drjobs DevSecOps Architect 100 Remote East Coast العربية

DevSecOps Architect 100 Remote East Coast

Employer Active

1 Vacancy
The job posting is outdated and position may be filled
drjobs

Job Alert

You will be updated with latest job alerts via email
Valid email field required
Send jobs
Send me jobs like this
drjobs

Job Alert

You will be updated with latest job alerts via email

Valid email field required
Send jobs
Job Location drjobs

Santa Clara - USA

Monthly Salary drjobs

Not Disclosed

drjobs

Salary Not Disclosed

Vacancy

1 Vacancy

Job Description

Our client leading life sciences and medical diagnostics manufacturing client is looking for DevSecOps Architect (100% Remote East Coast). Kindly have a look at the details below and let us know if you are interested in this opportunity.

Job Title: DevSecOps Architect (100% Remote East Coast)

Job Duration: LongTerm Contract (Possibility Of Extension)


Company Benefits include:

Healthcare (Medical Dental & Vision)

Paid Sick leave

401k (with 2% employer match)


We are seeking a highly motivated professional with experience in Security and Privacy to join our dynamic team who will help with threat modeling application security posture management security orchestration vulnerability & weakness assessments to improve resilience of the organization and its product portfolio.

Develop securityascode & policyascode pipelines

Manage vulnerabilities (3rd party) and weaknesses (1st party) in products evaluating the criticality for an adequate prioritization and providing the most suitable remediation working directly with the product teams as a trusted advisor

Conduct vulnerability monitoring (ondemand) vulnerability scanning and other security
testing activities

Contribute to initiatives within the Diagnostic Division to achieve the integration of defense capabilities into the development of new products and in the update/upgrade maintenance and support of existing products in collaboration with Product Support teams.

Develop and automate technical workflows for investigations and assessments for cyber security vulnerabilities and drive onboarding of new products in Vulnerability Monitoring and provide training to relevant stakeholders in the organization regarding Vulnerability Handling and Incident Response.

Develop maintain and continuously optimize processes playbooks and tools for Vulnerability Monitoring Vulnerability Management Incident Response Threat Intelligence and Security Testing.

Evangelize security and privacy developing Security Champions across departments involved in the product development and operations

Maintain the product security controls and awareness supporting other PSPO Chapters (Solution Architecture Product Support and Compliance/Privacy).


Qualifications:

Minimum 3 years of related work experience in SDLC & cloud ops

Demonstrated experience in Cloud computing technologies full stack deployments etc.

Demonstrated experience in K8S AWS or GCP Docker and other cloud native tools

Demonstrated experience in Jenkins/ArgoCD/Tekton or another common CI/CD tool chain
demonstrated skills in Sigstore SBOM SLSA and secure software supply chain management.

Ability to develop Terraform K8S manifests or other forms of infrastructure as code Ability to codify Rego or Cedar policies

Demonstrated experience in SAST & DAST tools (Checkmarx Snyk Mayhem BurpSuite ZAP etc)

Demonstrated experience automating security controls (eg shell scripting python)

Indepth experience in managing information security and privacy risks and threat modeling.

Indepth experience in vulnerability handling pre and postmarket launch

Indepth experience in system and cloud infrastructure hardening

Strong understanding of industry standards: ISO 27000 family and HITRUST

Certifications are a plus: SANS GIAC (GCIH GPEN GCIA GCFA and others) CEH CISSP CISA CISM LA ISO27001.


Would you consider discussing this further If so please send us your availability and updated resume to at your earliest convenience.



devsecops, threat modeling, vulnerabilty management, DAST, SAST, Python, Kubernetes

Employment Type

Full Time

Report This Job
Disclaimer: Drjobpro.com is only a platform that connects job seekers and employers. Applicants are advised to conduct their own independent research into the credentials of the prospective employer.We always make certain that our clients do not endorse any request for money payments, thus we advise against sharing any personal or bank-related information with any third party. If you suspect fraud or malpractice, please contact us via contact us page.