About this role
Description:
Client is looking for a highly motivated Sr. Software Engineer on a contract basis to contribute to strategic initiatives in supply chain security and cloud-native security. This role requires technical expertise in the implementation and continuous improvement of security controls across infrastructure supply chain, containerized environments, and security automation (including AI/ML/LLM solutions).
Our Ideal Candidate Will Have:
• Strong practical experience in building and operating security automation, with development expertise in languages like Golang (Go).
• Deep, proven experience with container security, including designing, deploying hardened container images, and securing Kubernetes clusters.
• Experience with Infrastructure as Code (IaC) tools, especially Terraform, for provisioning security controls.
• Expertise in using GitHub, and CI/CD systems (GitHub Actions, Jenkins) from an architectural and engineering perspective.
• Expert-level proficiency in Software Composition Analysis (SCA) and hands-on experience in the practical remediation of third-party and open-source dependency vulnerabilities at scale.
• Direct experience or strong conceptual understanding of applying AI/ML, Large Language Models (LLMs), or MCP techniques to security challenges (e.g., automated vulnerability fixing, intelligent alert grouping).
• Expert familiarity with cloud platforms (AWS, Azure) and their security services, with a focus on container orchestration.
• Experience with Artifactory/JFrog.
• Advanced knowledge of Application security (OWASP Top 10).
• Experience with supply chain security frameworks (e.g., SLSA).