Secrets Detection Expert | Cloud

Michael Page International México Reclutamiento Especializado S.A. de C.V
México
A distancia
MXN 30,000 - 70,000
Descripción del empleo
  • You will be hired by Page Consulting
  • You will be assigned to one of our clients

Sobre nuestro cliente

A 65-year-old global biopharmaceutical company based in Mexico that challenges the limits of science to improve patients' lives. We seek to be recognized as leaders in the development of innovative therapies that will make a significant difference in the treatment of diseases affecting our society in the future.

Descripción

  1. Code Scanning and Auditing: Analyze code repositories (GitHub, GitLab, Bitbucket, etc.) for exposed secrets.
  2. CI/CD Integration: Automate secret scanning in pipelines (GitHub Actions, GitLab CI, Jenkins, etc.).
  3. False Positive Management: Adjust rules, patterns, and whitelists to reduce noise. Evaluate and classify findings (real secrets vs. false positives). Support with model or pattern training if necessary.
  4. Remediation of Exposed Secrets: Automatically revoke and rotate compromised secrets.
  5. Security Practice Improvements: Promote the use of secure vaults (HashiCorp Vault, AWS Secrets Manager, etc.). Educate development teams on best practices (e.g., never uploading .env files, using environment variables, etc.). Create internal secret management policies.
  6. Continuous Monitoring: Implement secret monitoring systems in public repositories (e.g., GitGuardian or shhgit).
  7. Reporting and Compliance: Generate exposure, metrics, and coverage reports.

Perfil buscado

Knowledge of secret detection tools, secret management, and AWS security tool management.

Qué Ofrecemos

100% nominal salary, food vouchers, family medical expenses, extra bonus as required by law, 100% remote work.

Temporal position (6 months) with extension opportunity.

Obtenga la revisión gratuita y confidencial de su currículum.
Selecciona un archivo o arrástralo y suéltalo
Avatar
Asesoramiento online gratuito
¡Mejora tus posibilidades de entrevistarte para ese puesto!
Adelántate y explora vacantes nuevas de Secrets Detection Expert | Cloud en