lucasbazan
Dev Sec Ops | Python
Professional in DevSecOps, combining experience in software development with Python/Groovy/Shell scripting, information security, and IT operations. With experience in continuous and secure software delivery, I promote collaboration between development, operations, and security teams, ensuring the delivery of reliable and secure products. Working in security integration throughout the software development lifecycle with SAST, DAST and SCA scans, reducing risks and strengthens organizations' security postures.
Experience: 4 years
Yearly salary: $80,000
Hourly rate: $40
Nationality: 🇧🇷 Brazil
Residency: 🇧🇷 Brazil
Experience
DevSecOps @ AT&T
IBM 2022 - 2024
Development of pipelines and automation tools with Jenkins and Python (Flask) for AT&T, including the management of non-production environments in Azure. Key Activities: - Development and maintenance of pipelines in Jenkins and Azure DevOps - Monthly Golden Image Refreshing on our virtual machines in Azure - Monitoring and instrumentation of microservices deployed in AKS with Glowroot - Regular meetings with SOX and Compliance auditors - Weekly meetings with management to discuss vulnerabilities in our applications - Monitoring of our on-prem servers with node_exporter, Prometheus, and Grafana - Access management for our Jenkins, BitBucket repositories, and responsible for the stage (non-production) subscription - Monitoring/mitigation of vulnerabilities and responsible for running our vulnerability scan pipelines - Part of a project development using Python and Flask Key Projects: - Creation of webhooks in BitBucket for communication with Jenkins - Migration of our Azure monitoring agents from OMS to AMA - Development of our pipelines for scans, Code Quality, SAST, DAST, and SCA (SonarQube, Veracode, and HCL ASE) - Creation and maintenance of our pipelines for microservices deployment in Azure Kubernetes Services, as well as IaC pipelines with Terraform and Packer for monthly Golden Image Refreshing.
Skills
aws
ci-cd
devops
gcp
git
groovy
linux
python
security
english
portuguese