Job Search and Career Advice Platform

¡Activa las notificaciones laborales por email!

Cyber Security

Ford Motor

Naucalpan de Juárez

Presencial

MXN 714,000 - 1,072,000

Jornada completa

Hace 2 días
Sé de los primeros/as/es en solicitar esta vacante

Genera un currículum adaptado en cuestión de minutos

Consigue la entrevista y gana más. Más información

Descripción de la vacante

A leading automotive company is seeking a DevSecOps Security engineer to ensure that security best practices are integrated throughout the software development lifecycle. The role includes performing security-focused code reviews, assisting teams in identifying and addressing vulnerabilities, and mentoring internal teams on security practices. Candidates should have a minimum of 5 years' experience in security fields and a relevant bachelor's degree. Strong communication skills and a solid understanding of coding and security principles are essential.

Formación

  • 5+ years of experience in DevSecOps, cloud security, and application security.
  • Strong understanding of secure coding principles and risk mitigation techniques.

Responsabilidades

  • Perform security-focused code reviews.
  • Assist teams in addressing application security vulnerabilities.
  • Support product and development teams with application security measures.
  • Train and mentor internal teams on security practices.

Conocimientos

CCTV
Customer Service
Communication skills
Computer Skills
ICD Coding
Military Experience
Law Enforcement
NIST Standards
Security
DoD Experience
RMF
Writing Skills

Educación

Bachelor's degree in a relevant field
Descripción del empleo
Description

The DevSecOps Security engineer ensures that every step of the software development lifecycle (SDLC) follows security best practices. They are also responsible for adhering to secure coding principles and aid in testing the application against security risks/parameters before release.

Responsibilities
  • Perform security-focused code reviews
  • Assist teams in reproducing triaging and addressing application security vulnerabilities.
  • Knowledge of risk mitigation techniques and fixing the code bugs.
  • Monitoring the processes during the entire lifecycle for its adherence and updating or creating new processes for improvement.
  • Support and consult with product and development teams in the area of application security.
  • Identifying and deploying cybersecurity measures by continuously performing vulnerability assessment and risk management.
  • Providing security training and outreach to internal development teams.
  • Mentoring guiding team members and customers.
  • Monitoring measuring customer experience and KPIs.
  • Able to work well with software development teams.
  • Experience identifying security issues through code review.
  • Excellent and professional communication skills (written and verbal) with an ability to articulate complex topics in a clear and concise manner.
  • Familiarity with some common security libraries and tools (e.g. static analysis tools proxying / penetration testing tools).
  • Familiarity and ability to explain common security flaws and ways to address them (e.g. OWASP Top 10).
  • Experience in integrating monitoring and improving DevSecOps tools and processes automate routine tasks and improve system reliability.
  • Basic development or scripting experience and skills.
  • A basic understanding of network and web related protocols (such as TCP/IP UDP HTTP HTTPS protocols).
  • Designing and implementing Zero Trust Security model automated enforcement and monitoring of security controls vulnerability management code based compliance and gate reviews platform based security controls and guardrails.
Qualifications
  • Bachelor (undergraduate) degree in a relevant field (Computer Science, Software Engineer, Security or others) OR an equivalent combination of education, training and experience.
  • Minimum of 5 years of professional experience with any combination of at least 2 technical disciplines including DevSecOps, cloud security, network security, application security, mobile security, secure development methodologies, software development and coding, identity management, authentication and authorization, network architecture, system administration and systems engineering.
Key Skills
  • CCTV
  • Customer Service
  • Communication skills
  • Computer Skills
  • ICD Coding
  • Military Experience
  • Law Enforcement
  • NIST Standards
  • Security
  • DoD Experience
  • RMF
  • Writing Skills

Employment Type: Full-Time
Experience: years
Vacancy: 1

Consigue la evaluación confidencial y gratuita de tu currículum.
o arrastra un archivo en formato PDF, DOC, DOCX, ODT o PAGES de hasta 5 MB.