Negotiable
Undetermined
Remote
Remote
Summary: The SecOps Engineer role is a contract position focused on enhancing application-layer security through expert-level secure code reviews and vulnerability remediation. The engineer will develop security automation tools and conduct penetration tests while advising development teams on secure coding practices. This remote position requires strong experience in software engineering or security operations, particularly in application-layer security. The role emphasizes staying informed about emerging threats and implementing best practices in customer environments.
Key Responsibilities:
- Perform expert-level secure code reviews focusing on OWASP Top 10 and CWE vulnerability classes.
- Identify, triage, and remediate application-layer vulnerabilities, including broken access control and SQL injection.
- Develop and maintain security automation tools using Python, GoLang, or JavaScript/TypeScript to enhance vulnerability detection.
- Conduct and document penetration tests, collaborating with teams to drive remediation initiatives.
- Advise development teams on secure coding practices, integrating security into the software lifecycle.
- Stay informed of emerging threats and implement best practices within the customer's environments.
Key Skills:
- Have strong relevant experience in software engineering or security operations with a focus on application-layer security.
- Demonstrate proficiency in Python, GoLang, Rust, JavaScript, or TypeScript.
- Have expertise in secure code review and professional penetration testing.
- Be familiar with OWASP Top 10, CWE, and modern vulnerability classes.
- Have a proven ability to detect, prioritize, and remediate vulnerabilities in production applications.
Salary (Rate): £100/hour
City: undetermined
Country: undetermined
Working Arrangements: remote
IR35 Status: undetermined
Seniority Level: undetermined
Industry: IT
Position: SecOps Engineer
Type: Contract
Compensation: $30 - $100/hour
Location: Remote
Role Responsibilities
- Perform expert-level secure code reviews focusing on OWASP Top 10 and CWE vulnerability classes.
- Identify, triage, and remediate application-layer vulnerabilities, including broken access control and SQL injection.
- Develop and maintain security automation tools using Python, GoLang, or JavaScript/TypeScript to enhance vulnerability detection.
- Conduct and document penetration tests, collaborating with teams to drive remediation initiatives.
- Advise development teams on secure coding practices, integrating security into the software lifecycle.
- Stay informed of emerging threats and implement best practices within the customer''s environments.
Requirements
- Have strong relevant experience in software engineering or security operations with a focus on application-layer security.
- Demonstrate proficiency in Python, GoLang, Rust, JavaScript, or TypeScript.
- Have expertise in secure code review and professional penetration testing.
- Be familiar with OWASP Top 10, CWE, and modern vulnerability classes.
- Have a proven ability to detect, prioritize, and remediate vulnerabilities in production applications.
Application Process
- Easy Apply on Dice
- Check email for next steps
- Participate in resume evaluation & interview stage