Hi,
My name is Rohit Chauhan, and I am a Staffing Specialist at Novia Infotech LLC. I am reaching out to you on an exciting job opportunity with one of our clients.
Job Title: Senior
DevSecOps Engineer – Identity & SSH Key
Management
Location: San Antonio, TX (Onsite)
Bill Rate: $47/hr
Position Overview
We are seeking an experienced Senior DevSecOps Engineer with expertise in Identity & Access Management (IAM), SSH Key Lifecycle Management, Venafi, Cloud DevOps, API Development, and Secure CI/CD Engineering.
The ideal candidate will be responsible for designing, implementing, automating, and supporting enterprise-scale identity security solutions with a strong focus on SSH key discovery, certificate management, privileged access controls, and DevSecOps automation. This role requires deep experience in secure software delivery, cloud transformation initiatives, workforce identity management, and modern Zero Trust security architectures.
The candidate will collaborate closely with Security Engineering, Infrastructure, Cloud Operations, IAM, DevOps, Application Development, and Compliance teams to build secure, scalable, and automated identity-centric solutions.
Key Responsibilities
SSH Key Lifecycle Management & Venafi Administration
- Design, implement, and manage enterprise SSH key lifecycle processes.
- Deploy and support Venafi SSH Protect and related SSH key management solutions.
- Implement automated SSH key discovery, inventory, governance, and remediation processes.
- Manage SSH key provisioning, rotation, renewal, revocation, and expiration workflows.
- Leverage Venafi SSH Certificate Authority (SSH CA) capabilities to replace or supplement traditional SSH keys.
- Develop and maintain comprehensive SSH key inventories including:
- Key Owners
- Key Types
- Algorithms
- Key Sizes
- Key Locations
- Usage Information
- Implement automated SSH key rotation policies and compliance controls.
- Identify and remediate orphaned, duplicate, stale, weak, and unauthorized SSH keys.
- Conduct risk assessments related to SSH key security and privileged access management.
Identity & Access Management (IAM)
- Support Workforce Identity and Access Management (IAM) solutions and platforms.
- Design and implement Identity Lifecycle Management (ILM) processes.
- Develop and maintain access governance, access certification, and authorization controls.
- Support Identity Federation and Single Sign-On (SSO) integrations.
- Implement and maintain:
- Multi-Factor Authentication (MFA)
- Passwordless Authentication
- Role-Based Access Control (RBAC)
- Device Trust
- Self-Service Password Reset (SSPR)
- Zero Trust Security Frameworks
- Support Privileged Access Management (PAM) initiatives and integrations.
DevSecOps & CI/CD Engineering
- Design, implement, and optimize secure CI/CD pipelines and DevSecOps workflows.
- Integrate security controls throughout the software development lifecycle.
- Automate deployment, validation, testing, compliance, and remediation processes.
- Develop Infrastructure as Code (IaC) and automation solutions.
- Implement automated security scanning, policy enforcement, and compliance monitoring.
- Collaborate with development teams to improve application security posture.
CI/CD Technologies
- Git
- GitHub
- Azure DevOps
- Jenkins
- Ansible
- Docker
- Automated Build & Release Pipelines
API Development & Application Security
- Develop and support secure RESTful APIs and enterprise integrations.
- Build scalable API services using Java/J2EE technologies.
- Implement authentication, authorization, and API security best practices.
- Integrate IAM and security services with enterprise applications.
- Support secure application onboarding and identity federation initiatives.
Cloud Transformation & Security Engineering
- Support enterprise cloud transformation and modernization initiatives.
- Implement security controls across cloud-native environments.
- Collaborate with cloud engineering teams to secure workloads and infrastructure.
- Ensure compliance with enterprise security standards and regulatory requirements.
- Support secure cloud deployment architectures and DevSecOps practices.
Cloud Technologies
- Azure Cloud
- Cloud Security
- Cloud Automation
- Containerization
- Secure Cloud Deployments
Automation & Scripting
- Develop and maintain PowerShell automation scripts.
- Create automation solutions for SSH key discovery and lifecycle management.
- Automate identity governance, compliance reporting, and remediation workflows.
- Develop reusable automation frameworks for operational efficiency.
Security Operations & Compliance
- Monitor SSH key usage, policy compliance, and security posture.
- Generate audit reports and compliance dashboards.
- Support regulatory and internal security audits.
- Develop controls and reporting mechanisms for:
- Access Governance
- SSH Key Compliance
- Identity Security
- Privileged Access Monitoring
- Validate effectiveness of security controls and remediation efforts.
Risk Assessment & Governance
- Identify security vulnerabilities related to SSH keys and privileged access.
- Assess risks associated with:
- Weak Keys
- Stale Keys
- Duplicate Keys
- Unauthorized Access
- Root-Level Access
- Prioritize remediation activities based on business criticality and risk exposure.
- Establish governance processes and security standards for identity and access management.
Collaboration & Support
- Partner with Security, Infrastructure, IAM, Application Development, Compliance, and Operations teams.
- Coordinate with enterprise platforms including:
- Active Directory
- CyberArk
- ServiceNow
- Identity Providers
- Troubleshoot and resolve SSH key, certificate, authentication, and authorization issues.
- Support production incidents and critical issue resolution activities.
- Participate in architecture reviews, technical discussions, and security assessments.
Required Qualifications
- Bachelor's Degree in Computer Science, Cybersecurity, Information Technology, Engineering, or related discipline.
- 8-10+ years of experience in DevSecOps, IAM, Security Engineering, or Cloud Security.
- Hands-on experience with SSH Key Lifecycle Management and Venafi solutions.
- Strong experience with Identity and Access Management (IAM) technologies.
- Experience developing secure CI/CD pipelines and DevSecOps automation.
- Strong Java/J2EE development experience.
- Experience with API development and integrations.
- Strong scripting experience using PowerShell or similar automation technologies.
- Excellent troubleshooting, analytical, and communication skills.
|
Rohit Chauhan IT Recruiter A: 4421 Avenida Ln, McKinney, TX, 75070
|
You received this message because you are subscribed to the Google Groups "NoviaJobs" group.
To unsubscribe from this group and stop receiving emails from it, send an email to noviajobs+unsubscribe@googlegroups.com.
To view this discussion visit https://groups.google.com/d/msgid/noviajobs/CAJ0-OE8o5f_KDXWMt30LyVkJbKcCC9PmbPAsuDRERhUE%3DShgdw%40mail.gmail.com.
No comments:
Post a Comment