Mô Tả Công Việc
- Design and implement mechanisms that efficiently identify and mitigate security risks within the existing DevOps workstreams.
- Champion test automation, infrastructure as code, policy as code, and cloud native patterns to eliminate defects and security flaws by design.
- Develop & maintain security testing plans.
- Automate security testing (SCA, SAST and DAST) as part of the CI/CD process.
- Manual security testing and code reviews
- Implement security scanning, remediation workflows, and compliance as code to shift security left and enable rapid detection and response to vulnerabilities.
- Define security policies and coding guidelines as well as support software architects in secure designs.
- Coach & train developers in secure coding practices.
- Manage 24/7 incident response runbooks, root cause analysis processes, and fault-tolerant architecture to ensure robustness and uptime of critical systems.
- Motivate cultural change through coaching, evangelizing DevSecOps philosophy, and being a role model for constructive debate grounded in shared business objectives.
Yêu Cầu Công Việc
To become part of the family, you convince through analytical thinking and a structured and results-oriented working method. Moreover, you should bring with you:
- Bachelor’s degree in computer science, Information Technology Management, Engineering, or related fields. Equivalent experience is also considered.
- At least 4-year experience in developing & deploying high-performance enterprise applications and solution architecture in cloud environments (e.g.: Azure, AWS)
- Mastery of CI/CD, IaC, container orchestration, public cloud, configuration management tools, monitoring tools, and application security toolchains.
- Strong proficiency in programming languages (Python, Java, Go,...) and scripting for automation.
- Strong understanding of networking concepts, database administration, and SQL.
- Strong understanding of IAM concepts and solutions (e.g., Azure AD, Auth0, Okta…)
- Superb verbal and written communicator able to concisely explain complex technical concepts to senior leadership.
- Good command of English (written and verbal)
- Preferable:
- Practical experience in platform-based solution
- Advanced security certifications such as CISSP, CISM, or CEH, and Cloud security certifications (e.g., AWS Certified Security - Specialty, Microsoft Certified: Azure Security Engineer Associate)
- Knowledge of regulatory compliance standards (GDPR, HIPAA, SOX, PCI-DSS…).
- Has a strong foundation of and enthusiasm in product and process management.
- Experience working in an Agile team environment.
- Relentless passion for security, quality, and continuous improvement.
- We expect you to work independently and have high degrees of willingness to learn.
- Critical thinking but open-minded
Hình thức
Quyền Lợi
With a knack for technology and innovation, we put novel ideas into practice, rise to
challenges and drive pioneering technologies. Agile software development methods are
an integral part of how we work.
With us you will find ample scope for creativity and your innovative spirit. Regular in-
house workshops give our software engineers the possibility to get away from their
everyday routine to learn and try out new technologies. We strive for continuous
improvement, working on versatile projects in an on-going exchange and with the
expertise of our specialists. In combination with individual education, we permanently
take our competencies to the next level.
Summary of benefits:
- Visual Studio Enterprise Subscription
- Latest technology (also for private use at special rates)
- Flexible working hours
- State-of-the-art working environment and latest equipment
- Unique team spirit
- Good work-life balance
- Company pension scheme
- Capital-generating benefits