Security Engineer - DevSecOps
Company
IBM
Location
US Baltimore
Type
Full Time
Job Description
Information and Data are some of the most important organizational assets in today’s businesses. As a Security Consultant you will be a key advisor for IBM’s clients analyzing business requirements to design and implement the best security solutions for their needs. You will apply your technical skills to find the balance between enabling and securing the client’s organization with the cognitive solutions that are making IBM the fastest growing enterprise security business in the world.
Your Role and Responsibilities
The DevSecOps Security Engineer will support dynamic and static analysis (DAST and SAST) of code for multiple applications using Fortify and work across technical teams to support the remediation of findings. The DevSecOps Security Engineer will support a large team of infrastructure security and application team during migration of on-prem and cloud applications to the client Azure Government enclave. The security engineer will configure operate and maintain Security Code Scanning tools (Fortify). The engineer will provide support for security assessment and authorization/ ATO process security audits.
FedCon24
Required Technical and Professional Expertise
- Experience configuring deploying maintaining and optimizing security code scanning tools (Fortify on Demand (FOD))
- Experience running Dynamic and Static Application Security Testing (SAST)
- Experience with reviewing and analyzing code scanning results and work with developers and other teams to remediate findings
- Manage integration of FOD with the CI/CD pipeline
- Experience supporting secure DevSecOps practices
- Experience with the software build process
- Perform Cyber Supply Chain Risk Management (C-SCRM) activities to include configuring deploying and maintaining SCRM tool (Mend) and analyze reports.
- Support Security Assessment and Authorization / ATO process
- Certified in industry recognized areas such as CISSP CEH CISA or CISM or equivalent
- Ability to obtain and manitain a Federal security clearance
Preferred Technical and Professional Expertise
- Experience coordinating across security IT operations audit and development groups to achieve security outcomes
- Security certification in one or more cloud environments (Azure AWS Google…)
- Familiarity with NIST
Date Posted
10/31/2024
Views
0
Similar Jobs
Java Full Stack Developer - IBM
Views in the last 30 days - 0
As an Application Developer at IBM you will lead the company into the future by translating system requirements into customized systems in an agile en...
View DetailsApplication Developer - IBM
Views in the last 30 days - 0
As an Application Developer at IBM you will lead the company into the future by translating system requirements into customized systems in an agile en...
View DetailsDelivery Manager - IBM
Views in the last 30 days - 0
The text describes a career opportunity in IBM Consulting highlighting the importance of longterm relationships collaboration and innovation It also o...
View DetailsSolution Architect - IBM
Views in the last 30 days - 0
IBM Consulting offers a career rooted in longterm relationships and collaboration with clients Youll work with visionaries to improve the hybrid cloud...
View DetailsCybersecurity Incident Response Forensics SME - IBM
Views in the last 30 days - 0
The job description highlights the importance of building longterm relationships with clients working with visionaries and making meaningful changes T...
View DetailsCybersecurity Incident Response Forensics SME - IBM
Views in the last 30 days - 6
The job description highlights the importance of building longterm relationships with clients working with visionaries and making meaningful changes T...
View Details