DevSecOps Security Specialist
Location Petaling Jaya, Selangor Date posted March 24, 2025 Job ID 18882- DevSecOps Integration: Collaborate with software development and product teams to embed security within our DevOps processes, ensuring the secure deployment of applications and infrastructure.
- Secure Solutions Design: Architect scalable security solutions that align with DevSecOps principles and industry standards/regulations.
- Policy & Compliance: Develop and maintain security policies, standards, and procedures; ensure compliance with relevant regulatory requirements (e.g., OWASP Top 10, CWE Top 25, SANS 25).
- Maturity Assessment: Conduct DevOps/DevSecOps maturity assessments to gauge and improve processes within development teams.
- Security Testing & Tooling: Implement and manage security testing tools (e.g., SAST, SCA, DAST, & IAST platforms), including vulnerability scanning, code analysis, and penetration testing.
- Collaboration: Work cross-functionally to integrate security measures throughout the software development lifecycle.
- Risk Awareness: Stay current on emerging threats, trends, and security technologies; communicate risks and issues to senior management.
- Thought Leadership: Serve as a subject matter expert and advocate for secure coding and application security best practices.
- Technical Support: Automate security checks in Azure DevOps/Jenkins/GitHub Actions; help developer teams understand and fix vulnerabilities.
- Education: Bachelor’s degree in Computer Science, Information Systems, or a related field.
- Experience: 5+ years in software development and application security architecture/development.
- Strong understanding of DevOps tools and processes, network security, cryptography, application security, and cloud security.
- Solid background in web application architecture, design, and development (including embedded systems is a plus).
- Familiarity with industry compliance frameworks (e.g., GDPR, OWASP Top 10, CWE Top 25, SANS 25, ISO27001, IEC62443).
- Practical experience with Git, Azure DevOps, Visual Studio/VS Code, Eclipse, or similar.
- Experience with Coverity(SAST), BlackDuck SCA, BlackDuck Binary Analysis (BDBA), and CodeDX (SRM) is a plus.
- Excellent analytical and problem-solving abilities.
- Strong communication and interpersonal skills for effective collaboration with internal stakeholders and external vendors.
- Industry certifications (e.g., CISSP, CISM, CSSLP, CEH) are a plus.
- Competitive salary and comprehensive benefits package.
- Opportunities for professional growth and development in a global enterprise environment.
Get to Know METTLER TOLEDO
Take a look at a “day in the life” of a METTLER TOLEDO employee. No matter where you work in this company, the team atmosphere comes through. METTLER TOLEDO may be precisely where you belong.
-
- Cloud Security Engineer Petaling Jaya, Malaysia 02/07/2025
- Business Analyst - Workday HCM Petaling Jaya, Malaysia 01/13/2025
- Technical Writer Petaling Jaya, Malaysia 01/03/2025
- Senior Technical Writer (Manager) Petaling Jaya, Malaysia 11/25/2024
- IT Vendor Contract Specialist Petaling Jaya, Malaysia 08/27/2024
-
Saved Jobs
Let’s Connect
Join our Talent Community and receive personalized updates about our opportunities.
We are an equal opportunity employer and value diversity at our company. We give consideration for employment without regard to race, color, religion, sex, age, national origin, disability, sexual orientation, gender identity, genetic information, protected veteran status, or any other protected classification. Learn your EEO rights as an applicant under the law.
METTLER TOLEDO endeavors to make www.mt.com accessible to any and all users. If you would like to contact us regarding the accessibility of our website or need assistance completing the application process, please contact us at Contact Us EEO@mt.com.