I will integrate devsecops using sonarqube and zap

Jordan

I speak English, Arabic

Cybersecurity Specialist, Penetration Testing, SIEM and Infrastructure Security

Cybersecurity engineer and PNPT-certified penetration tester specializing in real-world attack simulation and enterprise security hardening. I help companies identify critical vulnerabilities across n...
About this Gig

I will integrate security into your CI/CD pipeline to detect vulnerabilities before deployment.

This service goes beyond basic tool setup. I configure security testing in a way that produces actionable results and fits your development workflow.

What I implement:

  • Static analysis (SonarQube)
  • Dynamic testing (OWASP ZAP)
  • Automated security scans in CI/CD
  • Security checks aligned with your pipeline

What you get:

  • Working pipeline integration
  • Meaningful security results (not noise)
  • Clear guidance on fixing issues

This service is ideal for teams building APIs, web apps, or microservices who want to shift security left and reduce risk early.

Tools:

Docker

Jenkins

BitBucket

Hashicorp Vault

Other

Frameworks:

Npm

Cloud Provider:

Microsoft Azure

Google Cloud Platform

Programming language:

Bash

Java

JavaScript

PHP

Python

Expertise:

Installation

Debugging

Development

Related tags