Match Score
Against your primary resumeLogin to See Your Match Score
Create a free account or log in to unlock your CV match score across:
Protocol Intelligence
Data-driven signals on your job's competitivenessKnown employer, metro location, mid-level generalist DevSecOps role creates high applicant competition.
Security-focused skills transfer across industries but require domain-specific tool and process knowledge.
Explicit 2-3 years and SAST/DAST/DevSecOps tool requirements enforce moderate filtering.
Job Description
Structured overview of role & requirementsAbout This Role
Onboard servers and applications to enterprise vulnerability scanning platforms and manage SAST, DAST, and IAST security assessments.
Conduct secure code reviews, validate remediation of vulnerabilities, and support DevSecOps integration within CI/CD pipelines for automated security controls.
Track, report, and drive closure of application and infrastructure security findings, supporting regulatory, audit, and compliance security assurance activities.
Minimum Requirements
2-3 years of experience in Vulnerability Assessment and Security Scanning of servers and applications.
Hands-on experience with SAST, DAST, IAST, and Open Source Dependency Scanning tools.
Knowledge of Secure Software Development Lifecycle (SSDLC) and secure coding principles such as OWASP Top 10, CWE, SANS Top 25.
Hybrid work setup requiring minimum two days a week onsite at TransUnion office location.
Ideal Candidate Profile
Experienced in security onboarding, secure code reviews, and remediation validation with development, infrastructure, and cloud teams.
Comfortable working within CI/CD pipelines and integrating security controls in DevSecOps workflows.
Proficient in diverse environments including Linux, Windows, Web Applications, APIs, and Cloud platforms with a focus on vulnerability tracking and risk remediation coordination.
