Sr. DevSecOps Engineer to develop efficient solutions to enhance our vulnerability management processes
S.i. Systèmes
Montréal, QC-
Nombre de poste(s) à combler : 1
- Salaire À discuter
-
Emploi Contrat
- Publié le 13 novembre 2024
-
Date d'entrée en fonction : 1 poste à combler dès que possible
Description
Our valued client is looking for a Sr. DevSecOps Engineer to develop efficient solutions to enhance our vulnerability management processes.
1 year contract. Hybrid role with 2 days/week on site in Ottawa or Montreal
Tasks include
- Identify and fix software vulnerabilities, particularly in SCA, SAST, and Tenable, across both legacy and modern software
- Systematically apply DevSecOps solutions to address vulnerabilities as they arise
- Develop efficient solutions to enhance vulnerability management processes. We are looking for developers who specialize in software integration systems and APIs within an Azure, BizTalk, and .NET environment. This position is key to achieving the organization's 2030 strategy.
- Analyze the SCA, SAST and server types of vulnerabilities around the integration system, and identify systematic and automated solutions to put in place
- Implement and test the software fixes and/or the DevOps solutions to automate the fixing mechanisms proposed
- Work with the team to integrate test automation tools and mechanisms for API component testing, regression testing.
- Design, implement, maintain and improve CI/CD pipelines for several products, for multiple environments and multiple situations
- Implement proofs of concept (AI, automated workflows, Moderne.ai, etc)
- Work with the business squads to improve their security pipelines, making sure that security scanners, controls, policies and regulations are compliant
Must have:
- Demonstrated and strong experience in agile projects on Azure DevOps
- Knowledge of security SCA and SAST scanning tools like Mend, Snyk, etc.
- Strong knowledge in Test Automation Tools, such as Python and Robot Framework, Postman
- Strong knowledge of bash or Powershell or other scripting tools to automate actions
- Reliability Clearance with the Federal Government
Nice to have:
- Strong understanding of automation in general and its benefits (do twice=automate)
- Knowledge of version control software good practices and Git
- Knowledge of Terraform and Infrastructure as Code
- Bilingualism (English/French)
Exigences
non déterminé
non déterminé
non déterminé
non déterminé
D'autres offres de S.i. Systèmes qui pourraient t'intéresser