Esta oferta ya no esta disponible
Esta oferta expiro el 28/07/2026. Ya no acepta candidaturas.
Secure Development Analyst (AppSec / DevSecOps)
EPAM Systems · Córdoba
Descripcion del puesto
About the role
We are seeking a Secure Development Analyst to strengthen our DevSecOps capabilities. You will enhance our CI/CD delivery by embedding automated security controls, ensuring the Jenkins + Podman ecosystem runs smoothly, and partnering with engineering teams to reduce risk.
Key responsibilities
- Operate and evolve DevSecOps infrastructure supporting Veracode scans across Jenkins and Podman.
- Maintain and improve CI/CD pipelines by adding automated SAST, SCA, DAST, secret scanning, and container image analysis controls.
- Design security gates that balance risk reduction with developer velocity.
- Integrate and maintain tooling connections with Bitbucket, SonarQube, and JFrog Artifactory.
- Triage security findings, prioritize remediation, and guide teams through resolution.
- Conduct early design and story reviews in agile delivery against defined security standards.
- Collaborate with development and architecture teams to promote secure coding practices.
Required profile
- 2+ years of experience in Application Security, DevSecOps, DevOps, or development with a security focus.
- Hands‑on experience with Jenkins (declarative pipelines, shared libraries) and Podman for containerized build and scan workflows.
- Strong knowledge of secure development frameworks and standards such as NIST SSDF, OWASP ASVS, OWASP SAMM, OWASP Top 10, SEI CERT, MITRE ATT&CK, and CWE Top 25.
- Understanding of security testing approaches (SAST, SCA, DAST, IAST, secret scanning) and container ecosystems (Docker, Kubernetes/OpenShift).
- Familiarity with cloud platforms (AWS, Azure, or GCP) and CIS Benchmarks.
- Ability to read and analyze source code in Java, Node.js, JavaScript/TypeScript, Python, Go, or .NET.
- Good communication skills in English (B1+).
Required skills
- Jenkins
- Podman
- Veracode, Checkmarx, Snyk, Semgrep, GitLeaks
- SAST, SCA, DAST, secret scanning, IAST
- Bitbucket, SonarQube, JFrog Artifactory
- Docker, Kubernetes/OpenShift
- AWS, Azure, GCP
- Java, Node.js, JavaScript/TypeScript, Python, Go.NET
- OIDC, OAuth 2.0, SAML, JWT, mTLS, Keycloak
- SSL/TLS, PKI, Vault
- STRIDE, PASTA, attack trees
What we offer
- International projects with top‑brand clients.
- Collaboration with global, diverse, highly skilled teams.
- Healthcare benefits and employee financial programs.
- Paid time off and additional employee perks.
Questions fréquentes
Por que reporta esta oferta?
Explorar más
Salarios, guías y búsquedas en Argentina.
Salarios por profesión
- Sales Executive IT // Esquema Hibrido - Microcentro / CABA 25
- Líder DevOps AWS // Multinacional de Software Financiero - Híbrido/ Microcentro / CABA 16
- Engineering Manager // Software Financiero - Remoto para residentes en Argentina 14
- Project Manager 13
- Personal Shopper - Caba 12
- Técnico de Mantenimiento 12
- Cocinero/a 12
- Ayudante de cocina 11
¿Una pregunta sobre esta oferta?
Hágala aquí: recibirá el resumen completo por correo, de inmediato.
Publicado hace 4 meses
49 vistas · 0 interested
Aumenta tus posibilidades
Sube tu CV: te propondremos las ofertas que coinciden con tu perfil.
Analizando tu CV...
EPAM Systems
Córdoba
Ofertas relacionadas
-
.NET Developer (con inglés básico)
Endava Córdoba -
Agile Project Manager
Endava Córdoba -
Analista de Mesa de Ayuda y Soporte Técnico
Hospital Privado Universitario de Córdoba Córdoba -
DevOps Engineer - Linux, Docker, GitLab CI/CD
Pump Control SRL Capital Federal -
Desarrollador Cobol Junior Exclusivo AMBA
C&S informática s.a. Buenos Aires