Participate in expanding and maturing the SailPoint Secure Software Development Lifecycle (S-SDLC) program.Perform proactive scanning and auditing during early SSDLC phases and reactive scanning in later phases; triage and communicate findings to development teams.Configure, maintain, and tune pipeline and traditional product / application security technologies.Reduce false positives through repeatable suppression methods to ensure adoption of security tools.Assist tech leads and developers with remediation strategies for security issues.Support automation and tooling of security technologies for development teams.Develop custom software quality tests and Security-as-Code solutions.Review application designs for security defects, perform threat modeling, and identify remediation solutions.Provide training, guidance, and assistance to development teams early in the SSDLC.Cultivate security ownership among product teams and integrate new security services.Manage product / application vulnerabilities consistently, prioritize remediation, and validate fixes.Provide input to security risk impact assessments.Collaborate with engineering to sustain security processes and automate pipeline activities.Participate in the Product Security Incident Response Team (PSIRT) as needed.Skills Required
Automation, Testing Tools, Defect Tracking, Security Services, Sailpoint, Customer Service