Default Image
Back to Search Results

DevSecOps Engineer

Location: Zurich
Sector: DevOps
Job Type: contract
Salary: Negotiable
Reference: BBBH605845

Job Description:

We are currently looking for a DevSecOps Engineer for one of our Medical Devices clients based in Zurich.

IN this role you will be responsible for automating security processes, like vulnerability management. The role involves integrating security tools and implementing processes into the development lifecycle, ensuring continuous security testing, and feeding results back to developers.

Key responsibilities include:

  • Implementing into projects security tools such as SAST, secret scanning, and security testing report generation.
  • Developing and maintaining CI/CD pipelines using tools like TeamCity, Jenkins, and Azure DevOps.
  • Generating and analyzing Software Bill of Materials (SBOM) and integrating with tools like Dependency Track and Defect Dojo.
  • Integrating security scanners like Semgrep and gitleaks.
  • Collaborating with development teams to provide vulnerability feedback and support them with analysis and resolution.
  • Utilizing containerization and orchestration tools like Docker and Kubernetes.
  • Writing scripts and automation using Bash, Python, and PowerShell.

Required Skills and Qualifications:

  • Experience with security tools such as SAST, secret scanning, and security testing.
  • Proficiency in CI/CD tools like TeamCity, Jenkins, and Azure DevOps.
  • Knowledge of SBOM management and tools like Dependency Track and Defect Dojo.
  • Familiarity with security testing tools like Semgrep and gitleaks.
  • Experience with containerization and orchestration tools like Docker and Kubernetes.
  • Strong scripting skills in Python, PowerShell and Bash.
  • Understanding of DevOps practices and tools.
  • Familiarity with Android and iOS build environments.
  • Knowledge of networking and problem-solving skills.

Preferred Skills:

  • Experience with Jira, GitHub, and Polarion for vulnerability feedback and tracking.
  • Familiarity with YAML, XML, and JSON.
  • Knowledge of HTML, CSS security
  • Experience with embedded firmware security.
  • Experience with Confluence and other collaboration tools.

We look forward to receiving your applciation.

Share This Job