
Cyber Security
Ford Motor Company
full-time
Posted on:
Location Type: Hybrid
Location: Naucalpan de Juárez • Mexico
Visit company websiteExplore more
About the role
- Perform security-focused code reviews.
- Assist teams in reproducing, triaging, and addressing application security vulnerabilities.
- Knowledge of Risk mitigation techniques and fixing the code bugs.
- Monitoring the processes during the entire lifecycle for its adherence and updating or creating new processes for improvement.
- Support and consult with product and development teams in the area of application security.
- Identifying and deploying cybersecurity measures by continuously performing vulnerability assessment and risk management.
- Providing security training and outreach to internal development teams.
- Mentoring, guiding team members and customers.
- Monitoring, measuring customer experience and KPIs.
- Use security tools for identifying and mitigating vulnerabilities.
- Able to work well with software development teams.
- Experience identifying security issues through code review.
- Familiarity with some common security libraries and tools (e.g. static analysis tools).
- Familiarity and ability to explain common security flaws and ways to address them (e.g. OWASP Top 10).
- Experience in integrating, monitoring and improving DevSecOps tools and processes, automate routine tasks and improve system reliability.
- Development or scripting experience and skills (preferable Python knowledge).
- Designing and implementing Zero Trust Security model, automated enforcement, and monitoring of security controls, vulnerability management, code-based compliance and gate reviews, platform-based security controls and guardrails.
Requirements
- Bachelor (undergraduate) degree in a relevant field (Computer Science, Software Engineer, Security, or others) OR an equivalent combination of education, training, and experience.
- Minimum of 5 years of professional experience with any combination of at least 2 technical disciplines, including the following: DevSecOps, cloud security, network security, application security, mobile security, secure development methodologies, software development and coding, identity management, authentication and authorization, network architecture, system administration, and systems engineering.
- Desirable Certified DevSecOps Professional (CDP), Certified Kubernetes Administrator (CKA) or Certified Kubernetes Security (CKS) and HashiCorp Certified: Terraform Associate.
Benefits
- Healthcare insurance
- Retirement plans
- Flexible work arrangements
- Professional development opportunities
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills & Tools
security-focused code reviewsrisk mitigation techniquesvulnerability assessmentDevSecOpsPythonZero Trust Security modelautomated enforcementsecurity controlscode-based compliancestatic analysis tools
Soft Skills
mentoringguiding team memberscustomer experience measurementcommunicationcollaboration
Certifications
Certified DevSecOps Professional (CDP)Certified Kubernetes Administrator (CKA)Certified Kubernetes Security (CKS)HashiCorp Certified: Terraform Associate