Manager - DevOps Security
USA-Overland Park-KS-11880 College Blvd., Suite 200, United States
Full Time Mid-level / Intermediate USD 108K - 217K
It's fun to work at a company where people truly believe in what they are doing!
Job Description:
Job SummaryEpiq's continuing innovation is introducing exciting new products and technologies. To ensure the protection of our clients' data, our cybersecurity team is looking to add additional DevOps security expertise to our team.The Manager - DevOps Security will report to our Senior Director of Cybersecurity Governance and be responsible for leading our ongoing Product Security program with focus on secure software development and cloud security management.
Successful candidates for this with have demonstrable expertise in implementing automations and secure practices in software development pipelines that drive a strong application security posture in a hybrid environment. Transferrable skills desirable for this role include proven ability to take high-level strategy and break it down into actionable tasks. Successful candidates will be adept at influencing upward and driving senior
leaders to action. Candidates must have the capability to present complex topics across an audience with varying levels of knowledge and convey a consistent and compelling narrative.
Essential Job Responsibilities
- Work collaboratively with the Cloud Governance Steering Committee to develop baseline security and operational requirements for Epiq's Cloud Environments across multiple cloud providers
- Work directly with software development teams across Epiq's business lines to identify and implement tailored controls and automations in the development pipelines that achieve security requirements
- Assess the efficacy of current security controls and identify improvements that will add additional security capability, cost savings, and/or automation efficiency.
- Lead team members delivering consultative support to product development teams via Epiq's Security Champions community and through direct interaction
- Report back to cybersecurity leadership on challenges, obstacles, and needs across the product security program that put our application security posture at risk
- Track and report metrics to measure the success of product security initiatives
- Support efforts of the Cloud Security Posture Management program to identify, assess, and report on security controls implementation across critical cloud assets
Qualifications & Requirements
- Education: Bachelor's degree in Cyber Security, Information Technology, or related field (Preferred)
- Experience: 5-7 years of experience in cyber security and application development
- Skills:
- Application security practices (SAST, SCA, DAST, Threat Modeling, etc.)
- DevOps, DevSecOps, CI/CD pipeline automation
- Cloud Native Application Deployment (IaC, Containers, Functions, etc.)
- Microsoft Azure and AWS security engineering
- OpenSAMM and/or BSIMM (preferred)
- Software Development/Programming
- Ethical and Secure AI Concepts (preferred)
- Clear and Persuasive Communication
- Ability to Organize and Prioritize Workloads
- Team Management
- Certifications: Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), or Application Security certifications preferred
- Physical Requirements: Ability to work in an office environment and perform tasks that may require sitting, standing, and using office equipment.
Click here to learn about Epiq's Benefits.
If you like wild growth and working with happy, enthusiastic over-achievers, you'll enjoy your career with us!
It is Epiq’s policy to comply with all applicable equal employment opportunity laws by making all employment decisions without unlawful regard or consideration of any individual’s race, religion, ethnicity, color, sex, sexual orientation, gender identity or expressions, transgender status, sexual and other reproductive health decisions, marital status, age, national origin, genetic information, ancestry, citizenship, physical or mental disability, veteran or family status or any other basis protected by applicable national, federal, state, provincial or local law. Epiq’s policy prohibits unlawful discrimination based on any of these impermissible bases, as well as any bases or grounds protected by applicable law in each jurisdiction. In addition Epiq will take affirmative action for minorities, women, covered veterans and individuals with disabilities. If you need assistance or an accommodation during the application process because of a disability, it is available upon request. Epiq is pleased to provide such assistance and no applicant will be penalized as a result of such a request. Pursuant to relevant law, where applicable, Epiq will consider for employment qualified applicants with arrest and conviction records.
Tags: Application security Automation AWS Azure BSIMM CI/CD CISM CISSP Cloud CSPM DAST DevOps DevSecOps Governance Product security SAST Strategy
Perks/benefits: Career development Health care Salary bonus Startup environment
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.