such as OWASP CI/CD, DSOMM, SAMM, and cloud security posture management systems like Azure Defender and Prisma Cloud. Expertise with SAST & SCA systems such as Snyk and Checkmarx, including policy management. Ability to develop Threat Models as part of risk assessment, including remediation plans (preferred). Experience with DAST systems such as OpenZAP and Qualys DAST, ideally with More ❯
of existing and new SCA and SAST tooling Integration of security into CI/CD pipelines Key Responsibilities Evaluate, implement, and configure SAST and SCA tools (e.g., Wiz, Veracode, Checkmarx, Snyk, SonarQube) Integrate security tooling into CI/CD pipelines (GitHub, Jenkins, BitBucket) Collaborate on secure migration of applications. Develop and maintain documentation and reporting for security findings and tool More ❯
of existing and new SCA and SAST tooling Integration of security into CI/CD pipelines Key Responsibilities Evaluate, implement, and configure SAST and SCA tools (e.g., Wiz, Veracode, Checkmarx, Snyk, SonarQube) Integrate security tooling into CI/CD pipelines (GitHub, Jenkins, BitBucket) Collaborate on secure migration of applications. Develop and maintain documentation and reporting for security findings and tool More ❯
Kubernetes (vanilla, EKS, AKS, OpenShift), CI/CD pipelines, and infrastructure as code (Terraform) Security integration experience across the DevSecOps lifecycle, including: SAST, DAST, SCA, and IAST tools (e.g., Checkmarx, Veracode, OWASP ZAP) Secrets management tools like HashiCorp Vault Vulnerability management solutions such as Prisma Cloud Testing frameworks like Selenium Familiarity with JIRA, Confluence, and GitLab/Jenkins-based CI More ❯
Kubernetes (vanilla, EKS, AKS, OpenShift), CI/CD pipelines, and infrastructure as code (Terraform) Security integration experience across the DevSecOps lifecycle, including: SAST, DAST, SCA, and IAST tools (e.g., Checkmarx, Veracode, OWASP ZAP) Secrets management tools like HashiCorp Vault Vulnerability management solutions such as Prisma Cloud Testing frameworks like Selenium Familiarity with JIRA, Confluence, and GitLab/Jenkins-based CI More ❯