Jobs Companies JODAYN Senior DevSecOps Engineer

Über diese Senior DevSecOps Engineer Stelle bei JODAYN

JODAYN · Vor Ort · Riyadh, Riyadh Province, Saudi Arabia

Job Description

We are looking for a Senior DevSecOps Engineer to serve as the primary technical reference for the project and lead initiatives to enhance DevSecOps maturity across the organization.

The successful candidate will be responsible for integrating security practices and tools into CI/CD pipelines, managing vulnerability remediation processes, establishing secure software development practices, and providing technical guidance and mentorship to security, development, and DevSecOps teams.

Requirements

  • Lead initiatives to improve and enhance DevSecOps maturity across the organization.
  • Conduct DevSecOps and Application Security maturity assessments against recognized frameworks and standards, including BSIMM 15, OWASP DSOMM, and OWASP DSOVS.
  • Assess control coverage, pipeline maturity, security practices, control duplication, and high-risk areas, and identify gaps and improvement opportunities.
  • Design, review, and coordinate the integration of security controls into CI/CD pipelines, including:
    • SAST
    • SCA
    • DAST
    • IAST
    • Secrets Management
    • Infrastructure as Code (IaC) Scanning
  • Establish and govern vulnerability triage, prioritization, tracking, and remediation processes, including defined SLAs.
  • Lead the implementation, configuration, and optimization of application, API, and secure development security tools.
  • Develop and maintain technical standards, documentation, security guidelines, templates, checklists, and operational runbooks.
  • Lead knowledge transfer activities and provide technical guidance to client teams.
  • Provide technical mentorship and guidance to DevSecOps, cybersecurity, and software development teams.
  • Monitor and report on Application Security KPIs, metrics, and DevSecOps maturity indicators.
  • Support the alignment of security policies and standards with global best practices and applicable local regulatory requirements.
  • Promote secure software development practices throughout the Software Development Life Cycle (SDLC).

Requirements & Qualifications

  • Minimum 7 years of relevant professional experience, including experience in Senior and/or Lead-level roles.
  • Proven experience leading Threat Modeling, secure design reviews, and end-to-end implementation of security tools.
  • Proven experience conducting DevSecOps and/or Application Security maturity assessments using frameworks such as BSIMM and/or OWASP DSOMM, including evidence collection, assessment, gap analysis, and reporting.
  • Experience defining, tracking, and reporting Application Security KPIs, metrics, and maturity indicators.
  • Experience developing, updating, and aligning security policies and technical standards with international best practices and local compliance requirements, including NCA requirements.
  • Strong practical experience in Secure Software Development and DevSecOps practices.
  • Proven experience working with CI/CD platforms such as GitLab, Azure DevOps, and/or CloudBees.
  • Strong understanding of integrating security tools into the SDLC, including SAST, SCA, DAST, IAST, Secrets Management, and IaC Scanning.
  • Good knowledge of security frameworks and standards, including:
    • OWASP SAMM
    • OWASP DSOMM
    • OWASP DSOVS
    • BSIMM
    • NIST SSDF
    • NCA Cybersecurity Guidelines
  • Proficiency in automation and scripting using Python, Bash, and/or PowerShell.
  • Strong written and verbal communication skills in English.
  • Arabic language proficiency is an advantage.

Preferred / Required Professional Certifications

Candidates must hold at least two (2) certifications or recognized training credentials from the following list:

  • GCSA – GIAC Cloud Security Automation (SANS)
  • GDSA – GIAC Defensible Security Architecture (SANS)
  • DevSecOps Foundation / Professional – DevOps Institute
  • CSSLP – Certified Secure Software Lifecycle Professional (ISC²)
  • GWEB – GIAC Web Application Defender (SANS)
  • OSWE – Offensive Security Web Expert
  • CKS – Certified Kubernetes Security Specialist
  • AZ-400 – Microsoft Azure DevOps Engineer Expert
  • AWS Certified DevOps Engineer – Professional
  • CISSP or CISM
  • Recognized Secure Coding training from organizations such as SANS, Secure Code Warrior, or OWASP
  • Formal training in BSIMM, OWASP SAMM, OWASP DSOMM, OWASP DSOVS, or NIST SSDF
Bereit, sich bei JODAYN zu bewerben?
Bei JODAYN bewerben

Über JODAYN

JODAYN, was established in 2009, and is one of the leading providers of business and IT consulting services in the GCC region. We are outcomes-based and insights-driven to help you get the most out of your business and IT investments. Through close client relationships and the provision of industry and technological expertise to assist you in meeting the needs of your customers and citizens, it is our mission to establish confidence in all we do. Our promise is to provide you with actionable insights.

Alle Jobs bei JODAYN ansehen →

Ähnliche Jobs

JODAYN
Software Security Initiative (SSI) Lead
JODAYN
⚡ Früh bewerben Riyadh, Riyadh Province, Saudi... Vor Ort
● Neu 👁 Gesehen ✓ Beworben vor 17 Std.
JODAYN
Marketing Manager
JODAYN
⚡ Früh bewerben Riyadh, Riyadh Province, Saudi... Vor Ort
● Neu 👁 Gesehen ✓ Beworben vor 3 Tg.
JODAYN
Senior Integration Engineer
JODAYN
⚡ Früh bewerben Dammam, Eastern Province, Saud... Vor Ort
● Neu 👁 Gesehen ✓ Beworben vor 1 Mon.
JODAYN
Digital Solution Engineer
JODAYN
⚡ Früh bewerben Riyadh, Riyadh Province, Saudi... Vor Ort
● Neu 👁 Gesehen ✓ Beworben vor 1 Mon.
JODAYN
Talent Acquisition Trainee (Tamheer)
JODAYN
⚡ Früh bewerben Riyadh, Riyadh Province, Saudi... Vor Ort
● Neu 👁 Gesehen ✓ Beworben vor 1 Mon.
JODAYN
Senior Account Manager
JODAYN
⚡ Früh bewerben Riyadh, Riyadh Province, Saudi... Vor Ort
● Neu 👁 Gesehen ✓ Beworben vor 3 Mon.
JODAYN
Senior AI Product Engineer
JODAYN
⚡ Früh bewerben Riyadh, Riyadh Province, Saudi... Vor Ort
● Neu 👁 Gesehen ✓ Beworben vor 3 Mon.
Qiddiya Investment Company
Senior Manager - Budgeting, Planning & Financial Analysis - 50007782 HB4
Qiddiya Investment Company
⚡ Früh bewerben Riyadh, Riyadh Province, Saudi... Vor Ort
● Neu 👁 Gesehen ✓ Beworben vor 6 Std.
Apt Resources
Waiter/Waitress for trendy restaurants in Dubai
Apt Resources
⚡ Früh bewerben Dubai, Dubai, United Arab Emir... Vor Ort
● Neu 👁 Gesehen ✓ Beworben vor 7 Std.

Registrieren für Vorschläge, die auf die von Ihnen geöffneten Jobs und gespeicherten Suchen zugeschnitten sind.

Mehr Jobs bei JODAYN

Alle Jobs bei JODAYN ansehen →

Jetzt bewerben
🤖

Moment — langsam

JobsRadar wurde für echte Menschen gebaut, die eine schwere Zeit bei der Jobsuche haben — nicht für automatisierte Anfragen. Sie klicken viel zu schnell und sind jetzt vorübergehend blockiert.

Kommen Sie später wieder. Wenn Sie wirklich auf Jobsuche sind, stehen wir hinter Ihnen — verhalten Sie sich einfach wie ein Mensch.

Catch your next role the second it’s posted.

Create a free account and we’ll watch the boards for you — the instant a job matches your search, it lands in your inbox or Telegram. No digging, no refreshing.

Create free account

Free forever · takes 30 seconds · already have one?

Verschaffe dir einen Vorsprung bei der Jobsuche.

Tritt unserem Telegram-Kanal bei für das, was dir hilft, die Stelle zu bekommen — Gehaltsbenchmarks, den wöchentlichen Marktpuls und neue Feature-Drops. Kein Spam, nur Signal.

Dem Kanal beitreten — kostenlos