about the company
Founded in 2011, my client is a leading cybersecurity company headquartered in Singapore. It provides comprehensive cybersecurity solutions and services to a wide range of clients, including government agencies, financial institutions, healthcare organizations, and enterprises across various industries.
...
With expansion plans, they are looking to hire a DevSecOps Automation Engineer to implement the organisation's digital transformation vision. Reporting to the Digital Transformation Office, you will collaborate with senior management and business units on digital transformation projects.
about the job
- Implement security practices in software development and deployment through automation, tools, and techniques.
- Foster collaboration between development, security, and operations teams to ensure secure and efficient software delivery.
- Design, implement, and maintain secure pipelines for system and application development, deployment, and delivery.
- Create automation solutions for security processes and tool deployment in cloud platforms (AWS, Azure, Google) using infrastructure-as-code principles.
- Advocate for and establish best practices for Agile/DevSecOps and secure CI/CD.
- Construct and maintain DevSecOps pipelines that prioritize security testing early in the development cycle, including SAST, DAST, MAST, SCA, container scanning, API security, and build environment security.
- Work closely with development, security, and operations teams to address security requirements, vulnerabilities, and risks.
- Evaluate and improve existing security practices to align with industry best practices and regulatory compliance.
- Keep abreast of new security tools and techniques to drive innovation and improve process maturity.
skills and experience required
- Minimally Diploma/ Degree in Information Technology or equivalent.
- Minimally 5 years of experience in SRE, DevOps, DevSecOps, Cyber Security or a related field.
- Familarity with tools and technologies used in secure SDLC, with hands-on experience in DevSecOps practices.
- Proficient with cloud security e.g. AWS, Azure, GCP etc.
- Proficient in control standards e.g. ISO 27001-2, NIST 800-53 etc.
- Passion for solving business challenges with data and technology.
- Strong communication and stakeholder management skills.
To apply online please use the 'apply' function, alternatively you may contact Joey at joey.lam(at)randstad.com.sg.
(EA: 94C3609/ R1879086)