What are the responsibilities and job description for the DevSecOps Cloud Vulnerability Engineer position at Artmac Soft LLC?
Job Description
Job Description
Who we are
Artmac Soft is a technology consulting and service-oriented IT company dedicated to providing innovative technology solutions and services to Customers.
Job Description :
Job Title : DevSecOps Cloud Vulnerability Engineer
Job Type : C2C
Experience : 7-12 Years
Location : New Jersey City, New Jersey / Dallas, Maine
Responsibilities :
5 years of experience in vulnerability management, cloud security, and DevSecOps practices.
Hands-on experience with Microsoft Defender for Cloud Security or similar tools.
Strong knowledge of cloud platforms (Azure, AWS, GCP) and cloud security frameworks.
Experience in security configuration management and conducting vulnerability assessments in cloud environments.
Proficiency in DevSecOps methodologies and tools for automation in vulnerability management and security.
Familiarity with compliance standards such as ISO 27001, NIST, CIS, PCI-DSS, etc.
Strong analytical and problem-solving skills with an understanding of security risks in cloud environments.
Excellent communication and stakeholder management skills.
Certifications such as CISSP, CISM, Azure Security Engineer, AWS Security Specialty, or equivalent.
Experience in container security (Docker, Kubernetes) and CI / CD pipeline security integration.
Familiarity with threat modeling and secure coding practices.
Lead planning activities for vulnerability management, providing insights into emerging security trends, threats, and challenges.
Collaborate with DevOps, cloud engineering, and security teams to ensure the secure configuration of cloud-based applications and services.
Ensure compliance with security policies, industry standards, and regulatory requirements.
Provide guidance and oversight to a team of security professionals on vulnerability management processes, security best practices, and configuration management.
Create detailed security reports and dashboards for stakeholders to track and improve security posture.
Participate in incident response activities related to identified vulnerabilities and ensure timely remediation.
Qualification :
Bachelor's degree or equivalent combination of education and experience.