JOBSEARCHER
<Back to Search

Information Security Engineer (DevSecOps)

It's an exciting time to be a member of the Fisher Investments Technology Department. We're investing in the future of our firm's technology and are building our team to achieve global growth. We are looking for a Information Security Engineer (DevSecOps) to support our Corporate Systems team. If you are looking for an opportunity to make a difference as we develop scalable and strategic solutions to support our global growth, we want to hear from you!The Opportunity:Fisher Investments is growing internationally, and we are looking for an Information Security Engineer (DevSecOps) to join a team that drives future global growth and scale through strategic solutions and continuous innovation. You will help support our firm's diverse departments by building relationships with stakeholders, while consulting and managing a full range of CICD pipeline cyber security controls with technology teams at an Enterprise level. You will contribute to projects that require Information Security DevSecOps experience in application development, release management, and infrastructure as code environmentsYou will report to the Applications Development Team Lead.The Day-to-Day:Develop and manage the configuration, maintenance, and operations of DevSecOps related security services including GitHub Advanced Security and TerraformFrequent interaction with all Information Security Teams, Technology, Project, and Governance teams to assist and implement Secure CICD pipeline practices, controls, and vulnerability responseUse analytical, and technical knowledge, to assess and propose cyber security risk remedies related to DevSecOpsParticipate actively in development of secure coding standards, principles, architecture and standards, leveraging experience in NIST, CIS, ISO, and other international standardsIdentify areas for improvement proactively and support the DevSecOps effort in standardizing processesContribute to the success of the Information Security DevSecOps program within the firm by supporting the various teams and customers in the implementation of good security practicesAnalyze security controls and make recommendations for changes or improvementsDevelop and manage initiative level artifacts, including architectural diagrams, implementation planningYour Qualifications:5+ years of experience in Technology/Security space2+ years IT/Information Security Infrastructure & IT Operations experience in two or more of the following areas:DevSecOps CICD Pipeline Development & ManagementVulnerability Management & Incident ResponseAzure/AWS Cloud EnvironmentsIdentity & Access ManagementNetwork Security ManagementSaaS/PaaS Control Development & ManagementPublic Key Infrastructure Management1-2 years DevSecOps related disciplines, including:Best Practices for Secure Coding in C#, Java, PythonDetection, analysis, and response of insecure code methods and vulnerable dependenciesInfrastructure as code for Azure or AWSWhy Fisher Investments:We work for a bigger purpose: bettering the investment universe. We take great pride in our inclusive culture, our learning and development framework customized for every employee, and our Great Place to Work Certification. It's the people that make the Fisher purpose possible, and we invest in them by offering exceptional benefits like:100% paid medical, dental and vision premiums for you and your qualifying dependentsA 50% 401(k) match, up to the IRS maximum20 days of PTO, plus 10 paid holidaysFamily Support programs including 8 week Paid Primary Caregiver Leave, $10,000 fertility, family forming, and hormonal health assistance, and back-up child, adult, and elder careThis is an in-office role. Based on your role, tenure, and performance eligibility you may have the opportunity to participate in our hybrid work from home program. This program is subject to change.FISHER INVESTMENTS IS AN EQUAL OPPORTUNITY EMPLOYER

Showing 50 of 57,636 matching similar jobs