{"id":2253780,"url":"https://alion.io/job/nttdata-application-security-devsecops-specialist","title":"Application Security DevSecOps Specialist","company":{"id":4401319,"name":"NTT DATA Romania","domain":"nttdata.ro","url":"https://alion.io/company/nttdata-ro","size_band":null,"is_staffing_agency":false,"employer_type":"direct","is_intermediary":false,"listed_via":null,"ats_vendor":"SuccessFactors","truth_index":null},"role":"Security","role_family":"Security","seniority":"middle","employment_type":null,"work_mode":"on_site","remote_scope":null,"remote_scope_basis":null,"remote_working_hours":null,"hiring_geo_confidence":"structured","locations":["Bucharest, Romania"],"countries":["RO"],"hiring_countries":[],"hiring_countries_total":0,"salary":null,"salary_estimate":{"min_usd":36000,"max_usd":86000,"period":"year","method":"global_role_cell_scaled_by_country","sample_n":613},"experience_years_min":3,"visa_sponsorship":false,"relocation_package":false,"has_equity":false,"technologies":[{"name":"CI/CD","optional":false},{"name":"CIS Benchmarks","optional":false},{"name":"OWASP","optional":false},{"name":"OWASP Top 10","optional":false}],"status":"live","first_seen_at":"2026-09-30T00:00:00Z","employer_posted_date":"2026-09-30","last_verified_at":"2026-10-11T19:33:33Z","board_verified":true,"closed_at":null,"days_open":11,"trust":{"level":"ok","repost_count":null,"flags":[],"days_open":11},"description":"Who we are\nNTT DATA is one of the world's largest global security service providers, partnering with some of the most recognized security technology brands. We're looking for passionate, curious, and motivated individuals to join our team.\nWhat you'll be doing\nImplement security measures within CI/CD pipelines to ensure secure software delivery. \nStatic Application Security Testing (SAST) tools for analysing source code or binaries. \nDynamic Application Security Testing (DAST) tools for identifying vulnerabilities in running applications. \nSoftware Composition Analysis (SCA) tools to detect vulnerabilities in open-source libraries and third-party components. \nSecret scanning to prevent accidental inclusion of sensitive information like API keys or passwords. \nContainer scanning to analyse container images and runtime environments for vulnerabilities and misconfigurations. \nConduct code security reviews and triage security findings. \nCollaborate with developers to fix identified vulnerabilities and ensure secure coding practices. \nPerform API security testing for standalone APIs not integrated within applications. \nManage security testing automation processes. \nIntegrate security testing tools with organizational systems such as CMDB, ticketing systems, and reporting platforms. \nMaintain tool certifications and stay updated with the latest capabilities and advancements. \nProvide clear and actionable communication of findings to enable informed, prioritised actions. \nDeliver detailed assessment reports with remediation recommendations aligned to risk severity. \nPresent findings to both technical and non-technical stakeholders, including executive leadership. \nMaintain comprehensive documentation of security assessments, findings, and remediation tracking. \nWork closely with development teams to integrate security seamlessly into their workflows. \nTrain developers on secure coding practices and the use of security tools. \nEvaluate and implement AI-powered application security testing tools, ensuring validation of AI-generated findings by human experts. \nMaintain awareness of AI-powered tools' limitations and compliance requirements. \nEnhance the speed and reliability of secure code delivery. \nReduce vulnerabilities and improve the overall security posture of applications. \nEnsure compliance with industry standards such as OWASP Top 10, CIS Benchmarks, and secure coding practices . \nWork closely with Security Design Engineers to implement designs within frameworks defined by Security Architects. \nWhat you'll bring along\nBachelor's degree in Computer Science, Information Technology, or a related field.\nMinimum 3 - 5 years of experience in security testing tools and automation. \nKnowledge of DevSecOps practices and CI/CD pipeline integration. \nFamiliarity with industry standards like OWASP, CIS Benchmarks, and secure coding guidelines. \nStrong collaboration and communication skills for working with developers and stakeholders. \nExcellent command of both spoken and written English","description_format":"text","description_chars":3028,"description_truncated":false,"requirements":{"experience_years_min":3,"management_years_min":null,"team_size_min":null,"manages_managers":false,"education":{"level":"bachelor","optional":false},"security_clearance":false,"languages":[{"language":"English","level":"All levels","optional":false}]},"benefits":[],"hiring_locations":[],"hiring_excludes":[],"relocation_offered":false,"industries":["Application Security","DevSecOps"],"lifecycle":[{"event":"open","at":"2026-10-11T03:22:23Z"}],"visa":[],"liveness":{"score":70,"band":"hot","label":"Hiring now","p_open":1,"p_active":0.776,"p_room":0.9,"age_days":11,"expected_fill_days":19,"reasons":["conf:4","win:mid"],"computed_at":"2026-10-11T23:44:24Z"},"pay":null,"html_url":"https://alion.io/job/nttdata-application-security-devsecops-specialist","json_url":"https://alion.io/job/nttdata-application-security-devsecops-specialist.json","meta":{"generated_at":"2026-10-11T23:44:24Z","cache_seconds":300,"methodology":"https://alion.io/methodology","terms":"https://alion.io/terms","contact":"https://alion.io/contact","api":"https://alion.io/developers","about":"Alion is a live layer of people, companies and AI agents: who they are, whether they are real and active right now, what they do and how to work with them, readable by people and by agents and paid per call.","catalog":"https://alion.io/catalog.json","usage":{"tier":"crawler_verified","counted_by":"address","units_charged":1,"used_today":14922,"day_limit":null,"remaining_today":null,"minute_limit":300,"resets_at":"2026-10-12T00:00:00Z"}},"offers":[{"id":"company.slices","title":"One company in depth, by slice","status":"live","price":{"credits":0.02,"usd":0.002,"plus_per_slice":{"credits":0.05,"usd":0.005}},"unit":"per company, plus each slice with data","note":"the employer in depth","call":{"mcp_tool":"get_company","arguments":{"id":4401319},"rest":"https://alion.io/mcp/rest/get_company?id=4401319"},"human":"https://alion.io/catalog?offer=company.slices&for=job%2Fnttdata-application-security-devsecops-specialist"},{"id":"market.stats","title":"A market slice: pay, demand and time to fill","status":"live","price":{"credits":1,"usd":0.1},"unit":"per slice","note":"pay, demand and time to fill for this role and place","call":{"mcp_tool":"market_stats"},"human":"https://alion.io/catalog?offer=market.stats&for=job%2Fnttdata-application-security-devsecops-specialist"},{"id":"job.search","title":"Open jobs by role, technology, place, pay and visa","status":"live","price":{"credits":0.02,"usd":0.002},"unit":"per posting in a list","note":"similar open postings","call":{"mcp_tool":"search_jobs"},"human":"https://alion.io/catalog?offer=job.search&for=job%2Fnttdata-application-security-devsecops-specialist"},{"id":"company.verify","title":"Is this company real and active right now","status":"pilot","price":null,"unit":"per company","request":{"url":"https://alion.io/catalog/request","method":"POST","body":"{\"offer\": \"company.verify\", \"for\": \"job/nttdata-application-security-devsecops-specialist\", \"note\": \"what you need it for\"}"},"human":"https://alion.io/catalog?offer=company.verify&for=job%2Fnttdata-application-security-devsecops-specialist"}]}