Job Description
Greetings from CBRE D&T. We are hiring for Devsecops Engineer
Role: Devsecops Engineer
Experience : 6 to 10 Years
Notice Period: Immediate-20 days
Job description:
- Be a broker of security, being able to sell the benefits of security, while being mindful of the needs of development teams all over the world
- Understand the concepts of assessing risk, rather than just saying No. Be able to find a way to make development teams successful, while still ensuring secure practices
- Configuring, and administrating technologies for the Security Pipeline including SAST, DAST, IAST, OSA, secret scanning, etc...
- Help software development teams to understand, and remediate security findings
- Construct threat models with development teams
- Participate in development team sprint planning to raise awareness of security concerns
- Work with development teams throughout the entire SDLC to ensure code is secure by design, and all the way through production deployment.
- Help identify, and educate Security Champions within development groups
- Assist in development of internal security policies, procedures, and guidelines
- Be able to quickly come up to speed on new and emerging technologies/cloud services, and understand how to establish at least a baseline of security for them
- Have well founded opinions and be willing to express your disagreement when something doesn't pass the smell test for you.
Required Knowledge and Skills:
- 5-7 years experience as a security professional
- 3-5 yrs. of experience or equivalent skills in writing secure software with modern languages (Ruby, JavaScript, Python, Go, etc)
- Excellent oral, and written communication
- Experience or understanding of DevOps practices, and CICD pipelines (Jenkins, Concourse, etc)
- Databases such as Postgres, MySQL, and MS SQL Server
- Source control with Git, and codehosts such as Github, Gitlab, etc...
- Experience or understanding of Infrastructure as Code (Terraform, CloudFormation, etc), and configuration management tools such as Chef, Ansible, or SaltStack
- Experience with one or more clouds. At least one of which must be AWS, or Azure.
- Containerization with Docker, and related orchestration tools such as Kubernetes, Nomad, etc...
- Security focused mindset, in addition to experience with security-oriented tooling, threat modeling, etc
- Bachelor's degree (BA/BS) in a related field of work or equivalent work experience.
Interested candidates can share their resumes at aj*******y@cb*e.com
Job Classification
Industry: Real Estate, Property
Functional Area: IT Software - Application Programming, Maintenance,
Role Category: Programming & Design
Role: Programming & Design
Employement Type: Full time
Education
Under Graduation: BCA in Any Specialization, B.A in Any Specialization, B.Tech/B.E. in Any Specialization, B.Com in Any Specialization, Other Graduate, B.Sc in Any Specialization
Post Graduation: Post Graduation Not Required
Doctorate: Doctorate Not Required
Contact Details:
Company: CBRE South Asia Pvt Ltd
Address: CBRE South Asia Pvt. Ltd | Digital Technology - India Gate No : 4 , Level 1 , Unit 2A & 2B, Octave Block , Salarpuria Knowledge City Hyderabad, Telangana 500081, India
Location(s): Hyderabad
Keyskills:
Express
GIT
Docker
MySQL
Javascript
Go
Postgres
Ruby
AWS
Python