devsecops engineer
генерация резюме под вакансию
сопроводительное письмо
описание
EPAM provides enterprise software products, open source solutions, and accelerators, including solutions for Healthcare/Life Sciences and GenAI delivery programs.
задачи
- Build and maintain secure CI/CD pipelines using Jenkins;
- Implement secret scanning and secure secrets management;
- Develop secure Docker images using multi-stage builds and best practices;
- Integrate SAST, SCA, IaC, and container scanning into CI/CD pipelines;
- Improve software supply chain security through dependency management and vulnerability scanning;
- Manage AWS security, including IAM, Secrets Manager, and secure cloud deployments;
- Resolve TLS/SSL and certificate-related issues;
- Create reusable DevSecOps templates and security standards for engineering teams.
требования
- 5+ Years of experience in DevSecOps, Platform Security, or Cloud Security;
- Strong experience with Jenkins CI/CD pipelines;
- Proficiency in Python and/or Node.js;
- Hands-on experience with Docker and container security;
- Strong knowledge of AWS security services, including IAM, Secrets Manager, and Parameter Store;
- Experience with secret management and security scanning tools;
- Knowledge of SAST, SCA, IaC, and container vulnerability scanning;
- Understanding of software supply chain security and dependency management;
- Understanding of TLS/SSL and PKI concepts;
- Nice to have: Experience using AI coding assistants such as Claude Code, Codex, or similar; background in Healthcare, Life Sciences, or other regulated environments; exposure to GenAI/LLM platforms such as Amazon Bedrock; knowledge of application security, Kubernetes, Helm, Bitbucket, and artifact repositories.
условия
- No conditions specified
навыки
Если просят войти через iCloud, отправить коды из SMS, запустить код, что-то установить, перевести деньги или сделать что угодно, связанное с деньгами, не соглашайтесь: это признаки мошенничества.