Tech Stack
AWSAzureCloudCyber SecurityDockerGoogle Cloud PlatformPythonSDLC
About the role
- Run regular vulnerability assessments, penetration tests, and adversary simulations to proactively identify risks.
- Partner with engineering teams to embed secure coding practices throughout the SDLC.
- Strengthen our container security practices, including Docker image scanning and remediation.
- Investigate and respond to security incidents with detailed analysis and clear recommendations.
- Support threat modeling and risk assessments that guide our security priorities.
- Share knowledge and mentor teammates to foster a culture of security-first thinking.
Requirements
- 3–5 years of experience in security engineering, penetration testing, or a related role.
- Proficiency with tools like Burp Suite, OWASP ZAP, and manual testing techniques.
- A solid understanding of secure coding practices and modern software development.
- Hands-on experience with container platforms (e.g., Docker).
- Strong problem-solving, analytical, and communication skills.
- A degree in Computer Science, Cybersecurity, or equivalent experience.
- Experience securing CI/CD pipelines and DevOps workflows.
- Certifications like OSCP or Security+.
- Knowledge of static code analysis, network architecture, and cloud platforms (AWS, Azure, GCP).
- Familiarity with scripting (Python, Bash, PowerShell).
- Prior experience performing threat modeling and risk assessments.
- Multilingual communication skills.
- Must be currently and permanently based in the US.
- No visa sponsorship available.