Hybrid Senior Security Engineer, DevSecOps

Posted 2 months ago

Apply now

About the role

  • Own vulnerability management of open-source components in the software components that make up the platform.
  • Responsible for code security and handle static and multifaceted code scanning and write policies and procedures around the lifecycle of the code and associated vulnerabilities.
  • Collaborate with software architects, security defenders, Operations, SRE, compliance specialists, and business leaders to understand platform components and requirements around vulnerability management and code analysis.
  • Write and maintain policies and procedures around vulnerability management and code analysis following industry methodologies and compliance directives.
  • Integrate with scanning tools and provide mentorship to the developers around integration, how to read the findings, and how to improve the output.
  • Work with architects of underlying frameworks to minimize the number of reported vulnerabilities when there is significant code reuse.
  • Work with other members of the DevOps team to introduce tooling to increase clarity and better quantify the vulnerability remediation.
  • Work with engineering teams to incorporate the best standards from vulnerability management and code analysis into the SDLC.
  • Safely introduce dynamic code analysis tools.
  • Participate in Incident Response when appropriate.

Requirements

  • US Citizenship
  • BS degree in Computer Science or equivalent
  • 7+ years of secure software development experience.
  • Good understanding of Docker container building process.
  • Experience with vulnerability management systems like Snyk, Whitesource, Trivy, Dependency-check, Nancy etc.
  • Experience with SAST tools like Coverity, FindSecBugs, Fortify, Veracode, etc.
  • Familiarity with microservices architecture, Docker and Kubernetes.
  • Good understanding of complexities and security challenges in large-scale distributed systems.

Benefits

  • You may also be offered incentive compensation, bonus, restricted stock units, and benefits.
  • More details about F5’s benefits can be found at the following link: https://www.f5.com/company/careers/benefits .

Job title

Senior Security Engineer, DevSecOps

Job type

Experience level

Senior

Salary

$151,477 - $227,215 per year

Degree requirement

Bachelor's Degree

Location requirements

Report this job

See something inaccurate? Let us know and we'll update the listing.

Report job