Auf einen Blick
- Aufgaben: Join us as a DevSecOps Engineer and enhance security in the development lifecycle.
- Arbeitgeber: We are a dynamic team focused on integrating security into development processes.
- Mitarbeitervorteile: Enjoy a collaborative work environment with opportunities for growth and innovation.
- Warum dieser Job: Be at the forefront of security technology while working closely with development teams.
- Gewünschte Qualifikationen: Experience with security tools, CI/CD, and strong scripting skills are essential.
- Andere Informationen: If you're passionate about security and automation, we want to hear from you!
Das voraussichtliche Gehalt liegt zwischen 48000 - 84000 € pro Jahr.
Introduction
We are seeking a dedicated and skilled DevSecOps Engineer (a) in Stäfa to join the team and play a pivotal role in enhancing the security of the development lifecycle. The ideal candidate will be responsible for automating and integrating security processes, with a strong emphasis on vulnerability management. This role involves implementing cutting-edge security tools, enabling continuous security testing, and working closely with development teams to ensure that security feedback is seamlessly integrated into the development process.
Responsibilities
- Implementing into projects security tools such as SAST, secret scanning, and security testing report generation.
- Developing and maintaining CI/CD pipelines using tools like TeamCity, Jenkins, and Azure DevOps.
- Generating and analyzing Software Bill of Materials (SBOM) and integrating with tools like Dependency Track and Defect Dojo.
- Integrating security scanners like Semgrep and gitleaks.
- Collaborating with development teams to provide vulnerability feedback and support them with analysis and resolution.
- Utilizing containerization and orchestration tools like Docker and Kubernetes.
- Writing scripts and automation using Bash, Python, and PowerShell.
Qualifications
- Experience with security tools such as SAST, secret scanning, and security testing.
- Proficiency in CI/CD tools like TeamCity, Jenkins, and Azure DevOps.
- Knowledge of SBOM management and tools like Dependency Track and Defect Dojo.
- Familiarity with security testing tools like Semgrep and gitleaks.
- Experience with containerization and orchestration tools like Docker and Kubernetes.
- Strong scripting skills in Python, PowerShell and Bash.
- Understanding of DevOps practices and tools.
- Familiarity with Android and iOS build environments.
- Knowledge of networking and problem-solving skills.
Have we caught your interest? Then apply now and become part of the team we look forward to getting to know you!
DevSecOps Engineer (a) Arbeitgeber: Favoris AG
Kontaktperson:
Favoris AG HR Team
StudySmarter Bewerbungstipps 🤫
So bekommst du den Job: DevSecOps Engineer (a)
✨Tip Number 1
Make sure to showcase your experience with security tools like SAST and secret scanning during the interview. Be prepared to discuss specific projects where you implemented these tools and the impact they had on the development lifecycle.
✨Tip Number 2
Familiarize yourself with the CI/CD tools mentioned in the job description, such as TeamCity, Jenkins, and Azure DevOps. If possible, practice setting up a simple pipeline to demonstrate your hands-on experience.
✨Tip Number 3
Highlight any experience you have with containerization and orchestration tools like Docker and Kubernetes. Consider preparing a brief explanation of how you've used these technologies to enhance security in past projects.
✨Tip Number 4
Since collaboration with development teams is key, think of examples where you provided vulnerability feedback and supported teams in resolving issues. Being able to communicate effectively about security will set you apart.
Diese Fähigkeiten machen dich zur top Bewerber*in für die Stelle: DevSecOps Engineer (a)
Tipps für deine Bewerbung 🫡
Understand the Role: Make sure to thoroughly read the job description for the DevSecOps Engineer position. Understand the key responsibilities and qualifications required, as this will help you tailor your application.
Highlight Relevant Experience: In your CV and cover letter, emphasize your experience with security tools, CI/CD pipelines, and scripting languages. Provide specific examples of how you've implemented security processes in previous roles.
Showcase Collaboration Skills: Since the role involves working closely with development teams, mention any past experiences where you collaborated effectively with others. Highlight your ability to provide constructive feedback and support in vulnerability management.
Tailor Your Application: Customize your cover letter to reflect your enthusiasm for the position and the company. Mention why you are interested in enhancing security within the development lifecycle and how your skills align with their needs.
Wie du dich auf ein Vorstellungsgespräch bei Favoris AG vorbereitest
✨Showcase Your Technical Skills
Be prepared to discuss your experience with security tools like SAST and secret scanning. Highlight specific projects where you implemented these tools and the impact they had on the development lifecycle.
✨Demonstrate CI/CD Knowledge
Since the role involves maintaining CI/CD pipelines, be ready to explain your experience with tools like TeamCity, Jenkins, and Azure DevOps. Share examples of how you've optimized these processes in previous roles.
✨Discuss Vulnerability Management
Prepare to talk about how you've collaborated with development teams to provide vulnerability feedback. Discuss any specific instances where your input led to significant improvements in security.
✨Familiarize Yourself with Containerization
As containerization is a key part of this role, make sure you can discuss your experience with Docker and Kubernetes. Be ready to explain how you've used these tools to enhance security in your projects.