DevSecOps Engineer

Persistent SystemsNew York, NY
6d$161,000 - $201,000

About The Position

Persistent Systems is looking for a hands-on DevSecOps Engineer with a strong background in application security and automation to join our team in our New York City office. The DevSecOps Engineer will be responsible for owning and driving security tooling and processes, particularly around code scanning and vulnerability management. The ideal candidate has recent, demonstrated, hands-on experience, and is highly self-sufficient.

Requirements

  • Bachelor’s degree in computer science, computer engineering, or equivalent
  • 5 years of experience designing, developing, implementing DevSecOps solutions
  • 5 years of experience in Linux and bash or shell scripting
  • 5 years of experience with Git
  • Experience with Java, C, C++, Python or an equivalent software language
  • Hand-on experience with C/C++ code scanning implementation
  • Strong vulnerability management experience, from discovery through remediation
  • Proven experience: Investigating security tools and findings, running POCs, reviewing results and tuning rules, implementing tools and processes end-to-end
  • Demonstrated ability to automate manual processes
  • Ability to obtain a Secret US Security Clearance

Nice To Haves

  • Experience with container security and container image scanning
  • Familiarity with CI/CD pipelines (Jenkins) and integrating security tooling into them
  • A developer background and insider understanding how DevSecOps integrates with developers
  • Experience with working closely with Release Management teams as well as Automation Testing teams
  • Experience working in an Agile environment with multiple teams operating in parallel to accomplish large releases
  • Experience with Gerrit Code Review

Responsibilities

  • Create and drive the implementation, configuration, and continuous improvement of application security tools and processes
  • Lead code scanning initiatives, including tool evaluation, proof-of-concept development, deployment, and tuning
  • Investigate security findings, validate results, reduce false positives, and help define remediation workflows
  • Build and automate security processes that integrate into the CI/CD pipelines
  • Collaborate with multiple engineering teams acting as the primary driver and contributor to DevSecOps initiatives
  • Maintain and improve vulnerability management workflows, including tracking, prioritization, and reporting
  • Identify, track, automate, and improve areas in the software development life cycle to be better secure

Benefits

  • medical, dental, vision, life, and disability insurance
  • paid time off (sick time and vacation time)
  • flexible spending accounts
  • 401(k) plan with company match
  • fitness membership reimbursement
  • tuition assistance
  • mental health benefits
  • pet discounts
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service