DevSecOps Analyst
See all open roles at computer world services corp. (cws) →
Likely real
- 96 open roles at this company in 30 days (mass-hiring blitz)
- no salary disclosed (correlates with ghost postings)
See your fit for this role and apply with a truthfully tailored résumé.
About the role
Key Tasks & Responsibilities
Enterprise Security Operations
Support planning, coordination, implementation, and maintenance of enterprise information security capabilities.
Administer enterprise security infrastructure supporting LAN, WAN, cloud, and hybrid environments.
Design, implement, and maintain network security controls.
Develop, review, and maintain firewall policies, NAT rules, VPN configurations, security zones, and access control lists.
Perform firewall software upgrades, patch management, and configuration maintenance.
Administer Intrusion Detection and Prevention Systems (IDS/IPS).
Administer centralized log aggregation and Security Information and Event Management (SIEM) platforms.
Support web filtering and secure web gateway technologies.
Maintain file integrity monitoring solutions.
Investigate Data Loss Prevention (DLP) alerts and resolve DLP policy issues.
Assist in incident response activities involving network, endpoint, and application security.
CI/CD Pipeline Engineering
Design, develop, maintain, and improve enterprise CI/CD pipelines.
Implement automated build, test, security validation, packaging, and deployment workflows.
Support enterprise CI/CD platforms including:
Jenkins
GitLab CI/CD
GitHub Actions
Automate application deployment across development, testing, staging, and production environments.
Support Git-based source control management, branching strategies, and release management.
Troubleshoot pipeline failures and deployment issues.
Optimize pipeline performance and automation efficiency.
Infrastructure Automation
Develop Infrastructure as Code (IaC) using Terraform.
Develop system automation using Ansible.
Automate infrastructure provisioning and configuration management.
Build reusable infrastructure modules and deployment templates.
Support enterprise platform modernization initiatives.
Automate routine administrative and operational activities.
Standardize infrastructure deployments across multiple environments.
Container Platform Administration
Support Docker-based application deployments.
Administer Kubernetes clusters.
Support Rancher-managed Kubernetes environments.
Manage enterprise container registries.
Implement container security best practices.
Perform image vulnerability scanning and remediation.
Support runtime container security initiatives.
Assist application teams with container migration and deployment.
Troubleshoot containerized applications and orchestration environments.
Application Security
Integrate security testing throughout the SDLC.
Configure and maintain:
OpenText Fortify (SAST)
Dynamic Application Security Testing (DAST)
Software Composition Analysis (SCA)
Secrets Scanning
Review vulnerability scan findings.
Collaborate with developers to remediate security findings.
Implement automated security gates within CI/CD pipelines.
Promote secure coding practices.
Support software assurance initiatives.
Assist with threat modeling and application risk assessments.
Vulnerability Management
Administer Tenable Security Center (SC).
Administer Nessus vulnerability scanners.
Perform authenticated and unauthenticated vulnerability assessments.
Analyze vulnerability results.
Track remediation activities.
Conduct risk assessments.
Coordinate vulnerability remediation with infrastructure and application teams.
Support compliance reporting and continuous monitoring.
Support CISA Binding Operational Directives (BODs), CVEs, and vulnerability remediation efforts.
Assist with penetration testing remediation activities.
Software Lifecycle Management Support
Support software lifecycle management activities for
NSITES III operational tools
Standard enterprise software deployments
Optional licensed software
Customer-requested software
Enterprise software platforms
Responsibilities include
Software packaging
Software testing
Version control
Patch validation
Vulnerability remediation
Change management
Stop applying to ghosts.
OyaPilot surfaces only verified, real jobs, scores your fit, and tailors your application truthfully.
Do more with OyaPilot