| Job Location | Amman, Jordan |
| Education | Bachelor's degree / higher diploma |
| Salary | Not Mentioned |
| Industry | Telecommunications |
| Functional Area | Not Mentioned |
Key Accountabilities :- Design and implement secure automation solutions for development, testing, and production environments of digital assets and harmonize development, security, and operations practices throughout the applications lifecycle - Ensuring the effective and seamless integration of security policies and practices to DevOps workflows and business requirements to reduce overall security risks. - Propose and implement DevSecOps architecture, open standard, framework, and best security practice. - Secure the digital assets? environments and infrastructure by applying DevSecOps techniques, solutions, configuration and controls that produce secure platforms including container-orchestration systems, infrastructure management processes, macroservices and microservices security, automated security testing and continuous integration and continuous deployment. - Build and maintain DevSecOps pipelines to adopt shift-left paradigm for security testing (SAST, DAST, IAST, RASP etc.) - Develop and promote best practices for DevSecOps and secure CI/CD. - Stay up-to-date on new security tools & techniques, and act as driver of innovation and process maturity. - Conduct research and evaluate new DevSecOps platforms, components, tools, and processes for new projects and ongoing initiatives. - Collect security-related metrics and increase security visibility across the digital units. - Deploy and manage security tools to OJO digital assets platforms, through automation using infrastructure-as-code principles. - Work with teams to bring continuous improvement to DevSecOps processes and tools.- Collaborate with business teams, developers, and testers to define and implement holistic applications? security assurance & compliance processes. - Ensure the DevOps pipeline supports the implementation of secure development/operation practices - Provide executive summary reports of assurance metrics to security governance team with a comprehensive inventory of the attack surface, the state of testing and defensive coverage of surfaces, and real-time accounting of open risks within each application.- Recommends and assists with incorporating any security tests into proactive security monitoring for production systems.
Keyskills :
© 2023 HireeJobsGulf All Rights Reserved