DevSecOps Consultant

؜ - ؜الرياض ؜ -

تفاصيل الوظيفة

Introduction
Information and Data are some of the most important organizational assets in
today 's businesses. As a Security Consultant, you will be a key advisor for
IBM's clients, analyzing business requirements to design and implement the
best security solutions for their needs. You will apply your technical skills
to find the balance between enabling and securing the client's organization
with the cognitive solutions that are making IBM the fastest growing
enterprise security business in the world.


Your Role and Responsibilities
In this role you will perform application security assessments, code reviews,
Software Development Life Cycle (SDLC) and DevSecOps security consulting in a
customer environment. You will be responsible for identifying specific and
systemic security issues within applications and the application development
and lifecycle maintenance process, and you will be a resource for the client
in establishing and expanding the base of client knowledge in application
security.


Projects may include



  • Performing application Threat Modeling using STRIDE, Attack Trees, PASTA or VAST.

  • Working with DevSecOps toolset,

  • Implementing automated security testing in the CI/CD pipeline,

  • Design and implement DevSecOps architecture,

  • Establishing DevSecOps and "Secure by Design" processes.

  • Performing application security risk assessments.

  • Creating gap analysis and client improvement program recommendation.


Candidates must have Core Professional, Consulting and Leadership Skills



  • The ability to lead and facilitate discussion with large groups.

  • Demonstrated business writing and presentation skills.

  • Comfortable working in a project based, client serving model.

  • Ability to work in a matrix management model.


A successful candidate will likely possess a minimum of ‎7 years' experience in
some or all of these qualifications:



  • Experience with threat modeling and security risk assessment,

  • Experience with DevSecOps toolset and architecture,

  • Experience in Cloud Platforms including Azure, AWS and GCP,

  • Deep understanding in Application vulnerabilities,

  • Experience with DevSecOps and Secure by Design programs,

  • Experience with OWASP tools and methodologies,

  • Knowledge in application development and coding in modern languages,

  • Experience with vulnerability scanning tools (e.g., Qualys, Nessus, Nexpose, Saint).

  • Experience with static analysis tools (e.g., Appscan, SNYK, Veracode, Fortify).




Preferred Technical and Professional Expertise



  • Certification, including DevSecOps Engineering certification from DevOps Institute or DevSecOps Professional from Practical DevSecOps preferred

  • Preferable Certification in Public Cloud Technology from one of the major Cloud Service Providers (e.g. AWS Certified Solutions Architect, Microsoft Azure Architect, Google Cloud Architect)

  • CISSP - Certified Information Systems Security Professional

  • Intuitive individual with an ability to manage change and proven time management

  • Up-to-date technical knowledge by attending educational workshops, reviewing publications

  • Arabic is a plus, not mandatory.


Required Technical and Professional Expertise
A successful candidate will likely possess a minimum of ‎7 years ' experience
in some or all of these qualifications:



  • Experience with threat modeling and security risk assessment,

  • Experience with DevSecOps toolset and architecture,

  • Experience in Cloud Platforms including Azure, AWS and GCP,

  • Deep understanding in Application vulnerabilities,

  • Experience with DevSecOps and Secure by Design programs,

  • Experience with OWASP tools and methodologies,

  • Knowledge in application development and coding in modern languages,

  • Experience with vulnerability scanning tools (e.g., Qualys, Nessus, Nexpose, Saint).

  • Experience with static analysis tools (e.g., Appscan, SNYK, Veracode, Fortify).


Preferred Technical and Professional Expertise
* Certification, including DevSecOps Engineering certification from DevOps Institute or DevSecOps Professional from Practical DevSecOps preferred
* Preferable Certification in Public Cloud Technology from one of the major Cloud Service Providers (e.g. AWS Certified Solutions Architect, Microsoft Azure Architect, Google Cloud Architect)
* CISSP - Certified Information Systems Security Professional
* Intuitive individual with an ability to manage change and proven time management
* Up-to-date technical knowledge by attending educational workshops, reviewing publications
* Arabic is a plus, not mandatory.


About Business Unit
IBM 's Cloud and Cognitive software business is committed to bringing the
power of IBM's Cloud and Watson/AI technologies to life for our clients and
ecosystem partners around the world. IBM provides you with the most
comprehensive and consistent approach to development, security and operations
across hybrid environments--with complete software solutions for business and
IT operations, development, data science, security, and management. Our
experts and software capabilities help organizations develop applications once
and deploy them anywhere, integrate security across the breadth of their IT
estate, and automate operations with management visibility. With IBM, you also
have access to new skills and methods, governance and management approaches,
and a deep ecosystem of industry experts and partners.


Your Life @ IBM
Are you craving to learn more? Prepared to solve some of the world's most
unique challenges? And ready to shape the future for millions of people? If
so, then it's time to join us, express your individuality, unleash your
curiosity and discover new possibilities.


Every IBMer, and potential ones like yourself, has a voice, carves their own
path, and uses their expertise to help co-create and add to our story.
Together, we have the power to make meaningful change - to alter the fabric
of our clients, of society and IBM itself, to create a truly positive impact
and make the world work better for everyone.


It's time to define your career.


About IBM
IBM 's greatest invention is the IBMer. We believe that through the
application of intelligence, reason and science, we can improve business,
society and the human condition, bringing the power of an open hybrid cloud
and AI strategy to life for our clients and partners around the world.


Restlessly reinventing since ‎1911, we are not only one of the largest
corporate organizations in the world, we're also one of the biggest technology
and consulting employers, with many of the Fortune ‎50 companies relying on the
IBM Cloud to run their business.


At IBM, we pride ourselves on being an early adopter of artificial
intelligence, quantum computing and blockchain. Now it's time for you to join
us on our journey to being a responsible technology innovator and a force for
good in the world.


Location Statement
For additional information about location requirements, please discuss with
the recruiter following submission of your application.


Being You @ IBM
IBM is committed to creating a diverse environment and is proud to be an equal
opportunity employer. All qualified applicants will receive consideration for
employment without regard to race, color, religion, gender, gender identity or
expression, sexual orientation, national origin, genetics, pregnancy,
disability, age, veteran status, or other characteristics. IBM is also
committed to compliance with all fair employment practices regarding
citizenship and immigration status.

ملخص الوظيفة

  • المُعلن : IBM
  • تاريخ الإعلان : 16/06/2022
  • نوع العمل : -
  • مستوى الخبرة : -
  • المستوى التعليمي : -
  • مكان العمل : الرياض
  • الراتب : -
  • الهاتف : -

وظائف أخرى مثل هذه الوظيفة

الرياض
29/04/2022

**Position:** Consultant / Senior Consultant **Location:** Riyadh, KSA We at Asite are looking to fill several key consultancy roles in our Professional Services Team to support our rapid growth in the MENA market, based in our Riyadh office. We are looking for highly motivated professionals wit…

الرياض
30/04/2022

**Position:** Junior Consultant /Consultant **Location:** Riyadh, KSA We at Asite are looking to fill several key consultancy roles in our Professional Services Team to support our rapid growth in the MENA market, based in our Riyadh office. We are looking for highly motivated professionals with…

الرياض
03/04/2023

Riyadh 4.5-8 Years Saudi Arabia **Job Family** Practice (Packages) **Job Description (Posting).** AEC MOF2- Minimum 7 years of Experience in investigating and resolving all the operational and technical issues or errors which may arise from the system and daily treasury activities. Working experien…

الرياض
19/07/2023

We are looking for a Consultant in KSA/Jordan who is passionate in their field, has fresh ideas and is a critical/creative thinker with strong analytical skills. Does this sound like you? Keep reading. What is in it for you? At Mercer, we recognize that our most important asset is our people. We re…

الرياض
14/05/2022

You are an advanced-level virtualization technology specialist, passionate about cloud automation. You have advanced competencies in infrastructure and network virtualization, a good understanding of business-critical and cloud- native applications, and data center operations **Responsibilitie…

الرياض
16/05/2022

Job Details Description **About Milliman:** Independent for over 70 years, Milliman delivers market-leading services and solutions to clients worldwide. Today, we are helping companies take on some of the world 's most critical and complex issues, including retirement funding and healthcare financi…

الرياض
16/05/2022

Company Description We are entrepreneurs in disruptive technology, at Devoteam, we deliver innovative technology consulting for business. Digital Transformakers, we are 7,000+ professionals across EMEA dedicated to ensuring our clients win their digital battle. We improve business performance ma…

الرياض
19/06/2022

Responsible for the diagnosis and treatment of medical diseases and conditions, as well as the provision of medical care in the field of Neurosurgery, in accordance with current medical staff bylaws, rules and regulations and the hospital's policies and procedures. ##### **Essential Responsibiliti…

الرياض
23/06/2022

Company : Worley ## **Primary Location** : SAU-ARD-Riyadh ## **Job** : Management Consultants ## **Schedule** : Full-time Employment Type : Employee Job Level : Graduate ## **Job Posting** : Jun 23, 2022 ## **Unposting Date** : Jun 28, 2022 Reporting Manager Title : Principal Consultant : **_48,0…

الرياض
08/06/2022

Come work at a place where innovation and teamwork come together to support the most exciting missions in the world! Position Summary The F5 Consultant is an innovative engineer working in partnership with our clients, advising them how to use F5 technology solutions in order to meet their business…

Language: English