onsite
Security Engineer - Secure Software Development, CI/CD Security, Cloud & IoT - recruitIT Consulting
Security Engineer
Lead the design and implementation of secure software pipelines, ensuring robust CI/CD security, cloud and IoT protection across the product lifecycle. Drive threat modeling, vulnerability management, and automation to embed security into every stage of development.
About the role
Key Responsibilities
- Architect and maintain secure CI/CD pipelines, integrating automated security checks and compliance controls.
- Conduct threat modeling, code reviews, and vulnerability assessments for cloud and IoT components.
- Collaborate with development, operations, and product teams to embed security best practices into the software development lifecycle.
- Implement and manage security tooling (SAST, DAST, IaC scanners) across multiple cloud environments.
- Lead incident response activities and post‑mortem analyses for security events.
Requirements
- Proven experience as a security engineer or DevSecOps specialist in a fast‑paced environment.
- Deep knowledge of secure software development practices, CI/CD automation, and cloud security (AWS, Azure, or GCP).
- Hands‑on experience with IoT security concepts and device‑to‑cloud integration.
- Strong scripting skills (Python, Bash) and familiarity with container orchestration (Kubernetes).
- Excellent communication skills and a proactive, problem‑solving mindset.
Skills
siemiampenetration testing