What are the responsibilities and job description for the Cyber Security Engineer #23474 position at Blue Chip Talent?
Please do not apply if you are C2C, and we are unable to support an H1B Visa. Thank you
Blue Chip Talent is looking for a Cyber Security Engineer in Irvine, CA. This hybrid role requires working on-site at a designated location on Mondays, Wednesdays, and Fridays, with remote work on Tuesdays and Thursdays. The standard schedule is 9 AM - 6 PM, with flexibility depending on business needs.
Key Requirements:
- Programming Experience: Candidates must have automation/scripting experience, preferably in Python, JavaScript, or Java. A minimum of 3-5 years of coding experience is required.
- Automation Focus: The team relies heavily on automation. While software engineer-level coding is not expected, scripting and automation skills are mandatory.
- Security Expertise: The role involves reviewing modern applications, identifying potential security vulnerabilities, and providing development teams with clear and streamlined remediation strategies.
- Tooling Support: This position supports the development and operations of in-house and commercial security tooling, including CSPM, SAST, and API security solutions.
Responsibilities:
- Review software components within the Software Development Life Cycle (SDLC) to identify security vulnerabilities.
- Analyze source code for security risks and provide remediation guidance.
- Effectively communicate security vulnerabilities and solutions to software development teams.
- Provide hands-on remediation support where possible.
- Triage cloud infrastructure vulnerabilities identified by the CSPM solution.
- Contribute to in-house security automation and tooling, including managing cloud resources and CI/CD pipelines.
- Demonstrate strong programming skills in object-oriented languages such as Python, Go, or Node.js, along with SQL expertise.
This position requires a proactive approach to cybersecurity, strong technical acumen, and the ability to collaborate effectively with development teams to enhance security measures.