Application Security Devsecops Specialist
4 giorni fa
Application Security DevSecOps SpecialistJoin to apply for the Application Security DevSecOps Specialist role at NTT DATA Europe & LatamWho We AreNTT DATA is one of the world's largest global security service providers, partnering with some of the most recognized security technology brands.We're looking for passionate, curious, and motivated individuals to join our team.What You'll Be DoingIncorporate security controls and standards into all phases of the software development lifecycle (SDLC).Collaborate with developers to adopt secure coding practices, including OWASP compliance.Conduct threat modeling and evaluate design documents to identify security vulnerabilities.Establish security requirements and acceptance criteria for application development projects.Design and implement security automation within CI/CD workflows using tools for SAST, DAST, IAST, SCA and compliance monitoring.Develop custom security testing frameworks compatible with agile and DevSecOps models.Conduct infrastructure-as-code (IaC) configuration checks and enforce compliance policies.Automate secrets scanning, credential hygiene practices, and dependency vulnerability reviews.Execute static (SAST) and dynamic (DAST) application security assessments.Perform manual penetration testing and secure code reviews to detect risks.Analyze application dependencies and third-party components, ensuring vulnerability remediation.Validate security fixes via rigorous regression testing and secure deployment methods.Prepare training initiatives for developers on secure coding practices, application security principles, and DevSecOps workflows.Create and disseminate security documentation, guidelines, and playbooks for developers and architects.Mentor engineers to adopt security-first product development and incident prevention strategies.Establish and support developer security champion programmes within agile teams.Implement robust security controls for containerized workloads in Docker, Kubernetes, and similar platforms.Design and secure API endpoints and microservices architectures.Leverage cloud security services on AWS, Azure, or GCP to deliver secure, scalable solutions.Advocate for best practices in secret management, repository vaulting, and cloud-native application monitoring.What You'll Bring AlongBachelor's degree in Cybersecurity, Computer Science, Software Engineering, or equivalent experience.Minimum 3-5 years of experience in application security engineering.Familiarity with implementing container security policies and securing high-performance CI/CD development ecosystems.Proficiency in multiple programming languages (e.g., Java, Python, JavaScript, Go, .NET).Extensive experience deploying application security tools like SonarQube, Checkmarx, Veracode, OWASP ZAP.Expertise in CI/CD tools and platforms (e.g., Jenkins, GitHub Actions, Azure DevOps).Solid understanding of container orchestration technologies (e.g., Kubernetes, Docker).Familiarity with cloud platforms (AWS, Azure, GCP) and IaC assessment tools (Terraform, CloudFormation).Advanced knowledge of the OWASP Top 10 vulnerabilities, secure coding techniques, and cryptographic best practices.Proficiency in API security testing and securing microservices.Hands-on involvement in framework-based security compliance efforts (ISO *****, GDPR, SOC 2).Exceptional collaboration and communication abilities when interfacing with software teams.Strong problem-solving mindset to balance security priorities in fast-paced DevOps environments.Capable of delivering security-focused workshops and team mentoring.Must meet UK SC Clearance eligibility guidelines.Preferred certifications include CSSLP, GWEB, or a Certified DevSecOps Engineer qualification.AWS / Azure / GCP Security specialization certifications are advantageous.Excellent command of both spoken and written English.#J-*****-Ljbffr
-
Application Security DevSecOps Specialist
2 settimane fa
bologna, Italia NTT DATA Europe & Latam A tempo pienoApplication Security DevSecOps SpecialistJoin to apply for the Application Security DevSecOps Specialist role at NTT DATA Europe & LatamWho We AreNTT DATA is one of the world's largest global security service providers, partnering with some of the most recognized security technology brands. We're looking for passionate, curious, and motivated individuals to...
-
Impactful AppSec DevSecOps Engineer
2 settimane fa
bologna, Italia NTT DATA Europe & Latam A tempo pienoA leading global IT service provider in Emilia-Romagna is seeking an Application Security DevSecOps Specialist. The ideal candidate will possess deep experience in application security engineering and advise developers on secure coding practices. Responsibilities include threat modeling, security automation, and mentoring teams on best practices. The role...
-
Impactful AppSec DevSecOps Engineer
2 settimane fa
bologna, Italia NTT DATA Europe & Latam A tempo pienoA leading global IT service provider in Emilia-Romagna is seeking an Application Security DevSecOps Specialist. The ideal candidate will possess deep experience in application security engineering and advise developers on secure coding practices. Responsibilities include threat modeling, security automation, and mentoring teams on best practices. The role...
-
Devsecops Engineer
2 settimane fa
BOLOGNA, Italia Medium A tempo pienoThis position is posted by Jobgether on behalf of a partner company.We are currently looking for a DevSecOps Engineer in Bulgaria.In this role, you will be at the forefront of security, reliability, and DevOps, designing and implementing resilient cloud infrastructure and CI/CD pipelines.You will embed security as code throughout the software development...
-
DevSecOps Engineer
2 settimane fa
bologna, Italia Medium A tempo pienoThis position is posted by Jobgether on behalf of a partner company. We are currently looking for a DevSecOps Engineer in Bulgaria.In this role, you will be at the forefront of security, reliability, and DevOps, designing and implementing resilient cloud infrastructure and CI/CD pipelines. You will embed security as code throughout the software development...
-
Associate Engineer – Devsecops
4 giorni fa
BOLOGNA, Italia Jma Wireless A tempo pienoJMA makes 5G possible for organizations with the most critical connectivity demands in the world.From its global tech centers, JMA is ushering in a new era of connectivity for leading mobile carriers, the most iconic stadiums, major universities, leading healthcare facilities, and the busiest transit centers.5G is more than another G on your phone — it is...
-
Associate Engineer
7 giorni fa
Bologna, Italia Medium A tempo pienoJMA makes 5G possible for organizations with the most critical connectivity demands in the world. From its global tech centers, JMA is ushering in a new era of connectivity for leading mobile carriers, the most iconic stadiums, major universities, leading healthcare facilities, and the busiest transit centers.5G is more than another G on your phone — it is...
-
Associate Engineer
6 giorni fa
bologna, Italia Jma Wireless A tempo pienoJMA makes 5G possible for organizations with the most critical connectivity demands in the world. From its global tech centers, JMA is ushering in a new era of connectivity for leading mobile carriers, the most iconic stadiums, major universities, leading healthcare facilities, and the busiest transit centers.5G is more than another G on your phone — it is...
-
Associate Engineer
6 giorni fa
BOLOGNA, Italia Jma Wireless A tempo pienoJMA makes 5G possible for organizations with the most critical connectivity demands in the world.From its global tech centers, JMA is ushering in a new era of connectivity for leading mobile carriers, the most iconic stadiums, major universities, leading healthcare facilities, and the busiest transit centers.5G is more than another G on your phone — it is...
-
Associate Engineer
6 giorni fa
BOLOGNA, Italia Jma Wireless A tempo pienoJMA makes 5G possible for organizations with the most critical connectivity demands in the world.From its global tech centers, JMA is ushering in a new era of connectivity for leading mobile carriers, the most iconic stadiums, major universities, leading healthcare facilities, and the busiest transit centers.5G is more than another G on your phone — it is...