Conduct cloud application security assessments to identify vulnerabilities, threats, and compliance gaps across AWS, Azure, and cloud-native environments
Perform application penetration testing and dynamic security testing using tools such as Burp Suite Professional
Execute IoT and ICS security assessments, including evaluation of OT environments and industrial security controls
Partner with development and engineering teams to integrate security into CI/CD pipelines using GitLab
Implement and maintain DevSecOps security tooling including SAST, DAST, SCA, container security, and IaC scanning
Establish automated security gates and compliance checks within deployment pipelines