DevSecOps Security Architect
Are you a security professional looking for a challenging opportunity to combine your technical expertise with business acumen? We are seeking an experienced DevSecOps Security Architect to join our team. In this role, you will be responsible for designing and implementing secure software development lifecycle (SDLC) models that integrate security into every stage of the application delivery process.
Key Responsibilities :
- Develop and implement SDLC frameworks that incorporate security best practices and industry standards, such as OWASP ASVS and NIST SSDF.
- Collaborate with cross-functional teams to ensure security is integrated into all aspects of the application development process, from design to deployment.
- Conduct threat modeling and risk assessments to identify potential security vulnerabilities and develop mitigation strategies.
- Implement automated code reviews and vulnerability scanning tools to ensure the quality and security of the codebase.
- Design and implement security awareness and training programs for developers and other stakeholders.
- Monitor and report on key performance indicators (KPIs) related to security and compliance.
- Stay up-to-date with emerging security threats and technologies, and adapt our SDLC framework accordingly.
Requirements :
Master's or Bachelor's degree in Computer Science, Telecommunications, or a related field, with a focus on cybersecurity.At least 3 years of experience in application security, secure SDLC, or a related field.Strong knowledge of security frameworks, including OWASP ASVS and NIST SSDF.Experience with code review, vulnerability scanning, and leadership in CI / CD pipelines.Proficiency with SAST, DAST, and IAST tools, as well as DevOps technologies.Excellent communication and collaboration skills, with the ability to work effectively with cross-functional teams.What We Offer :
A dynamic and multicultural work environment that values diversity and inclusion.Competitive salary and benefits package, including opportunities for professional development and continuous training.The chance to work on innovative projects that make a real impact on the security landscape.