Description : Business Initiative/Purpose: (Goal, Business Impact, Accomplishments from the work) Coordination and consulting with development teams, maintaining scanning schedules and monitoring scan failures. Role Responsibilities: (what they will be doing) Deploy and configure container scanning tools to ensure secure containerized environments.
Numbers & Facts
Location
Atlanta, GA
Description
Description: Business Initiative/Purpose: (Goal, Business Impact, Accomplishments from the work)
Coordination and consulting with development teams, maintaining scanning schedules and monitoring scan failures.
Bachelor Degree: (Required, Preferred or Not Required)
Preferred.
Role Responsibilities: (what they will be doing)
Deploy and configure container scanning tools to ensure secure containerized environments.
Analyze vulnerabilities identified through container scans, prioritizing remediation based on risk.
Develop and maintain custom scripts to automate security processes and enhance scanning capabilities.
Consult with development teams to assist with remediation strategies.
Document findings, create actionable reports, and communicate technical details effectively to stakeholders.
Must Have Skills/Prior Experiences: (Vendor should not submit any candidate that does not have these skills/prior experience.)
Hands-on experience with container security and deployment of scanning tools (e.g., Wiz, Prisma, Aqua Security).
Proficiency in scripting languages (Python, Bash, or PowerShell) for automation and tool integration.
Deep understanding of secure software development lifecycle (SDLC) and common vulnerabilities (OWASP Top 10).
Ability to troubleshoot complex scanning issues and optimize configurations for accuracy and performance.
Strong analytical skills for vulnerability triage and risk prioritization.
Excellent communication skills for consulting with development teams and explaining technical findings.
Plus/Nice to Have Skills/Prior Experiences: (Hiring Manager DOES NOT require these skills/ prior experience. However candidates with any of these will be looked at first.)
Experience integrating security tools into CI/CD pipelines.
Familiarity with cloud-native security (AWS, Azure, GCP) and container orchestration (Kubernetes).
Exposure to DevSecOps practices and security automation frameworks.
Relevant certifications such as OSWE, GWAPT, or CSSLP.
EEO
“Mindlance is an Equal Opportunity Employer and does not discriminate in employment on the basis of – Minority/Gender/Disability/Religion/LGBTQI/Age/Veterans.”