Dev Technology - Tampa, FL
posted 5 months ago
Dev Technology Group is seeking a Lead Security Developer (Java) to play a pivotal role in implementing security solutions across all layers of our infrastructure, with a primary focus on the application layer and the interactions between systems. The ideal candidate will possess a strong background in software development and security architecture, demonstrating the ability to work both independently and collaboratively with team members. This position offers a unique opportunity to contribute to mission-critical systems that deliver significant value to end users and customers alike. In this role, you will be responsible for creating, designing, developing, and implementing robust security solutions throughout the software development lifecycle. This includes ensuring secure coding practices and data protection measures are in place. You will develop security architecture frameworks and policies specifically tailored for a microservices-based environment on AWS, and propagate these solutions across multiple development teams and various applications with differing architectural profiles. Your responsibilities will also include reviewing code scan results from multiple tools such as Anchore, WebInspect, and DBProtect, collaborating with Security Compliance staff to optimize scans. You will develop and maintain custom tools to integrate code scanning tool outputs with JIRA, implement source control integrations, and set up pipeline jobs to provide early security feedback, identifying gaps in secure coding practices. Conducting vulnerability assessments and penetration testing will be essential to identify and mitigate potential security vulnerabilities, while utilizing ethical hacking techniques to proactively address security issues within applications and infrastructure. As an advocate for security best practices, you will provide internal training and development support, implement security monitoring and alerting systems to detect and respond to security incidents in real-time, and ensure that security protocols are adhered to across the organization.