Goldman Sachs' culture is focused on helping our engineering teams to build and deploy secure products. We achieve this by building and operating state-of-the-art security alongside our product and infrastructure teams.
The Secure Supply Chain team, within SDLC, is a function focused on ensuring that the code Goldman Sachs deploys is as secure as possible. We blend third-party tooling with in-house systems to improve the security of many types of code including backend, frontend, infrastructure, and mobile.
HOW YOU WILL FULFILL YOUR POTENTIAL
Build and design systems that secure the entirety of Goldman Sachs' software supply chain.
Build and integrate systems detecting third-party vulnerabilities in libraries, OS and container components, etc.
Integrate with our GitLab, CI/CD, and build attestation systems.
Partner effectively with Goldman's infrastructure teams and other security teams.
Collaborate with developers across Goldman Sachs to ensure our systems are embedded in their workflows.
Learn about security and apply that knowledge towards real-world problems.
SKILLS AND EXPERIENCE WE ARE LOOKING FOR
1+ (for Analyst)/ 3+ years of industry experience as a programmer, developer, SWE, or similar job roles.
General knowledge of multiple languages, and in-depth knowledge of at least one of: Golang, Java, Python.
General knowledge of Linux, Docker, Kubernetes, Terraform, AWS.