Senior DevSecOps Engineer

United States - Remote

Applications have closed

IT Labs

IT Labs was created with a sole purpose to produce the most high-performing, purpose and process-driven software development teams.

View company page

We are looking for Senior SecDevOps engineers who have a passion for and experience in integrating secyrity systems by using the best practices of continuous delivery and continuous deployment. Do you have a passion for security and product? Do you have well-considered opinions about how reliable infrastructure should work, and hold yourself and your code to a high standard? Are you always on the lookout for a business that sees its employees as more than just means to an end? If yes, IT Labs offers this and much more!


Key Responsibilities:

  • Implement, test and operate advanced software security techniques in compliance with technical reference architecture
  • Perform penetration testing to improve platform security
  • Develop and refine CI/CD tools that help engineering to release faster, with high confidence, and with the highest quality possible
  • Shifting DEV teams left, through a Secure Software Development Life Cycle and performing threat modeling, design reviews, code reviews and penetration testing
  • Improve workflow automation across the engineering
  • Providing metrics, documentation, and self-service infrastructure to help our users work at pace and get the most out of the platform
  • Developing automation libraries and tooling
  • Implement and maintain CI/CD pipelines
  • Using advanced troubleshooting skills to diagnose and fix problems

Requirements

  • Expertise with performing penetration testing and knowledge of mitigation techniques as per OWASP Top 10, SANS Top 25, or WASC
  • Hands-on experience with testing frameworks in line with Web Applications, Mobile Applications, Web Services/APIs, Thick-client, Network and Cloud (AWS preferred)
  • Experience with AWS
  • Certification on CEH (Certified Ethical Hacker) or OSCP (Offensive Security Certified Professional)
  • Experience with monitoring tools such as Prometheus and Grafana or others
  • Previous work experience with CI/CD which includes tools like SVN, GIT, Octopus Deploy and TeamCity
  • Experience in at least one programming or scripting language
  • Experience leading technical projects or processes
  • Experience providing oversight and mentoring to junior and/or new team members
  • Experience with Agile/Scrum development methodologies
  • Willingness to learn new tools, programming languages, technologies
  • Team player and able to work with teams that are in multiple locations
  • Personal initiative and drive with the ability to work in a fast-paced work environment
  • US citizenship is a must

Benefits

Our values

We are a company that seeks the best for both our employees and clients, reaching beyond expectations in turning dreams into reality. Our way of working is rooted in our core values (Integrity, Excellence, Proactivity, Innovation, and People), with an expectation that our future colleagues will make these their second nature in their everyday work and life. We don’t ask for perfection, but we do appreciate people motivated to better themselves in every conceivable aspect.

About IT Labs

Founded in 2005, IT Labs is an international software tech company, specializing in purpose and process-driven teams for high performance, innovation, transformation, and efficiency. Our HQ is in Palm Beach Gardens, Florida, and we have teams and offices around the world - the UK, the Netherlands, Belarus, Serbia, and North Macedonia. We are constantly growing, and we would love for you to become part of our team!

Tags: Agile APIs Automation AWS CEH CI/CD Cloud Compliance DevSecOps Grafana Monitoring Offensive security OSCP OWASP Pentesting Prometheus SANS Scripting Scrum SDLC

Regions: Remote/Anywhere North America
Country: United States
Job stats:  15  4  0

More jobs like this

Explore more InfoSec / Cybersecurity career opportunities

Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.