Application Security developing docker containers
BILL RATE: up to open/hour
LOCATION: DALLAS, TX
Hybrid 3 days onsite
DURATION: 6 months or longer
SELLING POINT: develop custom docker containers to pull results from vulnerability management tools using custom rules application security testing leverage AIML for automation false positives SLAS of application vulnerabilities programming python json java bash apis docker
- WORK TO BE PERFORMED:
Develop custom Docker containers to pull results from vulnerability management tools, verify results using custom rules, and print results into report(s)
o Application Security Testing Build framework for continuous third-party vulnerability assessment and alerting
o Automation - Leveraging AI/ML for automation. Leverage APIs and Webhooks to automatically pull metadata, CVEs and exploit data from tools
o Vulnerability Management Cataloging and reviewing for false positives and mitigations, threat and risk assessments, and lifecycle management through remediation according to SLAs of application vulnerabilities.
o CI/CD pipeline Develop scripts to build and integrate Security tools into the Jenkins pipeline and assist teams with interpreting results from pipeline vulnerability verification reports to facilitate vulnerability remediation.
o Documentation Perform administrative and regulatory control activities including development of process and procedural documentation and gathering evidence for audits.
EXPERIENCE REQUIRED:
o Programming knowledge and coding experience, particularly Python, JSON, JAVA, and Bash
o Experience working with APIs
o Experiencing parsing (HTML, XML, etc.)
o Proficient in Github and Jenkins
o Docker experience in automating deployments and testing