Kubernetes, ensuring their security.
  • Automate security tasks using scripting languages like Python, Bash, and PowerShell.
Innowise

Innowise

68 aktywnych ofert

Zobacz wszystkie oferty
Aplikuj szybko