Cybersecurity Engineer (Devsecops)
Current• Configured SonarQube as a Static Application Security Testing (SAST), enhancing the ability to identify and remediate code vulnerabilities efficiently.• Conducted comprehensive vulnerability assessments using tools such as Nessus to identify and prioritize risks across the infrastructure, applications, and network components.• Managed user access controls through RBAC, applying least privilege principles to enhance security posture across development and production environments•… Show more • Configured SonarQube as a Static Application Security Testing (SAST), enhancing the ability to identify and remediate code vulnerabilities efficiently.• Conducted comprehensive vulnerability assessments using tools such as Nessus to identify and prioritize risks across the infrastructure, applications, and network components.• Managed user access controls through RBAC, applying least privilege principles to enhance security posture across development and production environments• Collaborated with IT teams to design and implement security measures for infrastructure components, including firewalls, IDS/IPS, and VPN solutions.• Conducted regular security training for development and operations teams to promote awareness of security best practices and ensure a culture of security. Show less