Pontoon
Security Architect (DevSecOps)
We are a cutting-edge organization specializing in delivering secure, scalable, and efficient IT solutions. Our commitment to innovation and cybersecurity enables businesses to thrive in a rapidly evolving digital landscape. We are seeking a skilled Security Architect – DevSecOps to lead the integration of security practices into our development and operations processes, ensuring robust protection of systems and applications.
Role Overview
As the Security Architect – DevSecOps, you will be responsible for designing and implementing security frameworks within the software development lifecycle. Collaborating with cross-functional teams, you will embed security best practices, enhance threat protection, and ensure compliance with industry standards.
Key Responsibilities:
- Design, implement, and maintain secure architecture across development and operations pipelines.
- Collaborate with development, operations, and security teams to integrate security into CI/CD workflows.
- Conduct risk assessments, threat modeling, and vulnerability analysis to identify and address security risks.
- Establish and enforce security best practices, frameworks, and compliance standards.
- Implement automated security testing tools and processes to identify and mitigate vulnerabilities.
- Monitor emerging threats and incorporate proactive security measures into systems and applications.
- Provide technical leadership and guidance to teams on DevSecOps strategies and practices.
- Develop and maintain documentation for security architecture, policies, and processes.
- Conduct security training and awareness sessions for development and operations teams.
Requirements:
- Proven experience as a Security Architect or in a DevSecOps-focused role.
- Strong understanding of cybersecurity principles, secure coding practices, and DevOps methodologies.
- Expertise in CI/CD tools (e.g., Jenkins, GitLab CI, Azure DevOps) and infrastructure-as-code tools (e.g., Terraform, CloudFormation).
- Proficiency with containerization and orchestration tools like Docker and Kubernetes.
- Hands-on experience with security tools such as static and dynamic analysis, penetration testing, and vulnerability scanners.
- Knowledge of cloud security (AWS, Azure, or GCP) and compliance frameworks (ISO 27001, NIST, or CIS).
- Excellent problem-solving skills and attention to detail.
- Effective communication and collaboration skills, capable of working with technical and non-technical teams.
- Relevant certifications such as CISSP, CISM, or AWS Certified Security – Specialty are highly desirable.
- Degree in Cybersecurity, Computer Science, or a related field; equivalent experience will also be considered.
What We Offer:
- Competitive salary and comprehensive benefits package.
- Opportunities to work on challenging projects in a collaborative and innovative environment.
- A supportive workplace culture that values learning, teamwork, and professional development.
- Access to advanced tools and resources to enhance your expertise in DevSecOps and cybersecurity.
Application Process:
If you are a cybersecurity professional with a passion for integrating security into development and operations, we encourage you to apply. Join us as a Security Architect – DevSecOps and make a meaningful impact in safeguarding digital solutions.