Sr. Security Engineer - Genesis Corp./New Journey AI LLC
Atlanta, GA 30354
About the Job
Genesis10 is currently seeking a Sr. Security Engineer with our client in the transportation industry in their Atlanta, GA location. This is a 12 month + contract position.
Description:
Responsibilities:
Requirements:
Desired Skills:
If you have the described qualifications and are interested in this exciting opportunity, please apply!
About Genesis10:
Ranked a Top Staffing Firm in the U.S. by Staffing Industry Analysts for six consecutive years, Genesis10 puts thousands of consultants and employees to work across the United States every year in contract, contract-for-hire, and permanent placement roles. With more than 300 active clients, Genesis10 provides access to many of the Fortune 100 firms and a variety of mid-market organizations across the full spectrum of industry verticals.
For contract roles, Genesis10 offers the benefits listed below. If this is a perm-placement opportunity, our recruiter can talk you through the unique benefits offered for that particular client. Benefits of Working with Genesis10:
For multiple years running, Genesis10 has been recognized as a Top Staffing Firm in the U.S., as a Best Company for Work-Life Balance, as a Best Company for Career Growth, for Diversity, and for Leadership, amongst others. To learn more and to view all our available career opportunities, please visit us at our website.
Genesis10 is an Equal Opportunity Employer. Candidates will receive consideration without regard to their race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.
Description:
- Seeking a Sr. Security Engineer
- Our client is on a journey to becoming the best IT organization in the airline industry, a journey of transformation. They are changing the way we do business from top to bottom as we strive to create meaningful and innovative solutions and are looking for team members to help us realize our vision
Responsibilities:
- Capable of leading projects to implement tools in CICD pipelines to aid in conducting Static Application Security Test (SAST), Dynamic Application Security Test (DAST), and Source Code Analysis (SCA) using VeraCode
- Work within the DevSecOps model to secure Containers, withing ROSA, Tekton and OpenShift pipelines
- Design, develop, plan, implement, and maintain Cloud DevSecOps processes across multiple technical organizations, instantiating security testing for internally developed systems, applications, and infrastructure against business requirements
- Guide development teams in integrating new services and applications into the CI/CD pipeline, troubleshoot installations and build automated deployments of products into a high-security architecture
- Comfortable with facilitating training on enterprise tools and best practices
- Collaborate with and across Agile teams to design, develop, test, implement, and support technical solutions in full-stack development tools and technologies
- Apply software development skills (e.g., Java, C#.NET, JavaScript) to recommend and apply secure coding practices
- Utilize programming languages like JavaScript, Java, HTML/CSS, TypeScript, SQL, Python, and Go, Open-Source RDBMS and NoSQL databases, Container Orchestration services including Docker and Kubernetes, and a variety of AWS tools and services
- Develops and presents finding and remediation reports to audiences including team members from all department areas and levels of the company
- Consult with development teams to perform security reviews of software designs and assist developers to ensure quality and robustness of our internal products
- Conduct security assessments against web applications and APIs across a variety of technology stacks
- Performs technical design reviews and code reviews
- Ensure adequate security requirements and privacy by design are built into all architecture/infrastructure/projects
- Drive improvements in the security testing practice to include execution methodology and metrics
- Drive awareness and knowledge of security in the developer community
- Continually improve proficiency in application and API exploitation, tools, techniques, and countermeasures
- Troubleshoot and resolve problems with existing cloud controls
Requirements:
- Possesses a high school diploma, GED, or high school equivalency
- B.S., preferably in a technical or scientific field
- 7 years of software and development experience with a minimum and 5+ years of hands-on experience working with DevSecOps technologies
- Minimum 5+ years hands-on experience working with Cloud and/or DevSecOps related technologies
- Experience in API testing tools (Postman, BurpSuite, or any comparable tools)
- Excellent understanding of DevSecOps techniques and processes, guide integration of various tools in DevSecOps processes (GitLab/GitHub, SonarQube, Jenkins, Selenium, Ansible, Docker, Kubernetes, and containerization)
- Well versed with the AWS well architected framework or TOGAF and able to apply those principles while designing a solution
- Experience building and supporting applications in the Cloud (AWS, Azure, GCP)
- Experience engineering software within an Amazon Web Services (AWS) cloud infrastructure
- Knowledge of the OWASP Top 10
- Experience with vulnerability risk and impact assessment
- Understand how to integrate security capabilities in cloud and application lifecycle management platforms especially in a DevOps model
- Excellent written and verbal communication skills
- Strong sense of urgency and ownership
- Consistently prioritizes safety and security of self, others, and personal data
- Embraces diverse people, thinking, and styles
- Experience integrating Open-source controls
- Gitlab
- Implement tools in CICD pipelines
- AWS Cloud
- Microsoft Azure
- Experience working with tools such as Sonatype nexus firewall and lifecycle to track and block risk 3rd- party components
- Extensive knowledge of CI tools such as Jenkins, Tekton, CircleCI, GitlabCI, AWS Code Pipeline, etc.
- Test driven mindset with experience in automation with development tools
- Knowledge of secure coding standards
- Experience with Agile methodologies
- Experience with AWS and Kubernetes
- Experience in working with 12-factor methodology and understanding its benefits, and able to demonstrate appropriate patterns to other team members
- Expertise in software development: clean and reliable code, API design, refactoring, test driven development, design patterns, abstractions, writing documentation, and the complete software development life cycle
Desired Skills:
- Extensive experience in application security and ethical hacking
- Extensive experience exploiting web, mobile and application security vulnerabilities
- Extensive experience in software development
- Experience integrating secure coding techniques with product teams
- Professional certifications such AWS practitioner, cloud security certification for AWS, and CISSP
If you have the described qualifications and are interested in this exciting opportunity, please apply!
About Genesis10:
Ranked a Top Staffing Firm in the U.S. by Staffing Industry Analysts for six consecutive years, Genesis10 puts thousands of consultants and employees to work across the United States every year in contract, contract-for-hire, and permanent placement roles. With more than 300 active clients, Genesis10 provides access to many of the Fortune 100 firms and a variety of mid-market organizations across the full spectrum of industry verticals.
For contract roles, Genesis10 offers the benefits listed below. If this is a perm-placement opportunity, our recruiter can talk you through the unique benefits offered for that particular client. Benefits of Working with Genesis10:
- Access to hundreds of clients, most who have been working with Genesis10 for 5-20+ years.
- The opportunity to have a career-home in Genesis10; many of our consultants have been working exclusively with Genesis10 for years.
- Access to an experienced, caring recruiting team (more than 7 years of experience, on average.)
- Behavioral Health Platform
- Medical, Dental, Vision
- Health Savings Account
- Voluntary Hospital Indemnity (Critical Illness & Accident)
- Voluntary Term Life Insurance
- 401K
- Sick Pay (for applicable states/municipalities)
- Commuter Benefits (Dallas, NYC, SF)
- Remote opportunities available
For multiple years running, Genesis10 has been recognized as a Top Staffing Firm in the U.S., as a Best Company for Work-Life Balance, as a Best Company for Career Growth, for Diversity, and for Leadership, amongst others. To learn more and to view all our available career opportunities, please visit us at our website.
Genesis10 is an Equal Opportunity Employer. Candidates will receive consideration without regard to their race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.
Source : Genesis Corp./New Journey AI LLC