Spec Engr Iii-security Engrg

Verizon Verizon · Telecom · Chennai, India +1

This role focuses on integrating security into the development and operations lifecycle within a cloud environment, emphasizing DevSecOps principles, automation, and infrastructure as code for security controls. The engineer will design and implement automated security measures, manage security tools on cloud platforms like AWS and GCP, and improve DevSecOps processes.

What you'd actually do

  1. Developing and promoting best practices for DevSecOps and secure CI/CD.
  2. Designing and implementing automated cloud security controls (e.g., auto-remediation for multi cloud services, IAM, security groups) using Python/Boto3
  3. Deploying and manage security tools to cloud infrastructure platforms such as Google Cloud or AWS, through automation using infrastructure-as-code principles.
  4. Automate security processes into CI/CD pipeline.
  5. Collecting security-related metrics and increase security visibility across the organization.

Skills

Required

  • DevOps and Security Engineering Skills
  • full stack developer
  • DevSecOps practices
  • securely architecting and owning cloud platforms (AWS, GCP)
  • Infrastructure as code techniques
  • CI/CD tools (GitLab, Jenkins, Artifactory, Ansible)
  • Secure Coding Practices
  • common vulnerabilities
  • Python
  • Linux and Unix Expertise
  • software development or scripting
  • Java
  • Node JS
  • Agile & DevSecOps methodologies

Nice to have

  • Masters degree
  • AWS certifications
  • GCP certifications
  • API and platform integration
  • tools and technologies used throughout secure SDLC (e.g. Fortify)
  • Linux Containers (Docker)
  • Kubernetes
  • deployment of containerized applications/microservices architectures
  • software development
  • Writing efficient SQL queries
  • Information Security
  • Networking
  • Security Risk Management
  • ISO 27001-2
  • NIST 800-53
  • controls standards
  • documentation and organization skills
  • multitask
  • take direction
  • prioritize
  • manage multiple activities / tasks
  • oral, written, and interpersonal skills
  • present and communicate to both superiors and peers

What the JD emphasized

  • DevSecOps
  • cloud security
  • automation
  • CI/CD pipeline
  • infrastructure as code