Technical Business Analyst (DevSecOps) - Contract
Core
Bridge the gap between application security, software engineering squads, and enterprise governance by translating security requirements into technical specifications and integrating security controls into CI/CD pipelines.
Role type
Technical Business Analyst (DevSecOps)
Builds
Modern CI/CD software delivery pipelines with integrated security controls and automated compliance.
Domain
Software Engineering / Cybersecurity / DevSecOps
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
DevSecOps principles, CI/CD pipeline architecture, application security standards (OWASP), automated code scanning (SAST/SCA/DAST), technical user story writing, Agile/Scrum backlog management, stakeholder alignment for security roadmaps
Preferred skills
Experience in cloud environments, familiarity with vulnerability management SLAs
Technologies
SAST, SCA, DAST, CI/CD tools
Responsibilities
Analyze software development workflows to identify security bottlenecks and opportunities to shift left; Translate complex application security policies and compliance standards into technical user stories and acceptance criteria; Partner with DevSecOps Engineers to scope and support implementation of automated code scanning and pipeline security gatekeepers; Document DevSecOps frameworks, technical runbooks, and developer guidance materials; Facilitate workshops between Security Architects, DevOps leads, Product Owners, and engineering squads to align delivery roadmaps with security posture goals