Current jobs related to DevSecOps Analyst - Cedar Falls - Veridian Credit Union


  • Falls Church, Virginia, United States DirectViz Solutions, LLC Full time

    Job Title: ServiceNow Platform AdministratorDirectViz Solutions, LLC is seeking a highly skilled ServiceNow Platform Administrator to join our team. As a ServiceNow Platform Administrator, you will be responsible for configuring, maintaining, and supporting our ServiceNow platform with a focus on security, compliance, and automation.Key...


  • Wichita Falls, United States Patterned Learning AI Full time

    Job Description Application Security Analyst - hybrid Job, 1+ Year Experience Annual Income: $56K - $66K A valid work permit is necessary in the US/Canada About us: Patterned Learning is a platform that aims to help developers code faster and more efficiently. It offers features such as collaborative coding, real-time multiplayer editing, and the ability...


  • Falls Church, United States Ohm Systems Full time

    Job DescriptionJob DescriptionSummary: A seasoned software engineer with over 13 years of experience is responsible for designing, implementing, and managing mobile applications for iOS and Android. This role involves leading development teams, ensuring the highest quality standards, and working closely with stakeholders on all aspects of software design,...

  • Test Lead

    4 days ago


    Falls Church, United States West 4th Strategy, LLC Full time

    Test LeadROLEWe need a Test Lead to support the Defense Health Agency (DHA) under a contract focused on delivering Test & Evaluation (T&E) services for IT systems and automation processes. The DHA is responsible for providing medical services and support to military personnel and their families, ensuring the readiness of the U.S. military medical force. The...

DevSecOps Analyst

3 months ago


Cedar Falls, United States Veridian Credit Union Full time
Job DescriptionJob Description

This is a hybrid position that requires individual to work 2 days a week from one of our locations in North East IA, Central IA, or Omaha, NE.

WANT TO BE A PART OF AN AWARD WINNING TEAM, APPLY TODAY

Take a look at all our great benefits here

SUMMARY

The DevSecOps Analyst plays a crucial role within the Web Development team, overseeing the maintenance of both internal and external websites for the credit union. The DevSecOps Analyst will seamlessly incorporate security measures throughout the software development and deployment processes, effectively connecting development, operations, and security teams.

ESSENTIAL FUNCTIONS
  • Collaborate with Web Development and IT Security to implement effective solutions for identified vulnerabilities, applying industry standard security measures and coding techniques to remediate issues promptly and efficiently.
  • Create and maintain comprehensive documentation detailing application architecture, dependencies, data flows, security protocols, and best practices.
  • Serves as the representative for the Web Development department during all audit procedures.
  • Responsible for defining and implementing the build, deployment, and monitoring standards for the web development applications throughout the credit union.
  • Be an active participant of the development team to deliver end-to-end automation of deployment, monitoring, and infrastructure management.
  • Build and configure delivery environments supporting CI/CD tools using an Agile delivery methodology.
  • Work closely with the development team to create an automated continuous integration (CI) and continuous delivery (CD) system.
  • Develop, document, and implement CI/CD strategy.
  • Monitor and support all installed systems and infrastructure from a web development perspective.
  • Work together with vendors and other IT personnel for problem resolution.
  • Evaluate application performance, identify potential bottlenecks, develop solutions, and implement them with the help of the web development team.
  • Maintain and oversee code repositories, code branching, and repository merging.
  • Ensure developers are following all code and security standards by reviewing commits, making suggestions, and verifying code is up to standards and secure prior to going to production.
  • Lead and execute change management procedures, ensuring seamless transitions and organizational readiness for evolving processes, technologies, and strategies.
  • Participate in hands on development to assist the team as needed.
  • Stay up to date on new security threats and industry trends, allowing the web development team to be proactive in combating fraud and security threats.
  • Implement yearly security training for all developers on the team.
  • On call availability required for system support as needed (includes nights and weekends).
KEY ATTRIBUTES
  • Oral and written communication skills.
  • Member service focus.
  • Attention to detail and accuracy.
  • Positive attitude that supports a team environment.
  • Dependable and punctual; flexible during peak times.
  • High level of confidentiality.
  • Organizational skills.
  • Self-motivated; ability to work without close supervision.
  • Problem solving; analysis.
PHYSICAL DEMANDS

The physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this job:

  • Occasionally lift and/or move items over 10 pounds.
  • Remain sedentary (seated) for extended periods of time.
WORKING CONDITIONS

This job operates in a professional office environment and routinely uses standard office equipment.

TRAVEL

Limited travel expected.

REQUIRED EDUCATION AND EXPERIENCE
  • Bachelor's Degree in related field or equivalent combination of education, training, and experience of 8+ years.
  • 5+ years of Web Development experience, preferably in a team environment.
  • 5+ years of experience with the following: ASP.NET, C#NET, VB.NET, MVC, MVVM pattern, Razor syntax, HTML5, CSS3, jQuery, JavaScript, Bootstrap, SEO and WCAG principles.
  • 5+ years of experience with web services and API integrations.
  • 5+ years of experience with OWASP security principles.
  • 1+ years of experience with SAST and DAST security testing methodologies.
  • 3+ years of experience with physical database design and database schemas that represent and support business processes (SQL/MySQL).
PREFERRED EDUCATION AND EXPERIENCE
  • Experience in managing and defining security in the software development lifecycle (SDLC).
  • Experience with secure development, coding, and engineering practices.
  • Experience with fully automating CI/CD pipelines end-to-end, from commits to production.
  • Knowledge of conducting security checks (static and dynamic code analysis, vulnerability analysis in applications and penetration tests).
  • Knowledge of securing web applications and APIs against common vulnerabilities.
OTHER DUTIES

Veridian Credit Union is a PCI compliant financial institution to ensure the security of member information. As such, all employees are expected to ensure security measures are in place and adhered to regarding PCI and other highly secure data compliance requirements.

Please note this job description is not designed to cover or contain a comprehensive listing of activities, duties, or responsibilities that are required of the employee for this job. Duties, responsibilities, and activities may change at any time with or without notice.

ABOUT VERIDIAN

Veridian Credit Union provides equal employment opportunities to all employees and applicants for employment without regard to age, race, creed, color, sex, pregnancy, sexual orientation, gender identity, military service, national origin, religion, physical or mental disability, genetic information, or any other classifications protected by applicable federal, state or local laws.