Senior DevSecOps Engineer

Job not on LinkedIn

3 days ago

Apply Now
Logo of NTD Software

NTD Software

Software Development • B2B • AI

NTD Software is a company specializing in software development and staff augmentation services, with a focus on leveraging nearshore and LATAM tech talent. The company excels in providing access to a vast network of vetted professionals, helping businesses quickly and effectively scale their tech teams. They emphasize a human-centered approach to team building and offer industry-specific expertise and AI solutions. NTD Software also prioritizes client success and cultural understanding, providing benefits like cost reduction and proximity through nearshoring. With strategic locations in Guadalajara and San Francisco, they are well-positioned to support businesses in fast-tracking digital innovation and product go-to-market efforts.

11 - 50 employees

🤝 B2B

📋 Description

• Identify, assess, and remediate application security vulnerabilities across web, API, and cloud environments. • Integrate and maintain security controls in CI/CD pipelines (e.g., SAST, DAST, SCA, container scanning, IaC security). • Collaborate with development and operation teams to embed secure coding practices and ensure “shift-left” security. • Conduct and support secure code reviews, threat modeling, and application risk assessments. • Develop automation and scripts to enforce security checks in the pipeline. • Monitor, triage, and remediate findings from application security tools. • Stay current with industry trends, frameworks, and emerging threats (OWASP, MITRE ATT&CK, NIST). • Contribute to security guidelines, standards, and training for developers.

🎯 Requirements

• Bachelor’s degree in Computer Science, Software Engineering, Cybersecurity, or equivalent experience. • Proven experience in DevSecOps, Application Security, or Secure Software Development(3+ years). • Good programming skills in programming languages such as PHP, JavaScript, Python, or Java. • Hands-on experience with CI/CD tools(GitHub Actions, GitLab CI/CD, Jenkins, CircleCI, etc.). • Practical experience with SAST, DAST, SCA, IAST, and related security tooling. • Understanding of cloud security practices. • Familiarity with container security (Docker, Kubernetes). • Strong knowledge of OWASP Top 10, secure coding principles, and common attack vectors. • Ability to communicate security requirements effectively to developers and stakeholders

Apply Now
Developed by Lior Neu-ner. I'd love to hear your feedback — Get in touch via DM or support@remoterocketship.com