Job Summary
The role focuses on developing and integrating security appliances as part of a DevSecOps strategy. This position is critical for strengthening the organization's cybersecurity infrastructure by automating the deployment, configuration, and monitoring processes across various environments. Collaborate with other units to ensure the seamless integration of security tools into Cl/CD pipelines, proactively identifying vulnerabilities and enhancing system resilience. Key responsibilities include managing infrastructure-as-code (laC), supporting security incident response, and ensuring compliance with best practices and regulatory standards. This role bridges security and operational efficiency to support continuous and secure service delivery.
Job Responsibilities
- Design, develop, and integrate security tools and appliances (e.g., IDS/IPS, SIEM, endpoint protection) into operational environments to support threat detection, response, and mitigation across infrastructure layers.
- Embed security controls and validation mechanisms into Cl/CD pipelines, ensuring secure code delivery, vulnerability scanning, and compliance checks throughout the software development lifecycle.
- Utilize Infrastructure-as-Code (laC) tools (e.g., Ansible, Terraform) to automate system provisioning, hardening, and security baseline enforcement across on-premises and cloud systems.
- Establish system monitoring, log aggregation, and alerting mechanisms; collaborate with the SOC and response teams to support real-time incident detection, triage, and forensic investigations.
- Ensure all systems and tools align with security policies, standards, and regulatory requirements. Maintain detailed technical documentation for configurations, workflows, and operational procedures.
Qualification & Work Experience
- Bachelor's degree in computer science, Information Security, or a related field
- At least 3 years of experience in system enterprise settings. administration, DevSecOps, or security infrastructure
- Proficiency in scripting and automation workflows. tools (e.g., Bash, Python, Ansible, Terraform)
- Hands-on experience managing and securing Linux/Windows environments in enterprise settings.
- Exposure to Cl/CD pipelines, automation, and integrating security into software delivery workflows.
- Familiarity with tools such as firewalls, IDS/IPS, SIEM, endpoint protection, and vulnerability scanners.
- Practical use of Ansible, Terraform, or similar tools for infrastructure deployment and security policy enforcement.
- Supporting incident detection, log analysis, or meeting regulatory and audit requirements is a key part of the role.
Technical Competencies
Strong proficiency in system administration, scripting (Bash, Python), and automation tools (e.g., Ansible, Terraform). Skilled in integrating and managing security appliances, Cl/CD pipelines, and log management. Knowledgeable in network protocols, incident response, and vulnerability management. Familiar with cloud platforms, DevSecOps practices, and infrastructure hardening for secure system operations.
Behavioral Competencies
- Able to assess complex systems and identify potential security gaps or integration challenges logically and efficiently.
- Demonstrates initiative and resourcefulness in resolving technical issues and implementing preventive solutions under pressure.
- Works effectively across departments, teams, and with vendors to achieve shared goals in system security and operations.
- Quickly adjusts to new technologies, tools, and evolving security threats in a dynamic operational environment.
- Maintains accuracy and thoroughness when configuring systems, reviewing logs, or documenting technical processes and incidents.