Negotiable
Undetermined
Remote
Remote
Summary: The SecOps Engineer role is a contract position focused on enhancing application security through expert-level secure code reviews, vulnerability remediation, and the development of security automation tools. The engineer will collaborate with development teams to integrate security practices into the software lifecycle and stay updated on emerging threats. This position requires a strong background in software engineering or security operations, particularly in application-layer security. The role is fully remote, allowing for flexible work arrangements.
Key Responsibilities:
- Perform expert-level secure code reviews focusing on OWASP Top 10 and CWE vulnerability classes.
- Identify, triage, and remediate application-layer vulnerabilities, including broken access control and SQL injection.
- Develop and maintain security automation tools using Python, GoLang, or JavaScript/TypeScript to enhance vulnerability detection.
- Conduct and document penetration tests, collaborating with teams to drive remediation initiatives.
- Advise development teams on secure coding practices, integrating security into the software lifecycle.
- Stay informed of emerging threats and implement best practices within the customer's environments.
Key Skills:
- Have strong relevant experience in software engineering or security operations with a focus on application-layer security.
- Demonstrate proficiency in Python, GoLang, Rust, JavaScript, or TypeScript.
- Have expertise in secure code review and professional penetration testing.
- Be familiar with OWASP Top 10, CWE, and modern vulnerability classes.
- Have a proven ability to detect, prioritize, and remediate vulnerabilities in production applications.
Salary (Rate): £100/hour
City: undetermined
Country: undetermined
Working Arrangements: remote
IR35 Status: undetermined
Seniority Level: undetermined
Industry: IT
Position: SecOps Engineer
Type: Contract
Compensation: $30 - $100/hour
Location: Remote
Role Responsibilities
- Perform expert-level secure code reviews focusing on OWASP Top 10 and CWE vulnerability classes.
- Identify, triage, and remediate application-layer vulnerabilities, including broken access control and SQL injection.
- Develop and maintain security automation tools using Python, GoLang, or JavaScript/TypeScript to enhance vulnerability detection.
- Conduct and document penetration tests, collaborating with teams to drive remediation initiatives.
- Advise development teams on secure coding practices, integrating security into the software lifecycle.
- Stay informed of emerging threats and implement best practices within the customer''s environments.
Requirements
- Have strong relevant experience in software engineering or security operations with a focus on application-layer security.
- Demonstrate proficiency in Python, GoLang, Rust, JavaScript, or TypeScript.
- Have expertise in secure code review and professional penetration testing.
- Be familiar with OWASP Top 10, CWE, and modern vulnerability classes.
- Have a proven ability to detect, prioritize, and remediate vulnerabilities in production applications.
Application Process
- Easy Apply on Dice
- Check email for next steps
- Participate in resume evaluation & interview stage