Profileimage by Rooz Noroozi Secure Software Development lifecycle| Splunk Architect | Enterprise Security | Pentest from Muenchen

Rooz Noroozi

available

Last update: 12.03.2021

Secure Software Development lifecycle| Splunk Architect | Enterprise Security | Pentest

Graduation: Msc. Computer Science
Hourly-/Daily rates: show
Languages: German (Elementary) | English (Full Professional) | Persian (Native or Bilingual)

Attachments

ruz-cv-202008017.pdf
CISSP.pdf
TOGAF® 9 Certification -Certificate-1.pdf
AWS Certified Cloud Practitioner certificate.pdf

Skills

  • Define and run secure software development lifecycle project (sSDLC) to integrate security in the application development from the analysis and design to implementation and verification (QA) in scrum teams globally. The sSDLC concept involves threat modeling by application security architects and security champions, and automated security source code analysis, dependency checking, IAST, DAST integrated in the CI/CD pileline
  • Audit local security activities of different regional offices for secure software development and security assessment
  • Define and implement global application security strategy based on OWASP SAMM including as-is analysis of the current application security maturity model, defining target maturity model and defining roadmap and finally implementation and feedback.
  • Conduct penetration testing of web and mobile applications and web services
  • Support application design by providing security architectural recommendations/solutions
  • Counseling development teams in information security related topics

Project history

Local Availability

Open to travel worldwide
Profileimage by Rooz Noroozi Secure Software Development lifecycle| Splunk Architect | Enterprise Security | Pentest from Muenchen Secure Software Development lifecycle| Splunk Architect | Enterprise Security | Pentest
Register