
Associate, IT Strategy Consulting
- Bartringen, Luxemburg
- Unbefristet
- Vollzeit
- IT Security Professional with good knowledge and experience in detecting and analyzing threats using industry standard tools and methods such as cybersecurity software, threat modelling and risk assessment.
- Knowledge of threat modelling and risk assessment techniques.
- Up-to-date knowledge of cybersecurity threats, current best practices and latest software.
- Knowledge of the DevOps culture and principles.
- Knowledge and understanding of Kubernetes, Docker.
- Ability to guide the team to write secure code during development
- Experience in using automation tool sets to detect vulnerabilities during development phase
- Ability to work with DevOps Engineers and developers and get the vulnerabilities fixed
- Strong teamwork and communication skills.
The career path ahead is full of exciting opportunities to grow and advance within the job family. With dedication and hard work, you can climb the ladder to higher bands, achieving coveted positions such as Principal Engineer or Vice President of Software. These roles not only offer the chance to inspire and innovate, but also bring with them a sense of pride and accomplishment for having reached the pinnacle of your career in the software industry.Who You AreYou’re good at what you do and possess the required experience to prove it. However, equally as important – you have a growth mindset; keen to drive your own personal and professional development. You are customer-focused – someone who prioritizes customer success in their work. And finally, you’re open and borderless – naturally inclusive in how you work with others.Required Technical and Professional ExperienceMust have minimum 1-2 years of hands on experience in below skill sets
- Experience with DevOps tools and modern engineering practices
- Working in an agile delivery environment, DevOps and container security, application security exposure is good to have.
- Container security (Docker, Kubernetes, etc.)
- Automated deployment, Continuous integration, Continuous delivery and release engineering to Development, QA and Production environments
- Infrastructure as code ( Docker, Ansible, Terraform, etc.)
- Continuous integration (Jenkins)
- Integration of Security testing tools into pipeline- CI/CD
- Defect tracking (Jira)
- Source code management (GitLab, GitHub etc.)
- Familiarity with Methodologies and Standards like OWASP, NIST, OSSTMM, PTES
- Developing scripts for security testing (security as code) and orchestration
- Ability to code/script in at least one programming language like Python, Java, GoLang
- Knowledge of security practices in at least 1 cloud platform ( AWS/ Azure/ GCP)
- An understanding of programs such as Puppet, Chef, ThreatModeler, Checkmarx, Immunio and Aqua.
- Good experience in observability of Systems
- Championing & driving application, infrastructure security efforts
- Bachelor's degree in Computer Science, related technical field, or equivalent practical experience
- Certification in one or more of the hyperscalers (Azure, AWS, and Google GCP) - otherwise, you can obtain certifications with Kyndryl