DevSecOps Engineer

October 2, 2023

Apply for this job

Email *

Job Description

<p><strong>About Five9s</strong></p><p><br></p><p>Traditional&nbsp;Managed&nbsp;Security Service Providers (MSSPs) have proven&nbsp;largely&nbsp;ineffective at detecting&nbsp;and preventing&nbsp;advanced&nbsp;cyber-attacks, not mentionning&nbsp;the cost&nbsp;of security&nbsp;tools&nbsp;licenses&nbsp;and services.</p><p>At Five Nines&nbsp;we&nbsp;first think&nbsp;security&nbsp;but also&nbsp;usability, best practice, efficiency&nbsp;and Cloud nativen&nbsp;with&nbsp;a focus on avoiding&nbsp;false positives.</p><p>Based&nbsp;on the way&nbsp;our&nbsp;NextGenSoc&nbsp;detects&nbsp;and responds&nbsp;to attacks, our&nbsp;unique approach&nbsp;gives&nbsp;the highest&nbsp;level&nbsp;of detection&nbsp;and response&nbsp;capability&nbsp;most&nbsp;organizations&nbsp;struggle to obtain&nbsp;beyond&nbsp;prevention. We&nbsp;know that&nbsp;advanced&nbsp;attackers&nbsp;take&nbsp;advantage&nbsp;of the rules&nbsp;used&nbsp;by most&nbsp;prevention&nbsp;solutions to easily&nbsp;avoid&nbsp;detection, so&nbsp;that&nbsp;our&nbsp;solution is&nbsp;devoid&nbsp;of rules&nbsp;and focuses&nbsp;only&nbsp;and the intersection of (predictive) intelligence and behavior&nbsp;anomaly&nbsp;(something&nbsp;different&nbsp;from&nbsp;the norm) to allow&nbsp;our&nbsp;cyber experts to quickly&nbsp;detect&nbsp;and respond&nbsp;to threats.</p><p><br></p><p><strong>About the role </strong></p><p><span>Five9s is&nbsp;expanding. To achieve&nbsp;our&nbsp;ambition, we&nbsp;are offering&nbsp;you&nbsp;the opportunity&nbsp;to join&nbsp;us as a&nbsp;DevSecOps engineer.</span></p><p><span>From programming to SIEM or EDR deployments going&nbsp;through&nbsp;cloud security&nbsp;architecture and DevOps methodologies, you’ll&nbsp;work&nbsp;with&nbsp;a bunch&nbsp;of experts and seasoned&nbsp;security&nbsp;professionals, in order to contribute&nbsp;to the delivery&nbsp;of our&nbsp;missions worldwide.</span></p><p><br></p><p><strong>Your&nbsp;missions</strong></p><p><span>In a transversal team, you&nbsp;report to the Chief Technical&nbsp;Officer&nbsp;(CTO) &amp; work both with the DevSecOps &amp; SOC teams.</span></p><p><span>You work mainly on cyberattack&nbsp;scenarios definition, workflows implementation on our orchestrator, and cyberattack qualification, triage, and remediation.</span></p><p><span>You might also be required to detail the technical peculiarities of our services portfolio to our prospects.</span></p><p><span>In a team of enthusiastic&nbsp;people, you&nbsp;are expected&nbsp;to bring&nbsp;your&nbsp;own&nbsp;experience&nbsp;as well&nbsp;as you’ll&nbsp;benefit&nbsp;from&nbsp;the views&nbsp;of others.</span></p><p><br></p><p><span>Work in the DevOps team:</span></p><p>·&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;<span>Follow an agile methology</span></p><p><strong>·&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;</strong><span>Raise issues, handle clients requests, act on your tasks in a rigorous &amp; reliable way</span></p><p><strong>·&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;</strong><span>Improve Five9s’ platform maturity regarding best practices</span></p><p><strong>·&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;</strong><span>[Optional] Contribute to programming projects on our orchestrator</span></p><p><span>Contribute to Five9s’ internal cybersecurity</span></p><p><strong>·&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;</strong><span>Comply with ISO 27001 requirements, and maintain a tightly secured environment</span></p><p><strong>·&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;</strong><span>Strengthen the integration of security into the development lifecycle</span></p><p><span>Build on existing Five9s’ services offer</span></p><p><strong>·&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;</strong><span>Benchmark new frameworks</span></p><p><strong>·&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;</strong><span>Produce technical specifications and associated operating procedures</span></p><p><strong>·&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;</strong><span>You will be encouraged to work on R&amp;D projects and submit papers on an annual basis</span></p><p><br></p><p><strong>Minimum requirements </strong></p><ul><li><span>Excellent mindset. Self-righteousness&nbsp;&amp; individualism&nbsp;are bannished&nbsp;at Five9s, whereas&nbsp;helfulness&nbsp;&amp; humility&nbsp;are favoured.</span></li><li><span>Highest&nbsp;motivation:&nbsp;you’ll&nbsp;be&nbsp;expected&nbsp;to give&nbsp;the best of yourself&nbsp;and work&nbsp;accordingly</span></li></ul><p><br></p><p><strong>Preferred&nbsp;requirements</strong></p><ul><li><span>Proven&nbsp;experience&nbsp;in operational&nbsp;security. Ideally, you&nbsp;have worked&nbsp;in a&nbsp;SOC or a CERT/CSIRT</span></li><li><span>Good knowledge&nbsp;of automation scripting&nbsp;(for instance with&nbsp;Powershell&nbsp;or Bash), and proven&nbsp;experience&nbsp;in at least a programming&nbsp;language&nbsp;(C++, Python, Go, Java, …)</span></li></ul><p><span>This role&nbsp;is&nbsp;made for you&nbsp;if, you&nbsp;have/are :</span></p><ul><li><span>A taste for sharing, leading, by making&nbsp;her/his&nbsp;colleagues&nbsp;aware&nbsp;of good security&nbsp;practices and by supporting&nbsp;her/his&nbsp;proposals&nbsp;with&nbsp;good examples</span></li><li><span>You know how to lead projects&nbsp;and also&nbsp;qualify, prioritize&nbsp;issues, and handle&nbsp;them&nbsp;in a diplomatic, pragmatic&nbsp;way.</span></li><li><span>Inventiveness&nbsp;and demanding, you&nbsp;like to look for security&nbsp;flaws&nbsp;in software. You may&nbsp;have hacked stuff :)</span></li></ul><p><br></p><p><strong>Work-life at Five9s</strong></p><ul><li><span>A stimulating&nbsp;workplace, where&nbsp;each&nbsp;person&nbsp;brings&nbsp;ideas&nbsp;and innovates.</span></li><li><span>Trainings:&nbsp;Contrary&nbsp;to numerous&nbsp;firms, this&nbsp;is&nbsp;not a joke, we’ll&nbsp;get&nbsp;you&nbsp;certified&nbsp;on best-of-breed&nbsp;security&nbsp;technologies, like CrowdStrike&nbsp;or Splunk.</span></li><li><span>Our goal is&nbsp;to ensure&nbsp;your&nbsp;personal&nbsp;and professional&nbsp;development. We&nbsp;make&nbsp;available&nbsp;benefits&nbsp;and perk&nbsp;to make&nbsp;your&nbsp;life easier, for instance nursery or remote&nbsp;working.</span></li></ul>