need-System Engineer - Security-Dallas, TX, Hybrid at Dallas, Texas, USA |
Email: [email protected] |
From: Padma Charan Jayasingh, Vyze Inc [email protected] Reply to: [email protected] Hello, Hope you are doing great. Kindly go through the below job description and share me your consultants updated profile: Job Title: System Engineer - Security Location: Dallas, TX, Hybrid Duration: 6 months Visa: All Visa Responsibilities Provide technical security risk oversight of our Infosys partner including Review and approval of security vulnerability acceptance requests Ensure adherence to security requirements and vulnerablity remediation SLAs Active participation in recurring security and vulnerability oversight meetings Assist with daily DevSecOps Security Assurance operational and enforcement processes for our current suite of security automation tools. Provide support to IT teams for enhancing security and protection controls in relation to security automation, CI/CD, DevSecOps, and vulnerability remediation. Participate in DevSecOps Security Assurance projects and initiatives as assigned. Qualifications Experience working with widely used security automation technologies such as Static Application Security Testing (SAST) Software Composition Analysis (SCA) Open Source software vulnerabilities Dynamic Application Security Testing (DAST) Interactive Application Security Testing (IAST) Container and image security scanning API security scanning Practical experience analyzing vulnerability data to understand and communicate risks, concerns and outcomes of decisions Experience with CI/CD pipeline tools and technologies such as Bamboo, Jenkins, GitHub, GitHub Actions, Artifactory, Nexus, Docker, Kubernetes, Ansible, or Terraform, and Atlassian Suite (Jira, Confluence, Bitbucket) Working knowledge of OWASP Top 10, SANS Top 25, NIST/NVD (National Vulnerability Database), CVSS (Common Vulnerability Scoring System), CVE (Common Vulnerabilities and Exposures), technical security vulnerability remediation/mitigation, and security risk oversight Strong, demonstrated analysis and problem-solving, communication, interpersonal skills Professional security certification in good standing such as ISC2 CISSP, ISC2 Certified Secure Software Lifecycle Professional (CSSLP), GIAC Security Essentials Certification (GSEC), or CompTIA Security+ Recent software engineering experience is a plus Experience with scripting languages such as PowerShell, Python, Bash, or Postman is a plus Top 3 skills: Working knowledge of OWASP Top 10, SANS Top 25, NIST/NVD (National Vulnerability Database), CVSS (Common Vulnerability Scoring System), CVE (Common Vulnerabilities and Exposures), technical security vulnerability remediation/mitigation, and security risk oversight Practical experience analyzing vulnerability data to understand and communicate risks, concerns and outcomes of decisions. Experience working with widely used security automation technologies such as: Static Application Security Testing (SAST) Software Composition Analysis (SCA) Open Source software vulnerabilities Dynamic Application Security Testing (DAST) Interactive Application Security Testing (IAST) Container and image security scanning API security scanning Thanks and Regards. Padma Charan Jayasingh Technical Recruiter Vyze INC(An E- VerifiedCompany) Email: [email protected] Hangouts: padmacharan.vyzeinc 25179 Methley Plum Place, Aldie, VA 20105 www.vyzeinc.com Disclaimer: This communication, along with any documents, files or attachments, is intended only for the use of the addressee and may contain confidential information. If you are not the intended recipient, you are hereby notified that any dissemination, distribution or copying of any information contained in or attached to this communication is strictly prohibited, To remove your email address permanently from future mailings, please send REMOVE to [email protected] . Keywords: continuous integration continuous deployment information technology golang Texas Virginia |
[email protected] View all |
Fri Oct 06 09:08:00 UTC 2023 |