DevSecOps & Supply Chain Security Consultant

  • Job ID: FA-01-000017-001126
  • Posted On: Jun 30, 2026
  • Views: 39

Company Introduction:

Frontend Arts brings together deep industry expertise and the latest IT advancements to deliver world-class digital transformation services to our clients. We partner with leading companies across industries to create innovative solutions that drive performance and growth. We are focused in technology innovation to accelerate the digital transformation of our customers, end users with a modern process driven development cycle ensuring high quality and scalable solutions that is compliant, secure, high performance and reliable.

Job Summary:

Key Responsibilities

  • Review SDLC processes, tooling, and secure development practices
  • Assess software supply chain security, including SCA, SBOM accuracy/completeness, dependency governance, and third-party risk
  • Evaluate CI/CD pipeline security, artifact integrity, and secure release controls
  • Review secrets management across development, build, deployment, and operational environments
  • Assess logging, auditability, and security event traceability controls
  • Evaluate vulnerability management, remediation tracking, and patch governance processes
  • Support lifecycle security assessment, compliance evidence mapping, and traceability
  • Contribute to assessment reporting, remediation guidance, and release governance reviews

 

Required Skills & Experience

Mandatory:

  • Strong understanding of DevSecOps and secure software delivery practices
  • Experience with SBOM frameworks (CycloneDX, SPDX) and SCA tooling
  • Familiarity with CI/CD security controls and artifact integrity validation
  • Experience with vulnerability management and dependency governance programs
  • Understanding of lifecycle security, auditability, and compliance evidence requirements
  • Experience with secrets management and secure release governance

 

Good to have:

  • Experience participating in CRA or regulated product security, or compliance-driven cybersecurity assessments
  • Experience participating in engagement related to export-controlled environments
  • Strong documentation skills

 

Preferred Certifications

  • Kubernetes / Cloud Security certifications preferred
  • DevSecOps or secure software supply chain experience preferred
  • Familiarity with SLSA or modern software supply chain security practices
  • Clearance / Compliance Requirements

 

Years of Required Experience 

  • 7-10 years in setting up, maintaining and controls validation of Secure. CI/CD pipelines across different type of tech stack.
  • 2+ Years experience with SBOM analysis

Key Skills:


  • Minimum Experience : 11 Yrs

Additional Information:

Frontend Arts is proud to be an Equal Opportunity Employer. We celebrate diversity and are committed to creating an inclusive environment for all employees and contractors. All qualified applicants will receive consideration for employment without regard to race, color, religion, gender, gender identity or expression, sexual orientation, national origin, genetics, disability, age, or veteran status.