It Security Appsec Devsec Operations Lead

Dubai, United Arab Emirates

Job Description

13259-IT Security - AppSec DevSec Operations Lead

Experience: 10-15
Posted: 24 Mar,2023
Location: United Arab Emirates
Apply Now
Key Responsibilities & Accountabilities:
  • Build and maintain a cloud infrastructure architecture aligning security, compliance, performance, and resilience, for clients.
  • Assess architectures and designs for security vulnerabilities; propose and build implementable alternatives for clients.
  • Oversee the management and remediation of identified security flaws within our development platforms.
  • Build and maintain monitoring, auditing, and reporting frameworks that produces artifacts that support security and compliance needs for clients.
  • Develop processes that produce artifacts that support security and compliance requirements.
  • Implement best practices for cloud security on the client\xe2\x80\x99s cloud platforms. Proactively manage stakeholder communication related to deliverables, risks, changes and dependencies

Education & Experience:
  • Minimum 10 years of experience required.
  • Experience with different SAST & DAST & VAPT tools is mandatory with good understanding of OWASP top 10, SANS Top 25 and other industry best standards, frameworks and baseline such as NIST, CIS etc.
  • Experience in \'Secure-by-design\' approaches and ensuring it is part of quality decisions by default and working exposure with other stakeholders such a programme managers or service managers to ensure they own this.
  • Full awareness of the latest developments in the security and technology industry including best practice and industry standards.
  • Minimum 3+ years experience in one or more continuous integration tools \xe2\x80\x93 e.g. Jenkins, Bamboo. Performing DevOps tool integration, configuration for SecDevOps
  • Strong architecture knowledge for developing security solutions and best practices, focusing predominantly on cloud platforms (AWS/Azure)
  • Usage of CICD processes including the integration of security & quality tooling. Knowledge of DevOps processes and tools (Ansible, Jenkins, Git, Azure DevOps)
  • Security Scanning tools (Static Code Analysis, Opensource and Container Scanning tools).
  • Experience in working within modern application development and engineering teams using DevOps & Agile methodologies
  • Building and deploying Docker containers, Kubernetes Orchestration, and using OpenShift. Designing automation and code & scripting in Terraform and/or python and/or bash
  • Create well-written documentation and procedures and create dashboard and reports to provide transparency and visibility for the results of the strategic initiatives
  • Guide the implementation teams on best practices, verify solutions specifications are being adhered to, and communicate progress.

Required Skills

Skill
Years
Months
SAST
10
0
DAST
10
0
Jenkins
10
0
Bamboo
10
0
DevOps tool knowledge
10
0
AWS
10
0
Azure
10
0
CICD
10
0
Ansible
10
0
Agile methodologies
10
0
Docker
10
0
Kubernetes
10
0
Cloud Infrastructure
10
0
IT Security
10
0

Beware of fraud agents! do not pay money to get a job

MNCJobsGulf.com will not be responsible for any payment made to a third-party. All Terms of Use are applicable.


Related Jobs

Job Detail

  • Job Id
    JD1516994
  • Industry
    Not mentioned
  • Total Positions
    1
  • Job Type:
    Full Time
  • Salary:
    Not mentioned
  • Employment Status
    Permanent
  • Job Location
    Dubai, United Arab Emirates
  • Education
    Not mentioned