Brooksource ยท 11 hours ago
IT Security Architect
Maximize your interview chances
Insider Connection @Brooksource
Get 3x more responses when you reach out via email instead of LinkedIn.
Responsibilities
Conduct comprehensive vulnerability assessments and risk management for the CWIS, identifying security gaps and assisting in the development of mitigation strategies.
Provide expert guidance on security principles, including secure coding practices, threat modeling, and vulnerability management.
Secure containerized environments by integrating security into container workflows (with technologies like Docker, Kubernetes, and Redhat OpenShift).
Work with internal teams to ensure compliance with regulatory frameworks such as HIPAA and PCI DSS, implementing appropriate controls to meet these standards.
Contribute to DevSecOps initiatives, applying practices like static code analysis, dependency management, and container hardening.
Develop and maintain secure CI/CD pipelines using GitHub Actions and leverage GitHub Security features like code scanning and secret scanning.
Document findings from vulnerability assessments in an actionable, clear, and concise manner for relevant stakeholders.
Provide expertise in the design and configuration of network security on layers 3, 4, and 7 of the OSI model, particularly in a data center environment.
Qualification
Find out how your skills align with this job's requirements. If anything seems off, you can easily click on the tags to select or unselect skills to reflect your actual expertise.
Required
7+ years of experience in IT security, including risk management, vulnerability assessments, and the development of mitigation strategies.
6+ years of experience with secure coding practices, vulnerability management, threat modeling, and risk assessments.
Strong experience with containerization technologies (e.g., Docker) and container orchestration tools like Kubernetes (preferably Redhat OpenShift).
Expertise in securing containerized environments and integrating security into container workflows.
Solid understanding of regulatory compliance (e.g., HIPAA, PCI DSS) and the implementation of necessary security controls.
6+ years of experience in DevSecOps concepts, including static code analysis, dependency management, and container hardening.
Hands-on experience with CI/CD pipelines, particularly using GitHub Actions, and security features like code scanning and secret scanning.
Familiarity with common security frameworks such as OWASP Top 10 and CIS Benchmarks.
Knowledge of the OSI model and experience designing and configuring network security on layers 3, 4, and 7.
Strong ability to document vulnerability assessments and risk management results in an accurate and clear manner for appropriate personnel.
Preferred
Certified Ethical Hacker (CEH) certification.
AWS Certified Security Specialty certification.
Experience with Copado for Salesforce deployment automation and release management.
Company
Brooksource
Brooksource is a single source for project and supplemental support through contract employment, contract-to-hire labor employment.
Funding
Current Stage
Late StageLeadership Team
Recent News
2024-12-10
2024-11-26
2024-11-19
Company data provided by crunchbase