I will build a secure devsecops cicd pipeline

Einige Informationen werden in englischer Sprache angezeigt.

Frankreich

Ich spreche Französisch, Englisch

Senior DevSecOps Cloud Engineer

DevSecOps and Cloud Security Engineer specializing in secure cloud architecture, application security, and end-to-end automation. Experienced in building and securing CI/CD pipelines, automating secur...
Über diesen Service

Stop finding vulnerabilities at the end of your cycle. I am a Senior DevSecOps Engineer who helps teams Shift Left by automating security directly into the CI/CD pipeline.


I have a proven track record of reducing critical vulnerabilities by 40% and build times by 50%.


What I will integrate:


  • SCA (Dependency Scanning): Identify vulnerable libraries using Snyk or Trivy or any tool you have.
  • SAST (Static Application Security Testing): Automated code scanning with Snyk or any tool you have.
  • DAST (Dynamic Analysis): Web security testing via Burp Enterprise or Escape or any existing tool you have.
  • Container Security: Secure image builds using distroless images and automated scanning with Trivy/Aquasec or Snyk
  • IaC Scanning: Checking Terraform and Helm for misconfigurations using checkov

Tools:

Docker

GitLab

Jenkins

GitHub

Frameworks:

Terraform

Pulumi

Ansible

Cloud-Provider:

Amazon Web Services

microsoft azure

Programmiersprache:

Bash

C

Java

JavaScript

Kotlin

Perl

PHP

Python

Ruby

Expertise:

Installation

Migration

Konfiguration