Integrate security into CI/CD: SAST/DAST/SCA, secrets management, IaC scanning and policy-as-code.
Perform application security reviews, threat modeling and remediation guidance with engineering teams.
Harden AWS cloud infrastructure and build security automation and internal tooling.
Triage vulnerabilities and drive remediation across services.
Skills
AWS • Python
Cloud security on AWS (IAM, networking, guardrails); Python for security automation and tooling; familiarity with SQL for data/log analysis is expected.
DevSecOps tooling (Snyk, Checkmarx, Trivy, etc.) and IaC (Terraform).