Demo

Dev/ SecOps Engineer

SANS
Arlington, VA Full Time
POSTED ON 1/24/2025
AVAILABLE BEFORE 3/23/2025

Job Details

DICTATION / TECH MATCH
Manager is the tech lead for the trading system part of the bank. Their team is integrating in CICD pipelines that build applications and deploy They are building security into that process. They use security testing tools into this pipeline. Certifications (certifying the security not the person) and fixing issues to the development teams They have automated the full process
They want a Security Dev Ops Engineer. Dev Ops processes, Jenkins. And Plugins with Jenkins and Groovy for writing scripts. To help with automation. CICD pipelines and technologies for deployment and automation of processes for that they need Python . <--- MUST HAVE PYTHON very good in python (7-8 years experience in python) Python is used for Automation. The job is about Automation.
Need soft skills proactive / work with other teams/ meet with issues and reach out to other teams to get them fixed. Proactive mind set Have experience working previously at Large organizations.
TITLE Dev/ SecOps engineer / Security DevOps Engineer with Jenkins, Groovy and PYTHON. MUST HAVE PYTHON and SAST DAST SCA
This is new work and support (anyone who works with Jenkins has Groovy)
INTERVIEWS 30 minutes of screening via Video Final round 90 minutes with a panel ONSITE second round. With a coding round included in the onsite in python.
Hybrid 3 / days a week
Location: Arlington, VA
What You'll Do:
- Collaborate with a team of engineers to implement Bank s specific security policies in the CI/CD security tools including but not limited to SAST, DAST and SCA applications . <--- NEED THESE TOOLS, strong plus - Work with Development , DevOps and Security teams to identify and develop automated security and compliance capabilities in support of DevOps processes .
-
Define the security rules that needs to be adhered to at a code level in web and mobile applications written in Java, React, Objective C, SWIFT, Kotlin etc. <-- know some of this is good.
- With your development background and security knowledge, provide security guidance to developers in the form secure coding standards and guidelines.
- Support security standards, create templates and patterns to increase the efficiency and adoption of security program. <--- If they are familiar with creating policies it s good.

These skills will help you succeed in this role: RECRUITERS MUST RUN CHECKLIST / KEYWORDS UNDERLINED
- Bachelor's degree with minimum 8 years of work experience in the IT field
- 3 years software development experience using Java, JavaScript nice to have .
- 3 years of experience in the following:
- OWASP Secure Coding Practices <--- must have basic knowledge of this
- Common software and web application security vulnerabilities - Application security scanning tools - Continuous Integration/Continuous Deployment (CI/CD) processes and concepts using relevant technologies and tools (e.g., Jenkins)
- Experience in Python scripting

Even Better If You Have RECRUITERS MUST RUN CHECKLIST / KEYWORDS UNDERLINED
- A degree in Cybersecurity or CISSP/CSSLP certification or keen desire to move to security field - Business acumen to support the implementation of SAST or DAST or IAST across the enterprise
- Ability to perform code reviews with minimal assistance

- A self-starter, with a strong desire for learning new technologies and applying them to solve problems
- Experience with two or more of the application build environments like Jenkins, Gradle, Maven. <--- MUST HAVE two of these
- Familiarity with public cloud services a plus
- Experience with two or more of the Secure SDLC tools like Burp Suite, Fortify, Checkmarx, AppSec SE, Veracode, WhiteSource, Sonatype <--- MUST HAVE two of these
- Experience with Threat Analysis.
- Experience with DevSecOps, Secure SDLC.
- DevOps container/orchestration tools (Kubernetes, Docker, Puppet, etc) is a plus - Experience with evaluation, integration and onboard of security tools such as RASP, WAF, vulnerability scanner results, container analyzers, open source scanning etc is a plus

-----------------------------------------------------------------

Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.

If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

What is the career path for a Dev/ SecOps Engineer?

Sign up to receive alerts about other jobs on the Dev/ SecOps Engineer career path by checking the boxes next to the positions that interest you.
Income Estimation: 
$137,568 - $176,908
Income Estimation: 
$158,960 - $205,707
Income Estimation: 
$154,509 - $200,187
Income Estimation: 
$188,252 - $252,911
Income Estimation: 
$71,493 - $96,419
Income Estimation: 
$92,369 - $122,605
Income Estimation: 
$92,369 - $122,605
Income Estimation: 
$117,024 - $149,811
Income Estimation: 
$117,024 - $149,811
Income Estimation: 
$137,568 - $176,908
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at SANS

SANS
Hired Organization Address Warren, NJ Full Time
Job Details Title: Guidewire PC QA Location: Warren, NJ (HYBRID 3 days onsite) Experience in Guidewire Policy Center Tes...
SANS
Hired Organization Address New York, NY Full Time
Job Details Embark on a transformative journey as a KDB Developer. At Barclays, our vision is clear to redefine the futu...
SANS
Hired Organization Address Beaverton, OR Full Time
Job Details FlexPLM Job description: Working in latest PTC FlexPLM application. Strong understanding of product lifecycl...
SANS
Hired Organization Address Warren, NJ Full Time
Job Details ROLE TITLE: Guidewire Policy Center Developer LOCATION: Warren, NJ (Hybrid 3 days onsite) Please share resum...

Not the job you're looking for? Here are some other Dev/ SecOps Engineer jobs in the Arlington, VA area that may be a better fit.

Dev/SecOps

VRK IT Vision Inc., Arlington, VA

AI Assistant is available now!

Feel free to start your new journey!