DevSecOps Specialist (regular/senior) (She/He/They)

Brak informacji o wynagrodzeniu
MidFull-time·Umowa o pracę
#259164·Dodano 7 miesięcy temu·135
Źródło: Accenture
Aplikuj teraz

Tech Stack / Keywords

SecuritySoftware DevelopmentDevOpsSDLCCloudCI/CDAnsibleAzure DevOps

Firma i stanowisko

Accenture is a leading global professional services company with approximately 791,000 employees serving clients in more than 120 countries. The Cyber Security team, part of Accenture Security, assists clients in securing hybrid environments and applications at every stage of the software development lifecycle, integrating security into DevOps and SDLC processes.

Wymagania

  • Solid understanding of cybersecurity concepts or strong motivation with several years of IT or DevOps-related experience.
  • Hands-on experience with at least one major cloud platform: Azure, GCP, or AWS.
  • Familiarity with web application security principles including OWASP Top 10, secure coding practices, common attacks (XSS, CSRF, SQL Injection), and frameworks like MITRE.
  • Basic knowledge of containerization and orchestration platforms, e.g., Kubernetes, OpenShift.
  • Experience with SAST, DAST, and SCA tools integrated into CI/CD pipelines; understanding authentication and authorization protocols like SAML, OAuth, SSO.
  • Knowledge of SSDLC processes, REST API technology, and API Gateway concepts.
  • Knowledge of application and API security principles covering secure design, development, and deployment.
  • Foundational knowledge of AI model architectures, memory context, prompt engineering, and integration with external services.
  • Awareness of AI-related security risks such as prompt injection, data leakage, misuse, and AppSec fundamentals.
  • Experience reviewing security of API designs, source code, deployments, and implementing API security platforms and monitoring.
  • Ability to integrate security into DevOps pipelines applying SSDLC principles.
  • Skilled in threat modeling and proposing mitigation strategies.
  • Curiosity and adaptability to explore emerging technologies, analyze documentation, and rapidly prototype solutions.

Nice to have:

  • Knowledge of programming languages like Java, .Net, C#, JavaScript, Go, and scripting languages such as Python.
  • Ability to integrate Large Language Models (LLMs) such as Azure OpenAI, LangChain, REST APIs, embeddings, and vector databases.
  • Experience creating scripts, prototypes, and micro-applications (preferably in VS Code).
  • Practical experience with DevSecOps tools like Snyk, WIZ, IriusRisk, CrowdStrike, Aqua Security, Checkmarx, Opentext, Argo CD.

Obowiązki

  • Collaborate with design and development teams to embed security principles from the start of the SDLC.
  • Support migration and transformation projects by integrating security into new technology layers and public cloud environments.
  • Design, develop, and manage CI/CD pipelines, automating security steps.
  • Automate security tasks within DevOps processes using tools such as Ansible, Azure DevOps, Jenkins, and GitLab.
  • Conduct security assessments of hybrid solutions and assist teams with securing public cloud environments (Azure, GCP, AWS).
  • Secure public cloud and microservices-based environments.
  • Protect AI-driven applications throughout their lifecycle.
  • Perform security reviews of API designs, source code, and deployment processes.
  • Implement advanced API security platforms and real-time monitoring solutions.
  • Conduct threat analyses and propose mitigation strategies.
  • Provide expert guidance on secure design principles and emerging trends.
  • Support clients in advancing their DevSecOps and Application Security maturity using AI-driven approaches.
  • Design, develop, and evolve CI/CD environments integrating tools such as Snyk, Veracode, Checkmarx, Opentext, WIZ, and Argo CD.

Benefity

  • Permanent employment contract.
  • Individual support from a People Lead and possibility of sessions with a Coach.
  • A wide training package including soft skills, technical, language training, e-learning platforms, Gallup test, and GenAI training.
  • Employee Assistance Program offering legal, financial, and psychological consultations.
  • Eligibility for Employee share purchase plan and quarterly dividends.
  • Paid employee referral program.
  • Private medical care and life insurance.
  • Access to the Worksmile platform including Multisport card benefits.
Płatny urlop
Opieka zdrowotna
Ubezpieczenie
Karta sportowa
Premie

Inne informacje

Accenture does not discriminate employment candidates on the basis of protected characteristics under Polish law. The position may include remote, client on-site, or Accenture office work depending on project requirements. Some in-person time is expected for collaboration and relationship building.

Accenture

Accenture

179 aktywnych ofert

Zobacz wszystkie oferty
Aplikuj teraz