





Tier-1 brand, mid-level generalist title, and metro location increase candidate competition significantly.
Deep SecDevOps and software supply-chain security expertise required, limiting cross-industry transferability.
6+ years plus specific Golang, CI/CD, AWS, Terraform, and supply-chain security tooling requirements create strict filters.
Login to See Your Match Score
Create a free account or log in to unlock your CV match score across:
Design and develop Software Supply Chain Security features including secure-by-default frameworks, SBOM generation, artifact signing and verification, and trusted release workflows.
Develop tools such as IDE plugins, CI/CD libraries, and a unified security application to enable product teams with security insights and self-service.
Lead security automation and policy enforcement to prove software provenance and trustworthiness in deployment processes, collaborating with security and platform teams.
6+ years experience in software development with Golang (backend) and JavaScript (VueJS frontend).
Proficient in building secure REST APIs and working with CI/CD pipelines, preferably with GitHub Actions.
Experience with AWS services (IAM, SQS, S3, Lambda, DynamoDB, RDS, EKS, EC2) and infrastructure as code using Terraform.
Familiarity with software supply chain security concepts and tooling such as SBOMs, artifact signing, SLSA, Sigstore/Cosign, SPDX, and in-toto attestations.
Experienced in software security engineering, application security, or DevSecOps with a strong background in supply chain security automation.
Comfortable working autonomously on complex backend and frontend development assignments involving security in software delivery lifecycle.
Has strategic insight for integrating security controls into CI/CD workflows and collaborating across security, platform, and compliance teams to mature supply chain security practices.