Duties and Responsibilities
Design and implement secure scalable solutions to address infrastructure and security requirements.
Champion DevSecOps practices integrating security seamlessly into the SDLC with tools like SAST/DAST solutions and Infrastructure as Code (IaC) scanning (e.g. Prisma Cloud SonarQube).
Identify and implement opportunities for pipeline automation and optimization driving efficiency and speed.
Embrace Infrastructure as Code (IaC) using tools like Terraform and Kubernetes to automate and manage multi-cloud deployments (e.g.: AWS Azure).
Lead the containerization charge leveraging Docker and Helm 3 for efficient application packaging and deployment.
Strong understanding of security concepts including threat modeling risk assessment and vulnerability management
Proficiency in automation tools configuration management and continuous integration and deployment (CI/CD) pipelines. Familiarity with tools like GitHub Actions ArgoCD Terraform.
Expertise in cloud security principles including secure architecture design and configuration management. Familiarity with popular cloud platforms like AWS Microsoft Azure
Implement state-of-the-art artifact management solutions for secure storage and distribution (e.g. Artifactory Nexus.)
Implement and maintain robust monitoring solutions (e.g. Prometheus Grafana) to gain deep insights into application and infrastructure health.
Integrate and leverage a SIEM tool (Splunk or similar) to collect analyze and correlate security-related data from various sources for advanced threat detection and incident response.
Possess a strong understanding of web server configuration and management (e.g. Apache Nginx) for optimal performance and security.
Possess a strong foundation in Unix/Linux administration including scripting (Bash) user and permission management and system troubleshooting.
Foster a collaborative environment working closely with development security and operations teams to ensure seamless software delivery.
Specialized Skills and Technologies
Kubernetes
Docker
Terraform
Helm
Prisma Cloud / SonarQube