Description

We are seeking a highly skilled and experienced Application Security Architect with strong DevSecOps expertise to assess the CI/CD pipelines and strategize on how to modernize pipelines and remove manual processes. This role is pivotal in embedding security controls and automation into every phase of the software development lifecycle (SDLC).

 

Key Responsibilities

  • Assess the architecture, controls, processes and deployments of secure CI/CD pipelines
  • Assess current integrations of security controls and automation in the development workflows
  • Collaborate with development, operations, and security teams to understand the security best practices and compliance standards
  • Review the adoption of secure coding practices and their effectiveness
  • Evaluate potential options for automating security checks, integrating security tools and controls, and ensuring security throughout the development lifecycle
  • Strategize and develop plans to modernize pipelines and remove manual processes

 

Required Skills & Qualifications

  • Proven hands-on experience in designing and securing DevOps pipelines and security engineering roles
  • Expertise in cloud technologies, automation tools, security controls, and a strong understanding of security frameworks and compliance standards
  • Proven experience working with development, operations, and security teams to integrate security practices into the development lifecycle
  • Strong understanding of CI/CD tools (e.g., Jenkins, GitLab CI, GitHub Actions, Azure DevOps).
  • Working knowledge in branching strategy and development lifecycle management.
  • Expertise in containerization and orchestration (e.g., Docker, Kubernetes).
  • Proficiency in infrastructure as code (IaC) tools (e.g., Terraform, Ansible, CloudFormation).
  • Deep knowledge of security tools and practices (e.g., SAST, DAST, SCA, secrets management).
  • Experience with cloud platforms (AWS, Azure, GCP) and their security services.
  • Strong understanding on secure development lifecycle framework, secure code practice and OWASP Top10 vulnerabilities and remediation.
  • Good knowledge of scripting skills (e.g., Python, Bash, PowerShell).
  • Familiarity with compliance frameworks (e.g., NIST, ISO 27001, SOC 2).

 

Preferred Qualifications

  • Certifications: CISSP, CCSP, or equivalent. Azure, AWS or GCP certification (Security and Devops)

Education

Any Graduate

https://jayaslotapk789.com https://vivo500slot.com/ https://amirpalace-hotel.com/ https://jepe500gacor.com/ https://management.giongcayanqua.edu.vn/ https://www.theshiori.com/ https://citizensbusinesschampion2023.dja.com/ https://sevensensefest.com/ https://www.booksarepopculture.com/ https://lohanrhodes.com/ aplikasi slot dana apk dana game situs slot gacor ink789 slot dana slot dana https://haringey-irish.com/ https://nei-marine.com/ jayaslot login Situs Slot Qris ink789 download JayaSlot Apk Slot Hijau
slot dana slot dana 5k rejekibet jayaslot vivo500 slot online vivo500 vivo500 vivo500 bina bangsa tunas karya permainan slot slot 5k slot 5k slot 5k jp500 jp-500 jp500 jp-500 jepe500 jepe-500 jepe500 jepe-500 APK Slot JKT8 rejekibet rejekibet INK789 Link Download Apk Slot Online Gacor Deposit Qris 5000 Slot Gacor Deposit Qris apk slot ink789 apk slot maxwin gacor deposit qris 5000 slot gacor rejekibet JayaSlot Link Download & Login Apk Slot Hijau Terbaru Indoneisa 2025
https://www.venturecapitalineducation.com/ https://www.booksarepopculture.com/ https://coolthought.org/ https://sevensensefest.com/ https://usatimesbio.com/ https://www.theshiori.com/ https://lohanrhodes.com/ https://amirpalace-hotel.com/ https://marheaven.com/ https://theisticsatanism.com/ heylink.me/vivo500gacor/