I will build a secure devsecops cicd pipeline

France

I speak English, French

Senior DevSecOps Cloud Engineer

DevSecOps and Cloud Security Engineer specializing in secure cloud architecture, application security, and end-to-end automation. Experienced in building and securing CI/CD pipelines, automating secur...
About this Gig

Stop finding vulnerabilities at the end of your cycle. I am a Senior DevSecOps Engineer who helps teams Shift Left by automating security directly into the CI/CD pipeline.


I have a proven track record of reducing critical vulnerabilities by 40% and build times by 50%.


What I will integrate:


  • SCA (Dependency Scanning): Identify vulnerable libraries using Snyk or Trivy or any tool you have.
  • SAST (Static Application Security Testing): Automated code scanning with Snyk or any tool you have.
  • DAST (Dynamic Analysis): Web security testing via Burp Enterprise or Escape or any existing tool you have.
  • Container Security: Secure image builds using distroless images and automated scanning with Trivy/Aquasec or Snyk
  • IaC Scanning: Checking Terraform and Helm for misconfigurations using checkov

Tools:

Docker

GitLab

Jenkins

GitHub

Frameworks:

Terraform

Pulumi

Ansible

Cloud Provider:

Amazon Web Services

Microsoft Azure

Programming language:

Bash

C

Java

JavaScript

Kotlin

Perl

PHP

Python

Expertise:

Installation

Migration

Configuration