Dev Ops AppSec & Security Engineer job opportunity at GXA.



Date2025-12-18T12:08:36.078Z bot
GXA Dev Ops AppSec & Security Engineer
Experience: General
Pattern: Contract
apply Apply Now
Salary:
Status:

Job

Copy Link Report
degreeOND
Pakistan

Role Summary The Dev/Ops AppSec & Security Engineer is a hybrid role supporting both the Application Support Team and the Security Team. This position is responsible for embedding security best practices into the application lifecycle, while also serving as a core resource for organizational security initiatives. The engineer collaborates closely with the Virtual Information Security Manager (vISM) and other security stakeholders to drive vulnerability management, penetration test remediation, and comprehensive security assessments. This role ensures that solutions are robust, compliant, and resilient against threats, and that security objectives are met across both application and infrastructure domains. Core Responsibilities Application Security • Guide developers and engineers on secure coding standards and practices. • Perform code reviews and static/dynamic analysis to identify vulnerabilities. • Integrate security tools into CI/CD pipelines for automated scanning and compliance. • Design and implement authentication, authorization, and encryption for APIs and applications. • Assess and remediate risks in REST/SOAP integrations, data pipelines, and custom applications. Security Engineering (Security Team Support) • Collaborate with the vISM and Security Team to manage vulnerability identification, tracking, and remediation across applications and infrastructure. • Coordinate and support penetration testing activities, including scoping, execution, and remediation of findings. • Conduct security assessments for new and existing systems, documenting risks and recommending mitigation strategies. • Develop and maintain threat models for applications and infrastructure. • Respond to security incidents, perform root-cause analysis, and document lessons learned. • Support compliance initiatives (e.g., GDPR, HIPAA, PCI-DSS) and assist with audit preparation and evidence collection.Security Automation & Monitoring • Build and maintain security automation scripts and workflows (e.g., for vulnerability scanning, alerting, and compliance checks). • Integrate security monitoring into Azure Pipelines, Data Factory, and related services. • Maintain comprehensive security documentation, diagrams, and operational procedures. Cross-Team Collaboration • Work with Business Analysts to translate security requirements into actionable specifications. • Educate stakeholders on security risks, trade-offs, and mitigation strategies. • Participate in client meetings to address security concerns and present solutions. Required Skills & Experience • Proficiency in secure coding, application security frameworks (OWASP, NIST), and vulnerability management. • Experience with security tools (SAST, DAST, dependency scanning, SIEM). • Strong understanding of authentication, authorization, and encryption protocols. • Familiarity with CI/CD pipelines, Azure DevOps, and security automation. • Experience with penetration testing methodologies and remediation processes. • Ability to investigate, respond to, and remediate security incidents. • Skill in root-cause analysis and forensic investigation. • Ability to explain technical security concepts to non-technical stakeholders. • Experience working with cross-functional teams (engineering, business analysis, operations, security). Preferred Experience • Experience with cloud security (Azure preferred), API security, and data protection. • Background in software development or DevOps environments. • Familiarity with regulatory compliance frameworks and client-facing security reviews. • Experience in consulting or Managed Service Provider (MSP) environments. How This Role Complements the Team: • Ensures solutions designed by the Business Analyst and built by the Dev/Ops Engineer are secure, compliant, and resilient.• Bridges technical and business requirements, proactively addressing risks and enabling secure innovation. • Strengthens the organization’s overall security posture by supporting vulnerability management, pentest remediation, and security assessments in partnership with the vISM and Security Team.

Other Ai Matches

Proactive Technical Alignment Engineer (TAE) Applicants are expected to have a solid experience in handling Job related tasks
Appointment Setter/Telemarketer/Sales Development Representative Applicants are expected to have a solid experience in handling Job related tasks
Office Manager Applicants are expected to have a solid experience in handling Job related tasks
Proactive Technical Alignment Engineer (TAE) Applicants are expected to have a solid experience in handling Job related tasks
Dev Ops Business Analyst Applicants are expected to have a solid experience in handling Job related tasks
L2 Technician Applicants are expected to have a solid experience in handling Job related tasks
Dev Ops AppSec & Security Engineer Applicants are expected to have a solid experience in handling Job related tasks
Dev Ops Business Analyst Applicants are expected to have a solid experience in handling Job related tasks
Proactive Technical Alignment Engineer (TAE) Applicants are expected to have a solid experience in handling Job related tasks
Appointment Setter/Telemarketer/Sales Development Representative Applicants are expected to have a solid experience in handling Job related tasks
Chief Information Officer - CIO Applicants are expected to have a solid experience in handling Job related tasks
L2 Technician Applicants are expected to have a solid experience in handling Job related tasks
Senior Systems Engineer (L4) Applicants are expected to have a solid experience in handling Job related tasks
Dev Ops AppSec & Security Engineer Applicants are expected to have a solid experience in handling Job related tasks
Dev Ops AppSec & Security Engineer Applicants are expected to have a solid experience in handling Job related tasks
Appointment Setter/Telemarketer/Sales Development Representative Applicants are expected to have a solid experience in handling Job related tasks
Senior Systems Engineer (L3 - Network-Focused) Applicants are expected to have a solid experience in handling Job related tasks
Outside Sales Executive Applicants are expected to have a solid experience in handling Job related tasks
Proactive Technical Alignment Engineer (TAE) Applicants are expected to have a solid experience in handling Job related tasks
Dev Ops AppSec & Security Engineer Applicants are expected to have a solid experience in handling Job related tasks
Senior Systems Engineer (L4) Applicants are expected to have a solid experience in handling Job related tasks
Appointment Setter/Telemarketer/Sales Development Representative Applicants are expected to have a solid experience in handling Job related tasks
Provisioning Technician (Intern) Applicants are expected to have a solid experience in handling Job related tasks