Position Description
Will be a member of the IT security team working in a large, primarily Linux-based environment. The focus will be in application security, but the position will provide opportunities to work in others areas of cybersecurity as well. Will work on a variety of complicated tasks and a wide degree of creativity and latitude is expected. Responsibilities will be primarily hands-on and technical in nature. Specific duties will include:
- Performing application security assessments using both automated tools and manual code review
- Assisting with administration, maintenance, and auditing of CI/CD implementation and build/deploy processes.
- Assist development teams with integrating security scanning into their everyday workflow
- Assisting development teams with validation of vulnerabilities and training in secure coding practices.
- Developing and maintaining scripts for automating routine tasks.
- Assisting with administration of Linux-based virtual infrastructure servers and various security services that run on them.
- Assisting with maintaining security documentation, and auditing for compliance.
Position Requirements
Software development experience and an interest in application security OR a security practitioner with knowledge of software engineering best practices.
- Competency reading and understanding two or more programming languages, such as: Java, Python, Groovy, PHP, JavaScript
- Competency working full-time in a Linux-based environment. The shell prompt should be your friend
- Knowledge of common application vulnerabilities
- A desire to focus and expand your knowledge in various aspects of cybersecurity
- Ability to write code to interface with REST APIs and automate routine tasks.
Bonus skills
- Prior experience with static code analysis, dynamic application scanning and penetration testing.
- Systems administration or network administration experience.
- Experience with the Software Development Lifecycle, CI/CD, DevSecOps
- Continuous monitoring, vulnerability management and network security monitoring.
- Hold one or more security certifications
- Experience with the following: NIDS, HIDS, SIEM, vulnerability scanning tools, VPN, CM automation tools
- Experience with containers and orchestration tools.
- Researching and developing security policies, standards and procedures
Education
BS in computer science, related discipline, or equivalent work experience.
EEO Compliance:
Ryde Technologies is an Equal Employment Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, age, sexual orientation, gender identity, national origin, disability, protected veteran status, or any other characteristic protected by law. Ryde Technologies will consider qualified applicants with criminal histories in a manner consistent with the requirements of applicable law.