Microsoft IAM & Infrastructure Security Engineer - Senior

Cognizant

Colombia

Presencial

COP 12.000.000 - 18.000.000

Jornada completa

Hace 6 días
Sé de los primeros/as/es en solicitar esta vacante
Generador de candidaturas

Una candidatura hecha para este puesto de trabajo — un currículum y una carta de presentación adaptados que responden directamente a la oferta.

Supera los filtros ATS

Ventajas ofrecidas por este puesto de trabajo

Descripción de la vacante

Cognizant is seeking an experienced Application Security & DevSecOps Engineer to strengthen security across application development and cloud environments. This role focuses on integrating security throughout the software development lifecycle and enabling teams to deliver secure applications through DevSecOps practices.

The ideal candidate combines hands-on app security with cloud, CI/CD, security testing, threat modeling, and continuous risk reduction, collaborating with cross-functional teams.

Formación

  • Hands-on experience with DevSecOps and SSDLC practices.
  • Strong knowledge of OWASP Top 10 and secure coding.
  • Experience with SAST, DAST, and IAST tooling.
  • Experience with AWS Cloud and CI/CD pipelines.
  • Familiarity with threat modeling and secure design principles.
  • Collaborating with cross-functional security and development teams.

Responsabilidades

  • Design, implement, and automate security controls across apps and cloud.
  • Embed security across the Secure Software Development Lifecycle (SSDLC).
  • Integrate app security testing into CI/CD (SAST/DAST/IAST).
  • Identify and remediate vulnerabilities per industry standards.
  • Support threat modeling activities and security requirements in design.
  • Partner with security teams on WAF and app protection initiatives.
  • Support data protection and encryption requirements across apps and cloud.
  • Contribute to security improvements from assessments.
  • Collaborate to improve DevSecOps maturity and reduce risk.

Conocimientos

DevSecOps
SSDLC
OWASP Top 10
SAST
DAST
IAST
CI/CD pipelines
AWS Cloud
Threat modeling
WAF

Descripción del empleo

We are looking for an experienced Application Security & DevSecOps Engineer to strengthen security across application development and cloud environments. This role will focus on integrating security throughout the software development lifecycle, implementing and automating security controls, and enabling development teams to deliver secure applications through DevSecOps practices.

The ideal candidate combines hands-on application security experience with knowledge of cloud environments, CI/CD pipelines, security testing, threat modeling, and continuous risk reduction.

Key Responsibilities
  • Design, implement, and automate security controls across application development and cloud environments.
  • Embed security practices throughout the Secure Software Development Lifecycle (SSDLC).
  • Integrate application security testing into CI/CD pipelines, including SAST, DAST, and IAST.
  • Identify and help remediate application vulnerabilities based on industry security standards and best practices.
  • Support threat modeling activities and incorporate security requirements into application design and development.
  • Partner with Network Security teams on Web Application Firewall (WAF) and broader application protection initiatives.
  • Support data protection and encryption requirements across applications and cloud environments.
  • Contribute to security improvement initiatives resulting from Gartner, Mandiant, and other security assessments.
  • Collaborate with development, cloud, architecture, and cybersecurity teams to improve DevSecOps maturity and continuously reduce application security risk.
Must-Have Qualifications
  • Hands-on experience with DevSecOps and Secure SDLC (SSDLC) practices.
  • Strong knowledge of application security principles and OWASP Top 10.
  • Practical experience with SAST, DAST, and IAST tools and processes.
  • Hands-on experience working with AWS Cloud environments.
  • Experience integrating security controls and testing into CI/CD pipelines.
  • Understanding of application vulnerabilities, remediation practices, and secure coding principles.
  • Experience working with cross-functional development, cloud, and security teams.
Nice-to-Have Qualifications
  • Experience with Web Application Firewall (WAF) technologies.
  • Experience conducting or facilitating threat modeling.
  • Knowledge of data protection, encryption and key management practices.
  • Experience implementing remediation initiatives following cybersecurity assessments.
  • Familiarity with cloud-native security tools and automated security controls.
Suggested Skills / Keywords

Application Security | DevSecOps | Secure SDLC | SSDLC | SAST | DAST | IAST | OWASP Top 10 | AWS | CI/CD | Threat Modeling | WAF | Cloud Security | Data Protection | Encryption | Secure Coding

Consigue la evaluación confidencial y gratuita de tu currículum.

o arrastra y suelta tu archivo aquí

Similar jobs

Puestos de trabajo similares que vale la pena comparar

Application Security & DevSecOps Engineer (AWS)
Application Security & DevSecOps Engineer (AWS)

Cognizant • Colombia

Presencial
COP 12.000.000 - 18.000.000
IAM Security Engineer
IAM Security Engineer

EXL • Colombia

Presencial
COP 60.000.000 - 110.000.000
null
IAM Security Engineer
IAM Security Engineer

GFT Technologies • Colombia

Presencial
COP 111.193.000 - 185.323.000
Application Security Manager Product & AI Security
Application Security Manager Product & AI Security

Auxis • Bogotá ciudad

Presencial
COP 180.000.000 - 240.000.000
Specialist II, Application Security (TCF)
Specialist II, Application Security (TCF)

Convergys • Bogotá ciudad

Híbrido
COP 78.120.000 - 122.760.000
Senior Full Stack Engineer
Senior Full Stack Engineer

Movate, Inc. • Colombia

Híbrido
COP 140.000.000 - 240.000.000
Cyber Security Solutions Architect
Cyber Security Solutions Architect

Cognizant • Colombia

Híbrido
COP 60.000.000 - 120.000.000
Application Engineer
Application Engineer

Salvatech • Bogotá ciudad

Presencial
COP 185.117.000 - 277.675.000
Cyber Security Engineer
Cyber Security Engineer

Aditi Consulting • Colombia

Presencial
COP 220.734.000 - 294.313.000
Vulnerability Management Specialist INFRA Senior Associate
Vulnerability Management Specialist INFRA Senior Associate

Auxis • Bogotá ciudad

Presencial
COP 277.675.000 - 370.233.000