Share
As a Professional Services DevOps Senior Engineer in JFrog you will...
● Setup, design and build secure CI pipelines with Docker, NPM, Java, Pypi etc.. (Binary Repositories, Distribution to Devices and Continuous Build Tooling) incorporating security scanning and vulnerability management.
● Influence the features and roadmap of JFrog tools based on customer needs,with a focus on security enhancements.
● Keep current with the latest technology trends related to DevOps,DevSecOps and the landscape of CI/CD Technology and security
● Work closely with our customers and community to build solid relationshipsaddressing their security concerns within the DevOps pipeline.
What you bring on to the table...
● 7+ years experience with Continuous Integration tools: CI Server, Git, Artifactory, Jenkins, Maven, Docker, NPM with a strong understanding of security implications.
● Ability to build secure software delivery pipelines with Docker, npm, Java, Pypi etc.. with various DevOps tools such as Git, Binary repositories management, Binary scanning, and Continuous integration including experience with security tools and practices.
● Good understanding of infrastructure & operations - storage, network, computer, security, cloud (public, on-prem) with a strong emphasis on secure configurations and vulnerability management.
● Experience with Continuous Deployment and Delivery tools: Chef, Puppet, Ansible, Kubernetes and an understanding of secure deployment methodologies.
● Hands on experience in Linux - Mandatory
● Hands on experience with cloud infrastructure - AWS / Azure / GCP - Mandatory, including knowledge of cloud security best practices and services.
● Experience with server side software on-premise and in the cloud including security architecture and secure coding practices.
● Experience with Software Architecture design and product development with an understanding of security by design principles.
● Uncompromising will to learn and stay current with emerging security threats and technologies.
● Open Source state-of-mind including awareness of open-source security vulnerabilities.
● Experience with security scanning tools (SAST, DAST, SCA) - Mandatory
● Familiarity with security compliance frameworks (e.g., NIST, ISO 27001) - A plus
● Understanding of threat modeling and risk assessment - A plus
Here’s what our employees have to say about working at JFrog:
These jobs might be a good fit