JOBSEARCHER

Security Engineer

Key ResponsibilitiesPerform security operations across application security, infrastructure security, and CI/CD pipeline security.Support developer onboarding for security tools and processes by providing guidance and training.Ensure complete and consistent security scan coverage for assigned applications.Identify opportunities to automate recurring security tasks and reduce manual effort.Support compliance and risk management by tracking policy adherence and documenting exceptions.Improve operational efficiency through automation of security scans, vulnerability triage, and workflow enhancements.Manage vulnerability tracking through accurate tagging, ownership assignment, and remediation workflows.Increase developer security awareness through continuous support, coaching, and enablement.Participate in ServiceNow ticket handling, daily user story updates, and on-call rotations.Automate security workflows within a DevSecOps environment.Required Qualifications3+ years of experience in Security Engineering, DevSecOps, or a related field.Bachelor's degree in Computer Science, Cybersecurity, Information Technology, or equivalent practical experience.Hands-on experience with application security and CI/CD security tools.Strong understanding of secure coding principles and modern software development practices.Experience with:SAST (Static Application Security Testing)SCA (Software Composition Analysis)DAST (Dynamic Application Security Testing)MAST (Mobile Application Security Testing)Container Security ScanningInfrastructure as Code (IaC) Security ScanningExperience with ServiceNow ticket management and Agile development processes.Experience automating security workflows in DevSecOps environments.Strong verbal and written communication skills.Ability to explain security concepts to both technical and non-technical stakeholders.Experience coaching or training developers on security best practices.Preferred QualificationsExperience with mobile application security.Knowledge of compliance and regulatory frameworks including:HIPAAPCI-DSSNISTGDPRCCPAExperience with cloud platforms:AWSAzureGCPExperience with container technologies:DockerKubernetesSecurity certifications are a plus:CISSPCISMCEHTechnical SkillsDevSecOpsApplication SecurityInfrastructure SecurityCI/CD Pipeline SecuritySASTSCADASTMASTIaC SecurityContainer SecurityDockerKubernetesAWSAzureGCPSecure CodingSecurity AutomationVulnerability ManagementServiceNowAgile/ScrumRisk ManagementComplianceHIPAAPCINISTGDPRCCPASoft SkillsExcellent communication skillsProblem-solving mindsetDetail-orientedTeam collaborationDeveloper enablementProcess improvementStrong documentation skillsJob SummaryThis is an excellent opportunity for a Security Engineer with strong DevSecOps experience who enjoys securing modern development environments, automating security processes, and working closely with development teams to build security into the software development lifecycle.