Security Engineer

hace 1 mes


Ciudad de México, Ciudad de México PepsiCo Deutschland GmbH A tiempo completo
Job Description

About the Role
PepsiCo Deutschland GmbH is seeking an experienced Application Security Engineer to join our team. As an Application Security Engineer, you will play a critical role in driving the integration of automated security tools into our CI/CD pipelines and ensuring continuous monitoring to identify and manage security risks.

Key Responsibilities

  1. Implementing and managing automated security tools within CI/CD pipelines, ensuring seamless integration and enhanced security posture.
  2. Integrating and operating a centralized findings management system to efficiently manage and track security vulnerabilities and remediation efforts.
  3. Defining and implementing strategies to configure automated security tools for optimal performance, establishing and monitoring KPIs to measure effectiveness and drive continuous improvement.
  4. Developing and maintaining greenfield automation solutions and full-stack applications to support and enhance application security.
  5. Tuning rule sets and detections for automated security tools to improve detection capabilities and reduce false positives.
  6. Providing expert guidance in triaging and remediating security vulnerabilities, and mentoring team members and engineering teams in understanding and addressing security issues.
  7. Fostering a collaborative environment that promotes knowledge sharing, and mentoring junior engineers to build a skilled security team.
  8. Continuously researching and presenting new concepts to improve the business's application security posture, staying up to date with the latest security trends and practices.
  9. Developing technical documentation such as system designs, architecture diagrams, data flows, and functional specifications.
  10. Contributing to the future state of cybersecurity by conducting technical assessments between the current and desired states across security tools and services.
  11. Developing program metrics to continuously measure progress and impact, and driving improvements.
  12. Collaborating with senior leadership and cross-functional teams, including DevOps, development teams, security operations, data & analytics, enterprise architecture, platform teams, and sector functions.
  13. Executing projects, objectives, and deliverables in alignment with the team's vision, mission, and goals.
  14. Engaging in knowledge transfer sessions, technical design reviews, security reviews, and business review meetings.

Requirements

  1. Deeply experienced in at least one programming language (Java, C#, Go) and scripting language (Python, Bash, PowerShell).
  2. Highly skilled in at least one database management system and query language (e.g., MSSQL, PostgreSQL).
  3. Strong experience in developing full-stack applications and rapid prototyping to support automated data collection, aggregation, and analysis.
  4. Skilled in integrating and managing automated security tools within CI/CD pipelines.
  5. Expertise in application security vulnerabilities and remediation techniques (e.g., OWASP Top Ten).
  6. Experience with application security testing tools (e.g., Synopsys, OpenText Fortify, Snyk, Semgrep).
  7. Familiarity with modern CI/CD tools and practices (e.g., Jenkins, Azure DevOps, GitHub Enterprise, Circle CI, Heroku).
  8. Experience with public cloud services (e.g., Azure, AWS, Alibaba).

Nice-to-Have

  1. Experience writing custom vulnerability detection patterns/rules.
  2. Experience implementing and managing Web Application Firewalls (e.g., Fortinet, Imperva, Cloudflare, Akamai, Azure WAF, AWS WAF).
  3. Experience with CMS security (e.g., WordPress, Drupal, Joomla, OpenText TeamSite, Concrete CMS).
  4. Familiarity with generative AI technologies.
  5. Information Security certifications (e.g., CISSP, OSCP, GPEN, GWAPT, GXPN, GSE).
  6. Experience with Centralized Findings Management Systems (e.g., Azure DevOps, Jira, ServiceNow VR/AVR, PlexTrac, DefectDojo, ThreatFix).
  7. Proficient in developing and monitoring metrics and KPIs to measure security effectiveness.

Soft Skills

  1. Demonstrated ability to innovate and drive continuous improvement.
  2. Ability to handle high-pressure situations with a calm and methodical approach.
  3. Strong organizational skills, with the ability to prioritize tasks and manage time effectively.
  4. Experience collaborating with globally dispersed teams to achieve unified outcomes.
  5. Strong decision-making skills, with the ability to weigh costs/benefits/trade-offs and find optimal resolutions.

  • Cloud Security Engineer

    hace 3 semanas


    Ciudad de México, Ciudad de México Solera A tiempo completo

    Job SummaryWe are seeking a skilled Cloud Security Engineer to join our team at Solera. As a Cloud Security Engineer, you will play a critical role in ensuring the security and integrity of our cloud-based systems and applications.Key ResponsibilitiesPentest APIs, Web Apps, Mobile Apps, and Web Services to identify vulnerabilities and weaknesses.Collaborate...


  • Ciudad de México, Ciudad de México Talan A tiempo completo

    Job Title: Cloud Security Solutions EngineerAbout the Role:We are seeking an experienced Cloud Security Solutions Engineer to join our team at Talan. As a key member of our Management Team, you will work closely with our clients to design and implement cutting-edge security solutions for their in-house security needs.Key Responsibilities:Administer and...


  • Ciudad de México, Ciudad de México Factorial HR A tiempo completo

    Job Title: DevSecOps EngineerJob Description:We're seeking a talented and experienced DevSecOps Engineer to join our Security Operations Team. As a key member of our team, you'll be responsible for safeguarding our systems and data.The Role:Develop and manage security tooling to ensure accurate threat detection and swift response in different...


  • Ciudad de México, Ciudad de México Gigamon A tiempo completo

    At Gigamon, our purpose is to protect the hybrid networks and data of large organizations. We are committed to delivering network-derived intelligence to cloud, security, and observability tools, eliminating security blind spots, optimizing network traffic, and reducing tool cost and complexity.Gigamon has served over 4,000 customers worldwide, including 80%...


  • Ciudad de México, Ciudad de México AmorServ A tiempo completo

    We are AmorServ, a forward-thinking organization that is revolutionizing the way we approach software development and security.As a Chief Security Automation Engineer at AmorServ, you will play a pivotal role in ensuring the integrity of our systems and applications by designing, implementing, and managing CI/CD pipelines with a strong focus on security.The...


  • Ciudad de México, Ciudad de México Baker Hughes Gruppe A tiempo completo

    Job Title: Sr Endpoint Security EngineerWe are seeking a highly skilled Sr Endpoint Security Engineer to join our team. The successful candidate will be responsible for implementing and maintaining endpoint security solutions to protect our systems and data.About the RoleImplement and maintain endpoint security solutions, including antivirus software and...


  • Ciudad de México, Ciudad de México Travel + Leisure Co A tiempo completo

    Network Security Services Engineer RoleTravel + Leisure Co. seeks a skilled Network Security Services Engineer to maintain the daily security and operation of our global enterprise data network. This position involves supporting the maintenance, implementation, and configuration of network and security infrastructure and associated services, including...


  • Ciudad de México, Ciudad de México Johnson Controls, Inc. A tiempo completo

    Job Summary:We are seeking a skilled Global Cyber Security Network Engineer to assist in the development of network cyber security standards and governance of network implementations. This role is part of a global team and reports to the Global Cyber Security Engineering Manager.Key Responsibilities:Provide governance and guidance to JCI's Network...


  • Ciudad de México, Ciudad de México Nearshore Cyber A tiempo completo

    This is a fantastic opportunity to take your cloud security career to the next level at Nearshore Cyber. We are seeking a highly skilled Cloud Security Engineer to join our team and help us design, implement, and maintain robust security measures for our cloud-based systems and infrastructure.The estimated annual salary for this position is...


  • Ciudad de México, Ciudad de México AmorServ A tiempo completo

    Job DescriptionWe are seeking a Senior Cloud Security Engineer to join our team at AmorServ.This role will be responsible for designing, implementing, and managing CI/CD pipelines with a focus on security at every stage. The ideal candidate will have experience with security tools and practices, as well as strong analytical and problem-solving...

  • Security Architect

    hace 1 mes


    Ciudad de México, Ciudad de México Lyft A tiempo completo

    At Lyft, our mission is to create a secure and trustworthy environment for our users. To achieve this, we need a skilled Security Engineer to join our Application Security Team.The right person will work closely with our teams to review designs, educate on best practices, and proactively research new attack vectors. They will also collaborate with teams to...

  • Security Engineer

    hace 1 mes


    Ciudad de México, Ciudad de México Udemy A tiempo completo

    About the RoleAs an Application Security Engineer at Udemy, you will be responsible for ensuring the security of our software development processes. You will collaborate closely with development teams to implement security practices that enable teams to build secure applications from the ground up.Your Key ResponsibilitiesCollaborate with development teams...

  • Network Security Engineer

    hace 3 semanas


    Ciudad de México, Ciudad de México Fortinet A tiempo completo

    About the Position">Fortinet is seeking a highly skilled Network Security Engineer to join our team in Mexico City. As a Network Security Engineer, you will be responsible for providing technical support and expertise to customers, ensuring they receive optimal service and satisfaction.Key Responsibilities">">Advanced troubleshooting of Fortigate...


  • Ciudad de México, Ciudad de México Svitla Systems A tiempo completo

    About the RoleWe are seeking a highly skilled Cloud Security Engineer to join our team responsible for building and maintaining a SaaS platform hosted on AWS/ECR/k8s.


  • Ciudad de México, Ciudad de México Nuvit Service A tiempo completo

    Job SummaryWe are seeking a highly skilled Senior SIEM Engineer to join our team at Nuvit Service. As a key member of our security team, you will play a critical role in onboarding log sources to Splunk Enterprise Security, ensuring the secure collection, storage, and correlation of event data across the enterprise.Key ResponsibilitiesCoordinate the...

  • Security Consultant

    hace 1 mes


    Ciudad de México, Ciudad de México Bishop Fox A tiempo completo

    About UsBishop Fox is the leading authority in offensive security, providing solutions to help clients protect their software and technologies.Our TeamWe're looking for talented professionals with a passion for hacking and information security to join our team of experts.ResponsibilitiesConduct web application penetration tests and hack networks to identify...


  • Ciudad de México, Ciudad de México Cisco Systems, Inc. A tiempo completo

    Technical Services Engineer - SecurityAbout the RoleCisco Systems, Inc. is seeking a highly skilled Technical Services Engineer to join our team. As a Technical Services Engineer, you will be responsible for providing technical support for Cisco security products to customers, partners, and internal teams.Key ResponsibilitiesProvide technical support for...


  • Ciudad de México, Ciudad de México Nuvit Service A tiempo completo

    Job SummaryThe Senior SIEM Engineer plays a critical role in onboarding log sources to Splunk Enterprise Security, ensuring the seamless ingestion, parsing, and correlation of security and audit log data. This position involves coordinating with security teams to develop, tune, and validate Use Cases and dashboards, while maintaining CIM compliance. The SIEM...


  • Ciudad de México, Ciudad de México Cyber Crime A tiempo completo

    About this roleWe are seeking a highly skilled Application Security Engineer to join our team at Cyber Crime. As a key member of our security team, you will be responsible for ensuring the security of our applications and systems.Key Responsibilities:Security Integration: Collaborate with our development teams to integrate security practices into all phases...

  • Cloud Security Architect

    hace 3 semanas


    Ciudad de México, Ciudad de México Nearshore Cyber A tiempo completo

    Job SummaryWe are seeking a highly skilled Cloud Security Architect to join our team at Nearshore Cyber. This is an exciting opportunity for an experienced professional to design and implement robust security measures for our cloud-based systems and infrastructure.About the RoleThe successful candidate will be responsible for ensuring the confidentiality,...