Senior Security Engineer

F5 F5 · Enterprise · Hyderabad, India +1

Senior Security Engineer at F5 responsible for developing and implementing strategic processes and technical solutions to enhance the information security program and improve security posture. This includes threat modeling, DevSecOps pipelines, penetration testing, and leveraging cloud services for security automation.

What you'd actually do

  1. Work with a team of security engineers to deliver on organizational related to threat modeling, DevSecOps pipelines, and penetration testing activities.
  2. Identify execution of strategic threat-modeling initiatives to identify potential risks to confidentiality, integrity, and availability across enterprise and product environments. .
  3. Leverage native Azure, GCP, and AWS cloud services to automate and improve existing security and control activities.
  4. Implement DevSecOps practices, enabling seamless integration of security into CI/CD pipelines and infrastructure-as-code strategies.
  5. Develop or implement open-source/third-party tools to assist in detection, prevention and analysis of security threats

Skills

Required

  • Threat Modeling methodologies and tools
  • DevSecOps principles
  • scripting in multiples languages (Go, Rust, Python, Ruby, etc.)
  • penetration testing frameworks and tools
  • cloud platforms (Azure, AWS, Google Cloud Platform)
  • security and networking architecture
  • automating security testing and reporting outputs

Nice to have

  • familiarity with technological stack (Big-IP, Azure, AWS, GCP, CentOS, Linux, Kubernetes, Docker Hashicorp Vault, Palo Alto, Cisco, Qualys)
  • Exposure to DevOps tooling, CI/CD pipelines, container orchestration, and infrastructure as code approach (e.g. Puppet, Chef, Ansible, Terraform, Jenkins, CircleCI, Artifactory, Git)
  • Willingness to innovate and learn new technologies
  • Excellent interpersonal and relationship skills with a collaborative mindset
  • Strong self-directed work habits, exhibiting initiative, drive, creativity, maturity, self-assurance and professionalism.
  • Agile, tactful, and proactive attitude that can manage prioritization and know when to escalate.

What the JD emphasized

  • threat modeling
  • DevSecOps