Senior Cyber Security Specialist: Devsecops, Its

3 weeks ago


Cape Town, Western Cape, South Africa Woolworths Full time

Advert reference:
woolw_000641

Advert status:
Online

-
Position Summary

Industry:
IT & Internet

Job category:
Others: IT and Telecommunication

Location:
Cape Town

Contract:
Permanent

Remuneration:
Market-related

Introduction


We are searching for an energetic, output-driven DevSecOps Ninja to support the execution of the cyber security strategy and roadmap with a primary focus on integration of security practices into our DevOps delivery models.

We are looking for someone that will help drive a modern security culture where development and operations are enabled through process and tooling for delivering secure software and solutions for Woolworths.

This is a permanent position based at the Head Office in Cape Town City Centre.

Job description

  • Secure the development of products integrate security practices as early as possible in the lifecycle of software development under the guiding principles of 'shift left' and 'security by default'.
  • Prescribe, maintain and enhance cool toolsets manage the relevant tools required for mature product security that include pen testing, secure coding, and source code analysis. Investigate new approaches, technology, and automation to challenge traditional thinking and raise the level of security.
  • Provide AppSec training and raise the awareness banner high create and manage learning and reference materials and exercises.
  • Investigate new approaches, technologies, and automation to mature AppSec.

Additional Responsibilities

  • Collaborate with the broader SecOps Team to drive and support various operational and strategic initiatives.
  • Champion or cochampion internal security solutions and/or processes.

Minimum requirements

_Mandatory_

  • 3year IT or NQF aligned Qualification
  • 5 years relevant experience in cyber security, with at least 3 years in a DevOps / DevSecOps capacity.
  • Hands on practical experience in DevOps / DevSecOps and the ability to integrate security into the CI/CD processes
  • Extensive knowledge of DevSecOps principles, practices, and tools, including containerization, orchestration, and automation.
  • Experience in securing CI/CD pipelines on Cloud platforms, specifically AWS and Azure.
  • Experience with infrastructureascode tools (e.g., Terraform).
  • Basic scripting experience and skills. Python and JavaScript are preferred.
  • Solid experience in Secure Code Development practices and tools, e.g., SonarCube.
  • Good understanding of common security libraries, frameworks, and tools.
  • Ability to explain the common security flaws as well as potential ways to address them.
  • Deep technical skills and ability to automate manual processes.
  • Bloodhound approach to security.
  • Relentless pursuit of threat identification and remediation.
  • Relevant research and translation into defence.
  • Very good people skills to engage with the various stakeholders across the business, while ensuring that professionalism is maintained.
  • Ability to engage with and contribute to the Information Security community.
**_
Additional Criteria_**- Software development experience.

  • Relevant qualifications and certifications such as SANS (SEC 540 or SEC 534), GIAC GCSA or the AWS Developer Associate certification is highly advantageous.
  • Practical experience with the MITRE ATT&CK framework is advantageous.
  • May be required to assist outside of working hours.
  • Knowledge of Woolworths IT and cyber security landscape, including systemic understanding of key business linkages and dependencies
  • Is aware of and responsive to internal and external events and influences on the technical landscape
  • Appropriately derives and organises the essence of information to draw solid conclusions
  • Looks beyond symptoms to uncover root causes of problems to be solved
  • Synthesises data from different sources to identify trends
  • Presents problem analysis and a recommended solution rather than just identifying and describing the problem itself
  • Proactively approaches others to obtain missing information
  • Demonstrates a resultsoriented mindset in planning and implementing activities/projects
  • Clearly defines objectives and translates them into workable activities
  • Monitors and tracks progress to ensure delivery of all planned commitments, and keeps the appropriate people informed
  • Prepares written reports and briefs and communicates ideas clearly
  • Speaks fluently in team meetings when presenting information
  • Manages existing partnerships within established agreements or contracts; negotiates adjustments when mutually beneficial to do so
  • Genuinely cultivates personal bonds with colleagues to enhance performance throughout the organisation
  • Adjusts to work effectively within new work structures, processes, requirements, or cultures
  • Demonstrates resourcefulness in acquiring necessary knowledge, skills, and competencies to adapt to change
**Woolworths is an equal employment opportunity company that is committed to incl

  • Cape Town, Western Cape, South Africa Woolworths Full time

    Advert reference: woolw_000639Advert status: Online- Position SummaryIndustry:IT & InternetJob category:Others: IT and TelecommunicationLocation:Cape TownContract:PermanentRemuneration:Market-relatedIntroductionWe are searching for an energetic, output-driven Senior Blue Team Ninja to support the execution of the cyber security strategy and roadmap with a...


  • Cape Town, Western Cape, South Africa Optimal Growth Technologies Full time

    Brief DescriptionReporting to Manager Cyber Security Prevent & Defense,as the Specialist Cyber Security Defense, you will be responsible forKey Roles: Coordinate optimization of the Operational & Monitoring Defense cyber security baselines (CSB) controls across all relevant business areas and processes Optimize and maintain respective Monitoring Cyber...


  • Cape Town, Western Cape, South Africa Cyber Crime Full time

    Old Mutual is a firm believer in the African opportunity and our diverse talent reflects this.Job DescriptionThis exciting role has responsibility for providing assurance over the portfolio of Information Technology, Cyber and Data activities across the Bank. The role is responsible for annual audit planning, execution of audits, stakeholder management and...


  • Cape Town, Western Cape, South Africa iLaunch Full time

    Develop and implement security hardening strategiesBuilding and refining SIEM / SOC use cases and conduct thorough investigationsand resolutions for escalated threat intelligence, security breaches, and unauthorized access.Assist in cyber security incident responseManage and co-ordinate security architecture reviews, vulnerability assessments andpenetration...


  • Cape Town, Western Cape, South Africa Exclusively Remote Full time

    One of our US based clients are looking for experienced Cyber Security Analyst/Specialist with a strong background in Cyber Security and prior experience working for a Managed Service Provider (MSP).Responsibilities:- Cyber Security: Implement and manage cyber security solutions to safeguard clients' IT environments from potential threats, including malware,...


  • Cape Town, Western Cape, South Africa PPECB Full time

    Job DescriptionSenior Cyber Security GeneralistJob OverviewKey Responsibilities: Develop and implement cyber security policies and procedures in accordance with industry best practices and regulatory requirements. Conduct risk assessments and vulnerability scans to identify and prioritise potential cyber security risks. Design and implement security controls...


  • Cape Town, Western Cape, South Africa Liquid Tech (Pty) Ltd. Full time

    A senior solution sales role delivering pre-sales and solution architect requirements across segments, including but not limited to engaging with customers to understand their Cyber Security requirements in detail, presenting suitable solutions and services, providing thought leadership, establishing suitable solution architectures and responding to customer...

  • Cyber Security Lead

    3 weeks ago


    Cape Town, Western Cape, South Africa Clicks Group Limited Full time

    To elevate the Group's security posture through proactive analysis and mitigation of cyber security threats and risks, especially in cloud platforms and web applications. This position plays a pivotal role in leading a team to implement security assessments, measures and processes through security engineering, penetration testing and other assessment...


  • Cape Town, Western Cape, South Africa Luno Full time

    About the team:The Security Governance team forms part of the bigger Information Security team at Luno. The Security Governance team is responsible for overseeing all governance aspects of information security with the company. This includes maintaining Luno's certification to industry standards such as ISO 27001, assessing compliance with relevant cyber...


  • Cape Town, Western Cape, South Africa Woolworths Full time

    Advert reference: woolw_000638Advert status: Online- Position SummaryIndustry:IT & InternetJob category:Others: IT and TelecommunicationLocation:Cape TownContract:PermanentRemuneration:Market-relatedIntroductionWe are searching for an energetic, output-driven Blue Team Ninja to support the execution of the cyber security strategy and roadmap with a primary...


  • Cape Town, Western Cape, South Africa Sanlam Full time

    Who are we? Glacier by Sanlam brings together leading experts and respected financial services companies to meet clients' investment needs. We deliver focused investment services through specialist teams, partner with acclaimed financial intermediaries and pride ourselves on our superior products and solutions and high quality service. We offer a...

  • Cyber Security Lead

    3 weeks ago


    Cape Town, Western Cape, South Africa Clicks Group Limited Full time

    Listing reference: 016940Listing status: Online-Position summaryIndustry:IT & Internet- Job category:IT and TelecommunicationsLocation:Cape Town- Contract:PermanentEE position:NoIntroductionJob description**JOB OBJECTIVES Lead, mentor, and manage a team of cyber security specialists in performing security assessments and penetration testing on internal and...


  • Cape Town, Western Cape, South Africa DataTech Recruitment Full time

    Cyber Security Specialist required in Cape Town area - Hybrid, to analyse, design, implement and support Technology Security IT Services regarding Cyber Security aspects and solutions in support of the organization. 5+ years' experience in IT Security related services and infrastructure (physical / virtual infrastructure, operating systems and supporting...


  • Cape Town, Western Cape, South Africa Parvana Full time

    About our client:Our client is a highly successful international software development house specialising in telecommunications and payment gateways. With two decades of proven success and remarkable growth, they offer an exceptional training and mentorship program. Your colleagues will be Agile enthusiasts, highly qualified, with a shared goal of continuous...


  • Cape Town, Western Cape, South Africa Clicks Group Limited Full time

    We are seeking a proficient and experienced Cyber Security Manager to shape, design and manage the implementation of the Group's cyber security strategy, plans, governance framework, policies, principles, standards and protocols to enable the organization to respond to evolving cybersecurity threats and potential incidents protectively and swiftly in order...


  • Cape Town, Western Cape, South Africa Clicks Group Limited Full time

    Listing reference: 016939Listing status: Online-Position summaryIndustry:IT & Internet- Job category:IT and TelecommunicationsLocation:Cape Town- Contract:PermanentEE position:NoIntroduction We are seeking a proficient and experienced Cyber Security Manager to shape, design and manage the implementation of the Group's cyber security strategy, plans,...

  • Devsecops Specialist

    3 weeks ago


    Cape Town, Western Cape, South Africa Luno Full time

    About the team:The Cloud Security team at Luno is responsible for identifying security threats and improvement areas within our Cloud-hosted resources, and ensuring that we both strive to implement best practices everywhere and detect any deviations. This team works closely with Engineering and IT Operations to ensure the best security practices are followed...


  • Cape Town, Western Cape, South Africa CyberPro Consulting Full time

    CyberPro Consulting merges a fervor for technology with a sincere interest in our customers' business and success. Boasting more than two decades of experience in the IT and software development industry, CyberPro Consulting serves a diverse clientele, spanning from large-scale enterprises to SME businesses.As Head of Cyber Security in our Cape Town offices,...


  • Cape Town, Western Cape, South Africa 4cgroup Full time

    Main Purpose of Job As a Cyber Security Engineer, you will play a crucial role in safeguarding our organization's digital assets and information systems from cyber threats and attacks. You will work closely with our IT and Cyber Security teams to develop, implement, and maintain security measures that ensure the confidentiality, integrity, and availability...


  • Cape Town, Western Cape, South Africa Wonderlabz Full time

    The RoleThe Cyber Security Manager will support the ISMS, ensuring policies, processes and systems are maintained and enhanced. This also includes the responsibility for sustaining the Group's ISO/IEC27001 compliance, as well as security requirements to support regulatory compliance.The role requires developing and documenting security test plans, guidelines...