Analyzing vulnerabilities and implementing security strategies within the software development cycle at Redbelt Security. Ensuring compliance with security requirements and providing guidance to the development team.
Responsibilities
Provide technical guidance to the development team on implementing security practices throughout the software development lifecycle.
Conduct risk assessments, identifying potential vulnerabilities in systems and applications under development, and perform advanced security testing such as penetration testing, code analysis, and architecture reviews.
Develop and implement comprehensive security strategies, ensuring security requirements are met at all project stages.
Configure and maintain security tools, such as vulnerability scanners, identity and access management solutions, and security monitoring systems.
Implement processes and automation to ensure compliance with security practices, regulations, and industry standards.
Participate in security reviews and provide technical guidance to the development team.
Develop and deliver training for the development team on secure coding best practices and threat awareness.
Monitor trends and developments in security best practices and recommend adoption of new technologies and approaches.
Contribute to the continuous improvement of DevSecOps processes by identifying opportunities and implementing effective solutions.
Requirements
Bachelor's degree in Technology, Systems Analysis, Computer Science, or a related field.
Knowledge of programming languages such as Python, Java, JavaScript, C# or others, along with relevant frameworks and libraries.
Familiarity with version control (Git), continuous integration (CI), continuous delivery (CD), infrastructure automation, and tools such as Docker and Kubernetes.
Understanding of security principles and practices, including common vulnerabilities, risk mitigation techniques, secure coding practices, cryptography, IAM, monitoring, and security auditing.
Security and automation tools: Familiarity with static code analysis, vulnerability scanning, secrets management, IDS/IPS, and SIEM.
Cloud computing and distributed architecture: Experience with cloud platforms such as AWS, Azure, or Google Cloud Platform, along with distributed architectures, microservices, and cloud security practices.
Senior Manager leading DevSecOps & SRE practices for transforming pharmacy prior authorization solutions at CVS Health. Overseeing agile teams and enhancing security and reliability in hybrid environments.
DevSecOps Engineer at Nelnet provisioning and monitoring AWS cloud infrastructure. Supporting security standards and cross - functional teams while automating deployment processes.
Backend Developer focusing on .NET and observability at Beyond Soluções. Collaborating on high - impact technology projects in a hybrid work environment.
Senior DevOps Engineer supporting Navy customer in architecture and development using Agile methodologies. Focused on CI/CD, Software CM, and system evaluations.
Site Reliability Engineer at HPE designing, building, and optimizing cloud infrastructure and deployment systems. Enhancing operational efficiency and security across platforms with cross - team collaboration.
Site Reliability Engineer responsible for enhancing cloud infrastructure and deployment systems. Key role in scalability and operational efficiency at Hewlett Packard Enterprise.
Senior Software Engineer developing monitoring and observability tools for transportation technology company Waabi. Leading architecture and collaboration while optimizing performance across cloud and on - prem environments.
Senior DevOps Engineer leading GitLab migration projects for telecommunications at Capgemini Engineering. Involvement in digital transformation with cutting - edge technologies.
DevOps Engineer at Welldoc enhancing software infrastructure and managing CI/CD pipelines in Bangalore. Collaborating with development teams and implementing cloud solutions.
DevOps Engineering Intern at ASSA ABLOY working on cloud technologies and automation. Building infrastructure on AWS and contributing to CI/CD pipelines in a hybrid work environment.