Regeneron Logo

Regeneron

DevSecOps Engineer

Posted 2 Days Ago
Be an Early Applicant
Bengaluru, Karnataka
Senior level
Bengaluru, Karnataka
Senior level
As a DevSecOps Engineer, you'll design and govern the Secure Software Development Life Cycle (SSDLC) framework, focusing on integrating security throughout the software development process. This role includes assessing vulnerabilities, implementing strategies for improvement, and working with various teams to ensure a secure development environment.
The summary above was generated by AI

Regeneron is founded on the belief that the right idea, combined with the right team, can lead to significant transformations. Our growing global network is dedicated to inventing, developing, and commercializing medicines that change lives for those with serious diseases. In doing so, we are groundbreaking innovative ways to science, manufacturing, and commercialization, as well as redefining our understanding of health.

The Regeneron Information Technologies team is seeking candidate for the Sr Principal Engineer of Secure SDLC Software Development position. This is a hands-on position that requires deep technical expertise in this Secure SDLC domain, the successful candidate will be responsible for the design, engineering, deployment, governance, and level 3 support of the Regeneron Secure Software Development Life Cycle (SSDLC) framework, and solutions.

In this role typical day might include performing the following:

  • Drive forward the development, improvement, deployment, communication, and governance of the Regeneron SSDLC roadmap aligned with a comprehensive Cybersecurity strategy.

  • Develop and improve a reliable, scalable, and secure set of SSDLC solutions to efficiently meet business requirements while adhering to the NIST Cyber Security framework.

  • Drive a continuous improvement approach to secure the Regeneron SDLC program by defining and implementing security requirements across the full software development life cycle. This includes the underlying software delivery pipeline, ensuring security is seamlessly and optimally in coordinated within.

  • Develop and operationalize strategies to continuously assess, identify, and mitigate vulnerabilities within the SSDLC ecosystem.

  • Serve as the focal point for an onsite IT Team to ensure consistent communications and delivery as well as maintaining day-to-day team direction and tactical support for the onsite IT team members that are delivering other IT related services.

  • Provide status and operational updates to Regeneron IT senior leadership on the effectiveness and efficiency of the onsite team.

  • Collaborate with leadership on the yearly budget preparation and management of the SSDLC program.

  • Define and run against SSDLC SLAs, using KPIs to provide monthly reporting on the efficacy of SSDLC management tools.

  • Develop and document the technical design for the integration and implementation of any new SSDLC software.

  • Partner with the Cybersecurity by Design Team, product development, and other key partners to ensure secure design principles are embedded throughout the entire software development lifecycle.

  • Partner with software development teams in the architectural design of software solutions to ensure the implementation of secure design principles.

  • Stay ahead of on evolving security threats and trends, recommending proactive measures to maintain a secure SSDLC framework.

  • Collaborate on the development and delivery of software security awareness training programs.

  • Collaborate with the Operations Team to continuously ensure defined SSDLC technologies are effective and efficient in practice.

  • Provide Level 3 support for SSDLC-related and security incidents.

  • Collaborate with vendors to drive solution optimization and business value.

This job might be for you if you:

  • BA/BS degree in Computer Science, Computer Information Systems, or a related technical field.

  • 8+ years proven experience with SSDLC capabilities in a global environment.

  • Continuously find opportunities for improving processes and solutions, including the consolidation of similar security needs.

  • Collaborate with the team to implement technical standard methodologies, policies, and procedures.

  • Have ability to lead training initiatives, demonstrating a capacity to educate teams.

  • Have excellent problem-solving skills and attention to detail.

  • Excellent verbal and written communication skills, and ability to optimally work well with all personnel from application developers to the CIO, ability to work autonomously and in groups, highly organized, deadline-oriented, continuous-improvement approach.

  • Ability to develop and maintain highly effective relationships and influence others to achieve goals.

  • Strong experience in using SSDLC solutions to secure data within an enterprise and possess end-to-end knowledge in the design, engineering, and operation of a comprehensive SSDLC solution set.

  •  Experience in crafting and providing highly available and reliable SSDLC software and processes capable of 24x7 business operations is essential.

  • A shown level of competence with SAST, SCA, DAST, Jenkins, Groovy, Python, Java, JavaScript, Ruby, R, Kubernetes, AWS, Terraform, and CFT is required.

  • A solid understanding of Information Security processes, practices, and solutions, as well as experience with regulatory compliance controls, with GxP and SOX being preferred.

  •  Familiarity with relevant security frameworks and compliance standards (NIST CSF, ISO 27001, HIPAA, GDPR, etc.) is a plus.

Connect with us, so we can learn more about you, and you can learn more about our medicines. And join us in shaping the future of healthcare.

Regeneron is an equal opportunity employer and all qualified applicants will receive consideration for employment without regard to race, color, religion or belief (or lack thereof), sex, nationality, national or ethnic origin, civil status, age, citizenship status, membership of the Traveler community, sexual orientation, disability, genetic information, familial status, marital or registered civil partnership status, pregnancy or parental status, gender identity, gender reassignment, military or veteran status, or any other protected characteristic in accordance with applicable laws and regulations. We will ensure that individuals with disabilities are provided reasonable accommodations to participate in the job application process. Please contact us to discuss any accommodations you think you may need.

Does this sound like you? Apply now to take your first step towards living the Regeneron Way! We have an inclusive and diverse culture that provides comprehensive benefits, which often include (depending on location) health and wellness programs, fitness centers, equity awards, annual bonuses, and paid time off for eligible employees at all levels!

Regeneron is an equal opportunity employer and all qualified applicants will receive consideration for employment without regard to race, color, religion or belief (or lack thereof), sex, nationality, national or ethnic origin, civil status, age, citizenship status, membership of the Traveler community, sexual orientation, disability, genetic information, familial status, marital or registered civil partnership status, pregnancy or parental status, gender identity, gender reassignment, military or veteran status, or any other protected characteristic in accordance with applicable laws and regulations. The Company will also provide reasonable accommodation to the known disabilities or chronic illnesses of an otherwise qualified applicant for employment, unless the accommodation would impose undue hardship on the operation of the Company's business.

For roles in which the hired candidate will be working in the U.S., the salary ranges provided are shown in accordance with U.S. law and apply to U.S.-based positions.  For roles which will be based in Japan and/or Canada, the salary ranges are shown in accordance with the applicable local law and currency. If you are outside the U.S, Japan or Canada, please speak with your recruiter about salaries and benefits in your location.

Please note that certain background checks will form part of the recruitment process.  Background checks will be conducted in accordance with the law of the country where the position is based, including the type of background checks conducted. The purpose of carrying out such checks is for Regeneron to verify certain information regarding a candidate prior to the commencement of employment such as identity, right to work, educational qualifications etc.

Top Skills

Java
JavaScript
Python
R
Ruby

Similar Jobs

2 Days Ago
Bangalore, Bengaluru, Karnataka, IND
Senior level
Senior level
Healthtech • Other • Robotics • Biotech • Manufacturing
The Staff DevSecOps Engineer will lead the development of CI/CD pipelines for embedded devices, collaborating with engineers to integrate automation, maintaining infrastructure, monitoring performance, and promoting best software development practices, while staying updated with DevSecOps trends.
Top Skills: C/C++PythonShell Scripting
3 Days Ago
Bengaluru, Karnataka, IND
Mid level
Mid level
Artificial Intelligence • Information Technology • Machine Learning • Natural Language Processing • Software
As a DevSecOps Engineer at Moveworks, you will ensure the security of software development processes and infrastructure while collaborating with various teams to address DevOps and security needs. Your role includes designing secure infrastructure, managing vulnerabilities, automating security processes, responding to incidents, and assisting with compliance audits.
Top Skills: BashPython
5 Days Ago
Bangalore, Bengaluru, Karnataka, IND
Senior level
Senior level
Cloud • Information Technology • Consulting
As a DevSecOps Engineer at Kyndryl, you will develop software applications and automate processes, focusing on deployment and configuration using several languages and frameworks. You'll architect software applications and integrations, contribute to operational processes, and work collaboratively across teams.
Top Skills: Next.JsNode.jsPythonReactTypescript

What you need to know about the Pune Tech Scene

Once a far-out concept, AI is now a tangible force reshaping industries and economies worldwide. While its adoption will automate some roles, AI has created more jobs than it has displaced, with an expected 97 million new roles to be created in the coming years. This is especially true in cities like Pune, which is emerging as a hub for companies eager to leverage this technology to develop solutions that simplify and improve lives in sectors such as education, healthcare, finance, e-commerce and more.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account