Expert DevSecOps Engineer; Expert Software Development Security Engineer
Publicado en 2026-09-23
-
TI/Tecnología
Seguridad cibernética
Chez Roche, vous pouvez être vous-même et être apprécié pour les qualités uniques que vous apportez. Notre culture encourage l'expression personnelle, le dialogue ouvert et les connexions authentiques, où vous êtes valorisé, accepté et respecté pour ce que vous êtes, vous permettant de prospérer tant personnellement que professionnellement. Voici comment nous visons à prévenir, arrêter et guérir les maladies et à garantir à chacun l'accès aux soins de santé aujourd'hui et pour les générations à venir.
Rejoignez Roche, où chaque voix compte.
As an Expert Dev Sec Ops Engineer, acting as a Software Development Security Expert, you will sit at the intersection of software and security engineering. You are accountable for designing robust software development security frameworks, handling ambiguous security and compliance requirements, managing complex stakeholder landscapes, and mentoring junior engineers. You will also collaborate with the area architect in defining the long-term architecture for software engineering security solutions.
Description of the area:Engineering Excellence & Experience (E3) enables engineers to explore, plan, design, code, build, test, and deploy software packages in a reliable, secure, automated, and consistent manner across our different business areas. This includes providing facilitated access to automated, composable infrastructure consumable through Infrastructure as Code (IaC) and APIs, both on-premises and in the public cloud.
Within E3, you will join the Embedded Security & Testing Team, which champions the integration of testing and security concepts throughout the software development lifecycle. Specifically, the Code Quality, Security, and Testing Engineering team combines best practices and modern solutions to ensure that all code generated is secure and of the highest quality. The team provides a range of Dev Sec Ops components fit for diverse technical complexities, delivers Proofs of Concept (PoCs), and supports internal adoption both during and after implementation.
Job Responsibilities: Scope:Provides expert-level leadership and strategic guidance in Dev Sec Ops area, including Threat Modelling, Code Quality, SAST, Secret Scanning, Software Composition Analysis, IaC Scanning, License Compliance, Dependency Management, Container Image Scanning, API Security and Container Runtime Scanner.
Participate in the definition of Software Security best practices, ensuring consistency, traceability, and alignment with enterprise standards
Leads Dev Sec Ops efforts on strategic activities and provides guidance to less experienced members.
Leads the analysis of complex and strategic business problems, defining the problem space and driving comprehensive root cause analysis that may span organizational boundaries
Works on unusually complex problems, provides highly innovative solutions, and applies expert-level analytical and logical reasoning to proactively identify strategic opportunities and risks
Builds and maintains strong relationships with key stakeholders and cultivates collaboration across the organization
Elicits and analyzes complex stakeholder needs with expertise, and influences business stakeholders to inform and make the right decisions
Shapes strategy as a trusted advisor to leadership, acting as an influential partner and organizational trust builder
Recommends and guides the implementation of optimal strategies, transitions, and future states, fostering a culture of strategic innovation and continuous improvement within their product line or domain
Evaluates strategic solution alternatives through rigorous risk assessment and value…
(Si este trabajo está en su jurisdicción, entonces puede estar usando un Proxy o VPN para acceder a este sitio, para seguir avanzando, debe cambiar su conectividad a otro dispositivo móvil o PC).