Appsec Automation Engineer

Appsec Automation Engineer
Empresa:

Ringcentral


Detalles de la oferta

Say hello to possibilities.
It's not every day that you consider starting a new career.
We're RingCentral, and we're happy that someone as talented as you is considering this role.
First, a little about us, we're the $2 billion global leader in cloud-based communications and collaboration software.
We are fundamentally changing the nature of human interaction—giving people the freedom to connect powerfully and personally from anywhere, at any time, on any device.
This is where you and your skills come in.
We're currently looking for: an AppSec Automation Engineer with solid experience in integrating tools into CI/CD pipelines, automating scans management and orchestration, and building feedback channels for these tools.
The engineer will work with all RingCentral product lines, including PBX, Video, Messaging, Unified App, Webinars, Analytics, AI, Integrations, Contact Center, Video Conferencing, etc.
The RingCentral Application Security team is a part of a larger CISO team.
The area of responsibility of the application security team includes enablement and support for RingCentral's Security Development Lifecycle (SDL) program.
This includes the development of infosec governance artifacts i.e., policies, standards and procedures for secure software development at RingCentral, leading security architecture reviews and threat modeling, developing security requirements, SAST/DAST/SCA testing and integration of these tools into the build and deploy process, penetration testing, and managing the bug bounty program.
Key Responsibilities: Collaborate with DevOps engineers to design security tools/scanners integrations into their pipelines.Develop universal and easy-to-use solutions for DevOps engineers who use a wide range of technologies for their pipelines (examples: GitLab CI/CD templates, Jenkins shared libraries, APIs listening to webhooks).Develop automation (e.g., Jenkins jobs) for scheduled regular runs of security scanners.Develop in-house utilities/APIs/web-apps needed for the application security team (e.g., scripts that implement security checks, dashboards, etc.
).Support existing solutions (e.g., GitLab CI/CD templates, Jenkins jobs and shared libraries, in-house developed APIs) by fixing bugs identified by DevOps engineers, adding new features, various improvements (e.g., performance enhancements) and onboarding new system components.Support infrastructure for security tools/scanners that have on-premises installations, which includes:Keep underlying operating systems updated.Install updates from vendors to these tools.Restore these tools in case of failures.Deploy additional tools or additional machines for existing tools in case of scaling.Design/develop/support feedback channels for engineering teams from the security tools/scanners, such as dashboards or JIRA integrations.Communicate with the security tools/scanners vendors to resolve issues if any.Run trial/demo installations in case of purchasing new security tools.
Security tools/scanners include, but are not limited to SAST, DAST, and SCA.
Qualifications Skills: 2+ years of experience in a similar position (DevSecOps engineer, DevOps engineer, application security engineer).Understanding of CI/CD processes.Scripting skills for automation in any language.Experience in Python back-end development.System administration skills (Windows, Unix).Experience with Docker.Understanding concepts related to git repositories, particularly GitLab (branch, commit, merge request, etc.
).Experience in GitLab CI/CD development.Experience in Jenkins jobs development.Experience or willingness to learn and work with static code analysis (SAST), dynamic application analysis (DAST), and dependency analyzers (SCA).Nice to have:Familiar with the principles of building a secure software development lifecycle (e.g., based on OWASP SAMM).Familiar with OWASP DevSecOps Guideline.Understanding of GitOps approach.Experience with modifying/creating rules for security scanners.Experience in front-end development.
What we offer: Well-coordinated professional team.Life assurance and private medical insurance.Competitive salary.Great opportunities for self-realization, professional and career growth.Corporate training programs, free language courses.Excellent work environment and good collaboration.Opportunity to be a part of the international company.
RingCentral's Engineering team works on high-complexity projects that set the standard for performance and reliability at massive scale.
What kind of scale?
Millions of users today and hundreds of millions tomorrow.
This is your chance to help imagine, develop and deliver products that raise the technological bar and power human connections.
If you're a talented, ambitious, creative thinker, RingCentral is the perfect environment to join a world-class team and bring your ideas to life.
RingCentral's work culture is the backbone of our success.
And don't just take our word for it: we are recognized as a Best Place to Work by Glassdoor, the Top Work Culture by Comparably and hold local BPTW awards in every major location.
Bottom line: We are committed to hiring and retaining great people because we know you power our success.
RingCentral offers on-site, remote, and hybrid work options optimized for the ways we work and live now.
About RingCentralRingCentral, Inc. (NYSE: RNG) is a leading provider of business cloud communications and contact center solutions based on its powerful Message Video Phone (MVP) global platform.
More flexible and cost-effective than legacy on-premises PBX and video conferencing systems that it replaces, RingCentral empowers modern mobile and distributed workforces to communicate, collaborate, and connect via any mode, any device, and any location.
RingCentral is headquartered in Belmont, California, and has offices around the world.
RingCentral is an equal opportunity employer that truly values diversity.
We do not discriminate on the basis of race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, or disability status.
#J-18808-Ljbffr


Fuente: Talent_Dynamic-Ppc

Requisitos

Appsec Automation Engineer
Empresa:

Ringcentral


Extra Camarero/A

Estamos en busca de un camarero extra para unirse a nuestro equipo durante eventos especiales. Se requiere experiencia. Jornada parcial.


Desde Domestiko.Com - Valencia

Publicado 22 days ago

Reparación De Goteras

Buenas,Se trata de un trabajo para arreglar unas goteras que tenemos en el tejado.Indica el trabajo de albañilería que se necesita Trabajos de albañilería¿Qu...


Desde Cronoshare.Com - Valencia

Publicado 23 days ago

Senior Business Applications Consultant - Swl-782

.Denim. It's our passion. It's in our blood. But we are not just another denim brand. We're RAW. At G-Star, we are obsessed with denim. Together we push to i...


Desde Importante Empresa Del Sector - Valencia

Publicado 23 days ago

Senior Business Applications Consultant | Zbs-546

Denim. It's our passion. It's in our blood. But we are not just another denim brand. We're RAW. At G-Star, we are obsessed with denim. Together we push to in...


Desde *Nombre Oculto* - Valencia

Publicado 23 days ago

Built at: 2024-10-02T02:44:21.665Z