Job
Description
Perforce is a community of collaborative experts, problem solvers, and possibility seekers who believe work should be both challenging and fun. We are proud to inspire creativity, foster belonging, support collaboration, and encourage wellness. At Perforce, you'll work with and learn from some of the best and brightest in business. Before you know it, you'll be in the middle of a rewarding career at a company headed in one direction: upward. With a global footprint spanning more than 80 countries and including over 75% of the Fortune 100, Perforce Software, Inc. is trusted by the world's leading brands to deliver solutions for the toughest challenges. The best run DevOps teams in the world choose Perforce. Position Summary: As a Sr. SecOps Engineer at Perforce, you will be responsible for designing and optimizing the security operations for Perforce's SaaS product portfolio. Your key role involves driving the design and implementation of automated tools and technologies to ensure the security, reliability, and high availability of production and CI/CD environments, applications, and infrastructure. You will lead efforts to establish SecOps best practices across the organization, ensuring adherence to the highest security standards in all environments. Responsibilities: - Develop and implement vulnerability management practices using tools like Qualys, Lacework, Prisma, and Mend (SAST and SCA). - Manage operations/cadence in Vulnerability management, SIEM, and CSPM. - Lead efforts to ensure security incident and event management (SIEM) from code repositories to operating systems, VMs, databases, networks, and applications. - Automate security processes and workflows across CI/CD pipelines, leveraging infrastructure-as-code (IaC) and security automation tools to improve efficiency. - Drive the implementation of security hardening best practices across the infrastructure layers. - Implement and maintain secret scanning tools across CI/CD pipelines to detect and mitigate the exposure of sensitive data. - Advocate and implement security best practices in agile SDLC methodologies and DevSecOps workflows. - Collaborate closely with Developer and DevOps teams to embed security at every stage of development and deployment processes. - Lead and maintain security sprint boards, monitor tasks, and manage risks via Jira and other collaboration tools. - Schedule and run monthly SecOps cadence meetings to report on the organization's security posture, discuss ongoing projects, and address security incidents and mitigations. - Prepare and present comprehensive documentation and reports on security incidents, vulnerability assessments, and audit findings to stakeholders. - Assist with incident response planning, including the triage, investigation, and remediation of security incidents. - Stay updated on the latest security threats, tools, and methodologies to continuously improve security frameworks and policies. Requirements: - Bachelor's or master's degree in computer science, Information Security, Engineering, or a related field. - 7+ years of experience in cybersecurity, security operations, or a similar role in a SaaS/cloud environment. - Strong hands-on experience with security automation tools, vulnerability management tools, and infrastructure-as-code practices. - Proficiency in automating vulnerability scanning, patch management, and compliance monitoring processes across hybrid cloud environments. - Strong understanding of Cloud Security Posture Management (CSPM) tools and practices. - Experience with SIEM tools, secret management, and scanning in CI/CD environments. - Familiarity with hardening techniques across various platforms and driving security sprint boards. - Excellent presentation, communication, and documentation skills. - Knowledge of infrastructure-as-code frameworks and experience in automating security configurations. - Strong problem-solving skills and the ability to work under pressure in a fast-paced environment. - Continuous desire to learn and stay updated on the latest cybersecurity practices and threats. Join our team at Perforce! If you are passionate about technology, want to work with talented individuals globally, and make an impact, apply today!,