Devsecops Engineer

Devsecops Engineer
Empresa:

Richemont


Lugar:

Portugal


Função de trabalho:

Tecnologia da informação

Detalhes da Vaga

.DevSecOps Engineer " Join us to create secure application delivery ecosystems, safeguarding our organization from the vulnerabilities of tomorrow. " (Guillaume. G, Cloud Governance & Architecture Manager) CONTEXT As a DevSecOps Engineer, you will be part of the Governance & Architecture team within the Cloud & DevOps Services department. You are instrumental in enabling and enhancing our security posture throughout our software delivery lifecycle, allowing streamlined and secure code development and deployment processes. You participate in designing, implementing, and continuously improving our security frameworks. Your proficiency in DevOps and secure application development practices will make you a crucial link between development and operations teams. HOW WILL YOU MAKE AN IMPACT? Contribute to and enhance a complete stack of solutions for Cloud Security & DevSecOps management from a people, process, and technology standpoint. This includes but is not limited to Secret Detection, SAST, SCA, and container security. Develop and implement security controls that are aligned with the organization's security policies and procedures throughout our software delivery lifecycle. Automate the implementation and testing of these controls. Monitor their effectiveness and make necessary adjustments. Investigate and resolve security incidents that are related to security controls. Provide practical guidance to engineering and project teams to support the implementation of security controls, guidelines, and best practices. Be a driving element and enable greater cooperation between product teams, cybersecurity teams, and compliance functions, helping quantify the risk and define relevant control objectives and activities to secure cloud workloads. Contribute to the cloud and DevOps security governance (including participating in committees, building dedicated dashboards with associated KPIs, and evangelizing to other teams). Be autonomous and proactive; Able to understand functional and technical requirements, identify gaps, and suggest improvements. HOW WILL YOU EXPERIENCE SUCCESS WITH US? Previous experience in an SSDLC context, with a proven track record in developing and implementing effective security solutions and managing security challenges. Familiarity with security controls and frameworks. This includes understanding the different types of security controls, such as preventive, detective, and corrective controls, and the various security frameworks, such as the CIS Controls and the NIST Cybersecurity Framework. Knowledge of the SDLC and how to integrate security controls into the SDLC. This includes understanding the different phases of the SDLC and how to apply security controls at each stage. Knowledge of security risk assessment frameworks like OWASP top 10 (Web Applications, API). Experience with automation tools (gitlab ci, Jenkins, awx..


Fonte: Jobtome_Ppc

Função de trabalho:

Requisitos

Devsecops Engineer
Empresa:

Richemont


Lugar:

Portugal


Função de trabalho:

Tecnologia da informação

Técnico(A) De Reservas - Octant Ponta Delgada

Descrição da Vaga Responsável pelas reservas solicitadas pelos clientes dando a conhecer todas as ofertas/serviços do Hotel. Principais Responsabilidades: D...


Desde Discovery Hoteis/Operações - Portugal

Publicado a month ago

Sharepoint Consultant

SharePoint Consultant (Remoto) Sobre a AdQuam Human Capital Na AdQuam Human Capital somos especialistas a «apresentar os melhores talentos aos nossos cliente...


Desde Adquam Human Capital - Portugal

Publicado a month ago

Senior Frontend Software Engineer | Code

At Wellhub (formerly Gympass) (Permanent), in Portugal Expires at: 2024-10-08 Remote policy: Full remote Your wellbeing matters. Join a company that cares GE...


Desde Landing.Jobs - Portugal

Publicado a month ago

Senior Data Platform Engineer

At Feedzai (Permanent), in Portugal Salary: €35.000 - €62.000 Expires at: 2024-11-01 Remote policy: Full remote Feedzai is the world's first RiskOps platform...


Desde Landing.Jobs - Portugal

Publicado a month ago

Built at: 2024-09-19T09:10:54.065Z