Fortify Lead Technical Consultant
Virtual, SA
Micro Focus (now OpenText) is one of the world’s largest enterprise software providers. We deliver mission-critical technology and supporting services that help thousands of customers worldwide manage core IT elements of their business so they can run and transform—at the same time.
The Opportunity
We are now looking for a seasoned Fortify Technology Consultant to join our team in Saudi, as part of the Emerging Markets (EM) region Cyber Resilience (CyberRes) Professional Services (PS) team. The CyberRes PS team provides engineering services that spans the Micro Focus’ CyberRes portfolio.
In this role, you will work collaboratively with Fortify consultants, Managing Principals and Directors to deliver cutting edge services on client engagements with a world class team from around the globe. You will be accountable for deploying Fortify solutions to satisfy client business requirements and assist customers to utilise Fortify to its full potential.
In this role you will forge strong relationships with customers and provide them with solid advice on the Fortify product and be seen as a subject matter expert. Other duties would include installation of Fortify software, business requirements workshops, troubleshooting, performing on-going scans so the clients realise the true value of product.
This job isn’t just about installing software and making it work; it’s about delivering the knowledge to our customers so that they can continue to utilise Fortify long after you leave client site. An important aspect of this role is understanding cyber security operations and how to utilise Fortify to perform daily cyber security operations tasks.
What it takes
- Perform on-going automated security code review scans using SCA via integration with other build and bug systems.
- Review the automated SCA findings and mark them as vulnerable or false positives before publishing the SCA findings on Fortify Software Security Center (SSC) to End-User.
- Customer developers Provide clarification to End-User Customer developer queries on SCA reported vulnerabilities and their remediation.
- Review & assess End-User Customer developer comments for false positives in SCA reports.
- Track & report remediation of SCA reported findings on End-User Customer applications.
- Perform regular installation and maintenance of Fortify plugins on End-User Customer developer IDEs .
- Perform regular installation and maintenance of Fortify SCA on End-User
- Customer developer machines and train them on how to run SCA scans & push the findings to End-User Customer SSC from their local SCA installations.
- Lead & implement new End-User Customer DevOps integration requirements.
- Perform on-going resolution of SCA and SSC technical issues such as but not limited to:
SCA scanning & reporting issues
SCA and SSC integration issues with Jenkins & Jira - Provide monthly activity report outlining the completed tasks within the month Regularly review, assess, and ensure that the existing Fortify software are operational and stable.
- Handle all the required configurations on the integrated systems with Log Management and SIEM solutions.
Perform sprint of Application Security Infrastructure Revision to identify potential performance bottlenecks or conditions that could adversely impact availability or reliability and provide recommendations for resolving such issues.
Aptitude to solve issues and ensure timely delivery of solutions that meet customer expectations Provide technical consulting and advice to customer on-site efforts Assist in design enterprise-scale projects for Micro Focus Fortify solutions and products Deliver world-class consulting to some of the largest companies in the world Promotes Knowledge Management (KM) and fosters a KM culture through both reuse and contribution
You are great at
- Experience working within the information and cyber security field
- Experience working with Application security solutions, preferably Fortify
- Hands on experience with deployment, integration, and training of Micro Focus Fortify.
- Experience with security devices (e.g. Firewall, IDS and web proxies etc.) will be a plus.
- Experience with UNIX, Linux, and Windows operating system
- Knowledge of other Micro Focus Security platforms such as ArcSight, Voltage, or NetIQ will be a plus
- A good understanding of databases
- Good technical writing skills
A security certification such as CISSP, CISM, CEH, SANS is preferable - Willingness and ability to travel
Micro Focus (now OpenText) is proud to be an Equal Opportunity Employer. Prospective employees will receive consideration without discrimination because of race, colour, religion, creed, gender, national origin, age, disability, marital or veteran status, sexual orientation, genetic information, citizenship or any other legally protected status.