Match score not available

DevSecOps Engineer

Remote: 
Full Remote
Contract: 
Experience: 
Mid-level (2-5 years)
Work from: 

Offer summary

Qualifications:

Bachelor degree in Computer Science, Telecommunications or Information Security, Master degree preferred, Minimum 3 years in Application Development (DevOps), At least 1 year in Application Security Testing, Proficiency in English required.

Key responsabilities:

  • Coordinate teams and conduct client discussions daily
  • Participate in business development activities and RFP responses
  • Design secure software development life cycle solutions
  • Concrete contribution to tool evaluation and recommendations
  • Collaborate on security architecture and documentation for applications
Accenture Czech Republic logo
Accenture Czech Republic https://www.accenture.com/cz-en
10001 Employees
See more Accenture Czech Republic offers

Job description

Logo Jobgether

Your missions

Job Description:

Selected candidates will coordinate Application Security projects and services delivered to clients and will participate on other Security projects in global & leading companies operating different markets. It involves a wide range of activities from capability assessment, through architecture and tools deployment and configuration up to operations and maintenance of relevant processes and technologies.

Computer Science, Telecommunications or Information Security Bachelor Degree or a related field and full professional proficiency in English is required. Experience with SW development, DevOps, Secure SLDC and Application Security Testing is required. Experience in other fields of Information Security (Pentesting, Security Architecture, Infrastructure Security) is desired.

Applicants must have experience in managing people and projects with multidisciplinary and geographically dispersed teams. Applicants are expected to exhibit proactive behaviour, propose improvements and innovations and provide constructive feedback.

Key Responsibilities:


  • Coordinate teams, projects and participate in discussions with clients on daily basis

  • Participate in business development activities (including responses to RFP/I)

  • Design & Implement secure software development life cycle solutions based on various tools

  • Contribute to tool evaluation, selection and recommendation internally and to clients

  • Provide advisory to different groups (Technology, Developers, Digital Transformation, etc.)

  • Participate in execution of training program for different teams

  • Define secure software development life cycle for large projects and teams

  • Define applications security architecture elements

  • Define documentation of security requirements for applications (web, mobile, host, SOA, etc.).

  • Assistance with KPIs and KRIs related to security in applications

  • Coordinate the construction of labs and PoC to improve project and service delivery

  • Work with senior management on defining roadmaps, needs and provide short and mid-term forecasting

  • Collaborate with clients to define best approach to maximise the security posture

  • Contribute to R&D activities as a Subject Matter Expert & internal professional community


  • Education:


  • Master’s Degree in Computer Science, Telecommunications or Information Security


  • Recommended Certifications


  • Certifications such as CSSLP, CISSP, CISA, etc.

  • Certifications from Pentesting vendors (OSCP, CEH,…)

  • SAST & DAST tools related education and certificates


  • Work Experience:


  • At least 3 years of experience in the Application Development (DevOps)

  • At least 1 year of experience in Application Security Testing


  • Work Requirements:


  • Willing to travel and attend meetings/workshops on client premises and work from client premises within the country or abroad


  • Knowledge/Skills Requirements:


  • Has a passion for Security, Agile, and DevOps

  • Experience in management and definition of security in the software development lifecycle (SDLC)

  • Working knowledge of Waterfall, Agile and primarily DevOps development methodologies

  • Experience in software development and SDLC in Java, Python, C#, etc…

  • Experience with Automation in testing or orchestration Selenium, Maven, Ant, Msbuild, Npm, Yarn, Jenkins, Team City, etc…

  • Knowledge of conducting security checks (static and dynamic code analysis, vulnerability analysis in applications and penetration tests, security component analysis)

  • Understanding or virtualisation and container technologies (Docker, Kubernetes, OpenShift, …)

  • Experience with OWASP Testing Guide v3 / 4 and OWASP TOP 10

  • Knowledge of securing APIs

  • Experience in Web and/or Mobile applications and common vulnerabilities

  • Knowledge of security in micro-services is beneficial

  • Client focus

  • Fluent English (Level C2 as per the Common European Framework of Reference (CEFR))

  • Communications skills including the ability to understand client process in any area in detail

  • Excellent coordination and communication skills

  • Business writing skills (capturing needs and writing it down on formal documents)

  • Reliable and with attention to detail

  • Ability to work alone and bring results


  • Required profile

    Experience

    Level of experience: Mid-level (2-5 years)
    Spoken language(s):
    Check out the description to know which languages are mandatory.

    DevSecOps Related jobs