The latest news
Re-Uniqlo is new recycling project from Fast Retailing
Textiles Minister disbands AIHB, registers products with ‘India Handloom Brand’
GJEPC to hold first Plain Gold Jewellery Virtual Buyer Seller Meet
Gold jewellery retailers face negative credit outlook, fewer store openings: CRISIL
Bajaj Consumer Care partners with Indiamart to strengthen digital presence
Myntra looks to tap new customers by partnering with Chennai Super Kings
Malabar Gold to enter Bihar, plans to triple showrooms in five years across India
Tom Ford climaxes New York Fashion Week with Flower Power elegance
H&M splits from Chinese supplier following Uyghur forced labour accusations
Hard-edged, performance-art chic by Burberry opens London Fashion Week
U.S. investors set to own majority stake in TikTok Global - source
White to celebrate Made in Italy and sustainability in 300-brand salon
Italian leather goods, footwear sectors post dire H1 results
LVMH, Tiffany wrangle over court dates after acquisition turns sour
Raf Simons to show debut signature women’s collections on October 23
ABFRL's Jaypore partners with Creative Dignity to promote artisans online
The Moms Co raises $8 million in funding, plans expansion
Seven to be Chennai Super Kings official apparel partner for IPL 2020
Shoexpress partners with Myntra to enter Indian market
Fastrack launches line of audio-sunglasses on Amazon
Titan partners with SBI to launch contactless payment watch
Apple kicks off critical holiday season with watch that monitors blood oxygen
Text size
aA+ aA-
Click here to print

Senior Security Automation Engineer, India – Cis Icc

Country : India

Region : Karnataka

Town : Bengaluru

Category : Production - Quality

Contract type : Permanent

Availability : Full time

Job description

As a Sr. Security Automation Engineer your role on the Corporate Information Security (CIS) Attack Surface Management team will be focused on the automation and integration of security vulnerability assessment tools to acquire vulnerability data, misconfigurations or code flaws which put Nike data at risk. Sources of data will be from numerous enterprise and open source security assessment utilities. Your efforts will focus upon integration and automation of security toolsets deployment into cloud environments, secure development pipelines, automation and sharing of data between security toolsets, and interactions with a focus on improving overall system & application security. Ours is a fast-paced, multi-faceted and passionate team which handles wide ranges of issues at Nike.
Job Requirements:
* Agile development & maintenance of automation script/tools to scale the attack surface management's work across the enterprise organization
* Design, deploy and maintain automated configuration as code deployment of vulnerability assessment scanners & agents to cloud environments
* Develop custom platform integrations, data correlation and processing strategies to reduce false positives, leverage asset meta data for context and align data against Nike remediation policies
* Be the Subject Matter Expert (SME) for deployment & management of integrations of various security vulnerability assessment tools
* Assist technology community to effectively utilize the tools and remediate findings identified
* Assist with maintaining various pipeline integration of security tools into development SDLCs
* Effectively communicate complex technical issues simply to different audiences
* Ability to quickly learn new Information Security concepts and adapt to a fast-paced, ever changing organization
* Working cross functionally with multiple teams on establishing new processes and improving existing security across the platform


What We're Looking For:
To make it clear, we're not looking for just anyone. We're looking for someone special, someone who has in-depth experience and clearly demonstrates these skills:
* BS or MS degree preferred in computer science, information assurance or equivalent experience
* Expertise in interpreted languages (Python, Javascript) and compiled languages (Java, .Net) with full-stack development experience.
* Software development background and strong knowledge of software development lifecycles
* Previous experience deploying and maintaining configuration as code systems, services, containers and applications in AWS, Azure and/or GCP
* Hands on & automation experience with security toolsets such as vulnerability scanners (Nessus, Nexpose, Qualys), Dynamic Web application Scanners (WebInspect, AppSpider, Whitehat, Veracode) is preferred
* Experience in Application Security, administering web-based applications and servers
* Ability to develop and communicate recommendations to management
* Strong problem-solving and conceptual thinking abilities
Click here to print

Similar Offers

Website reserved for fashion, luxury and beauty industry professionals.