Client Description:
We are recruiting on behalf of its client who is a top Romanian IT company specializing in custom software, digital marketing, and cloud solutions, delivering innovative, tailored digital transformation services to clients worldwide.
Responsibilities:
● Collaborate with cross-functional teams to identify security requirements, define security controls, and embed security into the development and operations processes. ● Collaborate with cross-functional teams, promoting communication, and facilitating the adoption of security practices throughout the development process.
● Perform regular security audits to identify potential security breaches or anomalies. ● Provide guidance and support to development teams in implementing secure coding practices, secure configuration management, and secure deployment strategies. ● Stay up to date with the latest industry trends, security threats, and best practices related to DevSecOps, and recommend improvements and enhancements to security practices. ● Participate in threat modeling exercises to identify potential security risks and vulnerabilities in software applications or infrastructure.
● Design, develop, and implement secure DevOps practices, processes, and toolchains to integrate security into the software development lifecycle (SDLC).
● Implement and maintain security monitoring and incident response capabilities to detect and respond to security incidents.
● Develop and maintain secure infrastructure configurations, including network architecture, access controls, and authentication mechanisms.
● Automate security controls and processes to enable continuous integration, continuous delivery, and continuous deployment (CI/CD) pipelines.
● Collaborate with the operations team to ensure the secure operation and maintenance of infrastructure, platforms, and applications.
Candidate Profile:
As a DevSecOps Engineer, you will play a crucial role in integrating security practices into our software development and operations processes. You will collaborate with development teams, security professionals, and operations personnel to ensure the secure design, development, deployment, and maintenance of our systems and applications.