Lead DevSecOps Engineer - LOCAL to NJ - HYBRID at Newark, New Jersey, USA |
Email: [email protected] |
From: Ansar Alam, RCI [email protected] Reply to: [email protected] Title: Lead DevSecOps Engineer Right to hire: Yes (we will accept USC, GC, GCEAD only) Location: Hybrid to Newark, NJ need to live in Jersey area near Newark to be considered. Job Description: As a Lead DevSecOps Engineer, you will partner with product owners, tech leads, designers, software engineers and delivery professionals. You will produce DevSecOps solutions that enable us to deploy innovative products, services, and experiences to delight our customers! In addition to advanced technical expertise and experience you will bring excellent problem solving, communication and teamwork skills, along with agile ways of working, strong business insight, an inclusive leadership attitude and a continuous learning focus to all that you do. Responsibilities Provide security services and support for Prudential's business groups Application vulnerability assessments automation Support secure application development practices and a secure development mentality Identify, communicate, and provide targeted remediation of vulnerabilities Develop and update security patterns aligned with security requirements Identify application security requirements for projects Coordinate and collaborate with multiple teams to ensure the confidentiality, integrity, and availability of Prudential assets that meets business needs Perform other security-related projects that may be assigned according to skills Work as a DevSecOps engineer, integrating security into CI/CD pipelines Automation of security controls and standards The Skills & Expertise you bring Familiar with Jenkins based CI/CD Pipelines Working experience to implement and test automation scripts and setups Familiar with integrating security tools and providing vulnerability assessments. Leveraging tools such as Burp Suite Enterprise, Checkmarx, NowSecure, OWASP ZAP Understanding of OWASP Top 10 and SANS Top 25 vulnerabilities and how to remediate Working knowledge of using API to interact with web services provided by tools Conduct tool evaluations and build proof of concepts Integrate with reporting tools to provide consolidated view Ability to turn technical standards into working practice Assist in driving consistency and standardization of DevSecOps services across the enterprise Strong Automation, IaC skills (Ansible, Python). Maintain documentations and user guides Knowledge of security within cloud environment, especially around networking, security and administration A motivated and flexible approach to work in an adapting fast-moving Agile environment utilizing technology and tools such as Jira, Jira Align, Miro, Confluence. Demonstrate strong performance ethos and personal commitment for outstanding customer service Ability to interface with both technical and non-technical teams Willingness to train and upskill on a continuous basis Excellent communication, time management and organizational skills 5+ years of DevSecOps Experience. Strong Automation hands on knowledge, Python proficiency is a must Should be educated to degree Level in Digital Forensics, Information Security, DevOps or an IT related discipline Should hold relevant industrial security / DevSecOps / DevOps certifications, or willingness to acquire Keywords: continuous integration continuous deployment information technology green card New Jersey |
[email protected] View all |
Fri Aug 25 02:17:00 UTC 2023 |