Senior Security Engineer

وصف الوظيفة

Envision Employment Solutions is currently looking for a Senior Security Engineer for one of our partners, a global leader in consulting, digital transformation, technology and engineering services.

This position requires flexibility to work on US times and flexibility to travel abroad when needed.

Responsibilities:

  • Implementing various development, testing, automation tools, and IT infrastructure 
  • Partner with engineering teams and guide the integration of security controls into CI/CD pipelines such as vulnerability and container scanning. Directly support various development teams with continuous security testing capabilities to ultimately meet security team objectives and initiatives 
  • Provide feedback and guidance to your team including design feedback, code review, and troubleshooting 
  • Utilize knowledge of programming languages and the software ecosystem to accomplish goals. 
  • Provide DevOps, DevSecOps, and technical advisory to guide the remediation of SAST, SCA and DAST vulnerabilities 
  • Provide security guidance on a constant stream of new products and technologies; Analyze, assess, and respond to various infrastructure and application threats 
  • Fully support Application Security Team initiatives such as content contribution for educational awareness, documentation, reporting requirements, or even consultancy discussions for strategy as required 
  • Mentor Junior Security Engineers, Security Analysts, and / or colleagues as needed 

إمتيازات الوظيفة

  • Competitive Salary based on experience
  • Social and medical insurance
  • Learning, development and career progression

متطلبات الوظيفة

  • Bachelor's in computer science or related technical discipline 
  • Experience with the end-to-end vulnerability management lifecycle (SAST, SCA and DAST) 
  • Experience with various security assessment tooling such as Fortify, CheckMarx, Veracode, AppScan, etc. 
  • Proficient understanding of concepts like CI/CD, configuration management, cloud platforms, version control, automation, monitoring, analytics, and containerization 
  • Technical knowledge to understand vulnerability risk and remediation steps 
  • DevSecOps experience, building security controls into CI/CD pipelines (GitHub, Azure DevOps, Jenkins, etc.) 
  • Ability to work both with little supervision and in a team 
  • Desire and ability to ramp up quickly on new technologies