DevSecOps Engineer - Secure CI/CD & Cloud Infrastructure (GCP)
Join Lembaga Pengkajian Pangan, Obat-Obatan Dan Kosmetika MUI as a DevSecOps Engineer and play a pivotal role in securing our cloud-native applications and CI/CD pipelines on Google Cloud Platform (GCP). In this dynamic position, you will bridge the gap between development and operations, ensuring that security is integrated throughout the entire software development lifecycle. Based in Bogor, Jawa Barat, you'll have the opportunity to work on cutting-edge technologies and contribute to our mission of maintaining the highest standards of security and compliance in the food, pharmaceutical, and cosmetics industries.
As a DevSecOps Engineer, you will be responsible for implementing and managing security best practices in our CI/CD pipelines, monitoring and responding to security incidents, and ensuring that our cloud infrastructure on GCP is secure and compliant with industry regulations. You'll work closely with our development teams to integrate security into their workflows, and with our operations teams to ensure that our infrastructure is secure and reliable.
๐ Tanggung Jawab Pekerjaan
- Implement and manage security best practices in our CI/CD pipelines, including code scanning, dependency checking, and secret management.
- Monitor and respond to security incidents, working closely with our development and operations teams to mitigate risks and prevent future incidents.
- Ensure that our cloud infrastructure on GCP is secure and compliant with industry regulations, including ISO 27001, SOC 2, and GDPR.
- Integrate security into our development workflows, working with our development teams to ensure that security is a first-class citizen in our software development lifecycle.
- Collaborate with our operations teams to ensure that our infrastructure is secure and reliable, and to help them implement and manage security controls.
- Stay up-to-date with the latest security trends and best practices, and help our teams adopt new technologies and approaches to improve our security posture.
- Conduct security assessments and penetration testing to identify and mitigate vulnerabilities in our applications and infrastructure.
- Develop and maintain security documentation, including security policies, procedures, and guidelines, to ensure that our teams have the information they need to work securely.
๐ Kualifikasi & Syarat
- Bachelor's degree in Computer Science, Information Technology, or a related field, or equivalent work experience.
- 3-5 years of experience in DevSecOps, with a strong understanding of CI/CD pipelines, cloud security, and infrastructure as code.
- Proven experience with GCP and other cloud platforms, including AWS and Azure.
- Strong knowledge of security best practices, including secure coding, vulnerability scanning, and incident response.
- Experience with security tools and technologies, including SonarQube, Black Duck, and Twistlock.
- Familiarity with security compliance frameworks, including ISO 27001, SOC 2, and GDPR.
- Strong problem-solving skills and the ability to work independently and as part of a team.
- Excellent communication and interpersonal skills, with the ability to work effectively with stakeholders at all levels.
๐ ๏ธ Keahlian
Kirim lamaran sekarang sebelum batas waktu.๐ Lamar Sekarang