Stefanini Group is a global provider of outsourcing and IT consulting services. They are seeking a Security Automation Engineer to improve and automate IT systems, focusing on Infrastructure and Configuration as Code while collaborating with the eBusiness engineering team to enhance security processes.
Responsibilities:
- Access gateway Engineer uses technology to improve, streamline and automate information technology systems and services
- The eBusiness Security Access Gateway team is seeking an automation engineer to join a team of security engineers to create and improve Infrastructure and Configuration as Code (IaC and CaC)
- The Access gateway Engineer will collaborate with the eBusiness engineering team to understand secure Authentication, Authorization, Web Gateway, and API services to reduce manual processes, build CI/CD pipelines, and reduce overall time to market
- An automation engineer is needed to assist with further development of automated deployments inclusive of IBM Security Products
- This position would assist in design and developing the code required to build and maintain Access Management Services
- This will allow the enhancement of and development of stronger automation processes, including full CI/CD pipelines, around the various Access Gateway environments, leading to less manual execution of scripts
- Further automation will allow administrators to focus on code rather than procedures
- Long term this will improve Change Management (CM) practices by ensuring all changes are captured in source control
- This will enable automated rebuilds rehydrating environments and rapid recovery from ransomware or other critical incidents
- The position will be responsible for improving existing processes and creating new automated health checks
- Further efforts will reduce time spent by administrators doing manual tasks, reducing errors, integration with CM, integrate system monitoring for auto incident creation, self-healing based on environmental health, and streamlining work intake requests by integrating with Service Now
- Future development efforts will enable 'no touch deployment' to further reduce time to market
- Other duties will include knowledge sharing and continuously seeking improvement opportunities
Requirements:
- Ansible Tower
- GitLab
- Python
- OpenShift and/or Kubernetes
- Unix/Linux
- Shell scripting
- Identity and Access Management Systems (IAM)
- Experience with RESTful API's
- Argo CD
- Agile
- Knowledge of modern authentication and authorization protocols including:
- OAuth 2.0
- Open ID Connect (OIDC)
- Federation (SAML 2.0)
- System for Cross-domain Identity Management (SCIM)
- Lightweight Directory Access Protocol (LDAP)
- Experience with IBM Security products
- SQL
- JavaScript
- ServiceNow
- PKI Experience
- RedHat Enterprise Linux (RHEL)
- Ansible Automation Hub and Ansible Galaxy
- Nexus