DevSecOps Engineer

Mexico City - Paseo

Marsh McLennan

Marsh McLennan is the world’s leading professional services firm in risk, strategy and people. We bring together experts from across our four global businesses — Marsh, Guy Carpenter, Mercer and Oliver Wyman — to help make organizations more...

View all jobs at Marsh McLennan

Apply now Apply later

Company:

Marsh

Description:

DevSecOps Engineer

We are seeking a DevSecOps Engineer to join our team at Marsh. This role will be based in Mexico City. This is a hybrid role that has a requirement of working at least three days a week in the office. As a DevSecops Engineer at Marsh, you will create and document Secure Infrastructure Solutions and participate in project teams to include designing connectivity and Software Solutions Aligning Security, cost, performance, and customer requirements to reach viable secure solutions.

We will count on you to:

  • Lead initiatives related to DevSecOps and Secure-SDLC.
  • Enhance the company’s Secure Software development Lifecycle (Secure-SDLC) which in turn will reflect the company’s Application Development Security Policy,
  • Select and standardize application security tools. This includes vendor/tool assessments and full POC,
  • Integrate Secure-SDLC requirements and other security policy/requirements into the DevSecOps processes,
  • Define and enhance application security requirements and standards which must be designed for agile development methods leveraging traditional application architectures as well as cloud architectures and container workloads. 

What you need to have:

  • 3 years+ DevSecOps and Secure-SDLC work experience
  • CISSP, CSSLP, cloud security, DevSecOps automation, or similar is required
  • Experience in designing Secure-SDLC processes and relevant tooling to support the processes
  • Experience in software/application analysis tools like SAST, DAST, SCA, threat modeling, supply-chain etc.
  • Technical hands-on experience in automating and integrating security scan and analysis tools into the DevSecOps pipeline.
  • Experience in one programming languages
  • Advanced Level of English is a Must

What makes you stand out:

  • Identify application security requirements and brainstorm solutions factoring in industry best practices
  • Assess the tooling and remediation of threats and vulnerabilities within our software/applications, and the hosting environment 

Why join our team:

  • We help you be your best through professional development opportunities, interesting work and supportive leaders.
  • We foster a vibrant and inclusive culture where you can work with talented colleagues to create new solutions and have impact for colleagues, clients and communities.
  • Our scale enables us to provide a range of career opportunities, as well as benefits and rewards to enhance your well-being.

Marsh McLennan (NYSE: MMC) is a global leader in risk, strategy and people, advising clients in 130 countries across four businesses: Marsh, Guy Carpenter, Mercer and Oliver Wyman. With annual revenue of $24 billion and more than 90,000 colleagues, Marsh McLennan helps build the confidence to thrive through the power of perspective. For more information, visit marshmclennan.com, or follow on LinkedIn and X.

Marsh McLennan is committed to creating a diverse, inclusive and flexible work environment. We aim to attract and retain the best people and embrace diversity of age, background, disability, ethnic origin, family duties, gender orientation or expression, marital status, nationality, parental status, personal or social status, political affiliation, race, religion and beliefs, sex/gender, sexual orientation or expression, skin color, or any other characteristic protected by applicable law.

Marsh McLennan is committed to hybrid work, which includes the flexibility of working remotely and the collaboration, connections and professional development benefits of working together in the office. All Marsh McLennan colleagues are expected to be in their local office or working onsite with clients at least three days per week. Office-based teams will identify at least one “anchor day” per week on which their full team will be together in person.

Apply now Apply later

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Job stats:  1  0  0

Tags: Agile Application security Automation CISSP Cloud CSSLP DAST DevSecOps SAST SDLC Strategy Vulnerabilities

Perks/benefits: Career development Flex hours

Regions: Remote/Anywhere North America
Country: Mexico

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.