IT Operations Specialist I - AppSec DevSecOps
IT Operations Specialist I - AppSec DevSecOps

IT Operations Specialist I - AppSec DevSecOps

Full-Time 50000 - 60000 ÂŁ / year (est.) No home office possible
Fluor Corporation

At a Glance

  • Tasks: Ensure security in code development and collaborate on innovative AI-driven solutions.
  • Company: Fluor, a leading government contractor with a collaborative culture.
  • Benefits: Comprehensive health benefits, wellness programmes, and financial security options.
  • Other info: Dynamic work environment with opportunities for growth and learning.
  • Why this job: Join a team making a real impact on security practices in tech.
  • Qualifications: Degree in IT or related field, with experience in security testing tools.

The predicted salary is between 50000 - 60000 ÂŁ per year.

At Fluor, we are proud to design and build projects and careers. We are committed to fostering a welcoming and collaborative work environment that encourages big‑picture thinking, brings out the best in our employees, and helps us develop innovative solutions that contribute to building a better world together. If this sounds like a culture you would like to work in, you're invited to apply for this role. Fluor is a leading government contractor with a proven track record of delivering high‑value technical solutions around the world to U.S. government agencies such as the DOE, NNSA, the Department of Defense and the Intelligence Community.

The AppSec / DevSecOps Engineer is responsible for ensuring the security of code development processes and applications, with a focus on both traditional and AI‑driven solutions. This position will work closely with internal IT teams, internal customers, and external vendors, contributing to robust security practices and risk management across the organization.

  • Define and implement security testing strategies for AI solutions, utilizing both grey box and black box methodologies.
  • Grey Box Testing: Conduct Static Application Security Testing (SAST), dependency scanning, secrets scanning, Infrastructure as Code (IaC) scanning, and configuration reviews.
  • Black Box Testing: Perform Dynamic Application Security Testing (DAST), API fuzzing, authentication testing, and rate‑limit tests.
  • AI‑Specific Security Tests: Execute prompt injection checks, jailbreaking resistance assessments, tool misuse evaluations, and leakage tests tailored for AI applications.
  • Review remediation efforts and verify fixes prior to production deployment.
  • Conduct thorough risk assessments of new and existing applications, identifying vulnerabilities and security gaps.
  • Analyze and interpret security assessment findings, providing actionable recommendations to mitigate risks.
  • Collaborate with software development teams to implement security best practices and ensure secure coding standards.
  • Stay current with emerging threats, vulnerabilities, and industry trends, integrating this knowledge into risk assessment processes.
  • Participate in security reviews to evaluate and validate the effectiveness of security controls.
  • Provide technical guidance and support for incident response efforts related to application security incidents.
  • Review and validate contracts, Statements of Work (SOW), and Data Processing Agreements (DPAs).
  • Develop and maintain Data Loss Prevention (DLP) policy standards, reusable templates, naming conventions, and engineering runbooks.

Basic Job Requirements

  • Accredited four (4) year degree or global equivalent in applicable field of study and five (5) years of work‑related experience or a combination of education and directly related experience equal to nine (9) years if non‑degreed; some locations may have additional or different qualifications in order to comply with local requirements.
  • Ability to communicate effectively with audiences that include but are not limited to management, coworkers, clients, vendors, contractors, and visitors.
  • Job related technical knowledge necessary to complete the job.
  • Ability to learn and apply knowledge of applicable local, state/province, and federal/national statutes and guidelines.

Preferred Qualifications

  • Bachelor's degree in Computer Science, Information Technology, or a related field.
  • Experience with security testing tools and methodologies (SAST, DAST, dependency scanning, API fuzzing, etc.).
  • Familiarity with AI security concerns, including prompt injection and jailbreaking resistance.
  • Strong understanding of secure coding practices and application risk assessment.
  • Effective communication and collaboration skills for working with cross‑functional teams and external partners.
  • Ability to develop and maintain technical documentation, policy standards, and runbooks.
  • Proven experience (5 years) as an IT Security Analyst or similar role, with a focus on application security, Azure Active Directory, conditional access policies, and single sign‑on (SSO) configurations.
  • Ability to effectively adapt to rapidly changing technology and apply it to business needs.
  • Demonstrated strong technical and non‑technical communication skills, both oral and written.
  • Strong team‑oriented interpersonal skills.
  • Proficiency in scripting or programming languages (e.g., Python, JavaScript, Java) is a plus.
  • Excellent communication skills to convey complex technical concepts to non‑technical stakeholders.
  • Strong problem‑solving skills.
  • Strong organizational skills and attention to detail, especially concerning note taking when evaluating applications and attending meetings.
  • Organize and prioritize a variety of projects and multiple tasks in an effective and timely manner, set priorities, and meet deadlines.

We are an equal opportunity employer. All qualified individuals will receive consideration for employment without regard to race, color, age, sex, sexual orientation, gender identity, religion, national origin, disability, veteran status, genetic information, or any other criteria protected by governing law.

Benefits Statement

Fluor is proud to offer a comprehensive benefits package designed to promote employee health, wellness, and financial security. Our offerings include medical, dental and vision plans, EAP, disability coverage, life insurance, AD however, variations in final salary are determined by additional factors such as the candidate's qualifications, relevant years of experience, geographic location, internal pay equity, and prevailing market conditions for the specific role.

Notice to Candidates

Background checks are carried out as part of any conditional offer made.

IT Operations Specialist I - AppSec DevSecOps employer: Fluor Corporation

Fluor is an exceptional employer that prioritises a collaborative and innovative work culture, making it an ideal place for IT Operations Specialists looking to make a meaningful impact. With a strong commitment to employee growth, Fluor offers comprehensive benefits, including health and wellness plans, while fostering an environment that encourages professional development and teamwork. Located in a dynamic sector, employees have the unique opportunity to contribute to high-value projects that support U.S. government agencies, ensuring their work is both rewarding and impactful.
Fluor Corporation

Contact Detail:

Fluor Corporation Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land IT Operations Specialist I - AppSec DevSecOps

✨Tip Number 1

Network like a pro! Reach out to folks in the industry, attend meetups, and connect with people on LinkedIn. You never know who might have the inside scoop on job openings or can put in a good word for you.

✨Tip Number 2

Prepare for interviews by practising common questions and scenarios related to AppSec and DevSecOps. We recommend doing mock interviews with friends or using online platforms to get comfortable with your responses.

✨Tip Number 3

Showcase your skills! Create a portfolio or GitHub repository that highlights your projects and contributions to security testing. This gives potential employers a tangible look at what you can bring to the table.

✨Tip Number 4

Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you’re genuinely interested in joining our team at Fluor.

We think you need these skills to ace IT Operations Specialist I - AppSec DevSecOps

Static Application Security Testing (SAST)
Dynamic Application Security Testing (DAST)
Dependency Scanning
API Fuzzing
Infrastructure as Code (IaC) Scanning
Risk Assessment
Secure Coding Practices
Technical Documentation Development
Azure Active Directory
Single Sign-On (SSO) Configurations
Communication Skills
Collaboration Skills
Problem-Solving Skills
Scripting or Programming Languages (e.g., Python, JavaScript, Java)
Attention to Detail

Some tips for your application 🫡

Tailor Your Application: Make sure to customise your CV and cover letter to highlight your experience with security testing tools and methodologies. We want to see how your skills align with the role of AppSec / DevSecOps Engineer!

Showcase Your Communication Skills: Since this role involves collaborating with various teams, it's essential to demonstrate your effective communication skills. Use examples in your application that show how you've successfully worked with others in the past.

Highlight Relevant Experience: Don’t forget to mention any hands-on experience you have with AI security concerns or secure coding practices. We’re looking for candidates who can hit the ground running, so make your relevant experience stand out!

Apply Through Our Website: We encourage you to apply directly through our website. It’s the best way for us to receive your application and ensures you don’t miss out on any important updates during the process!

How to prepare for a job interview at Fluor Corporation

✨Know Your Stuff

Make sure you brush up on your knowledge of security testing tools and methodologies like SAST, DAST, and API fuzzing. Be ready to discuss how you've applied these in past roles, especially in relation to AI security concerns.

✨Showcase Your Communication Skills

Fluor values effective communication, so practice explaining complex technical concepts in simple terms. Think about examples where you've successfully collaborated with cross-functional teams or external partners.

✨Prepare for Scenario Questions

Expect questions that ask how you'd handle specific security challenges, such as prompt injection or risk assessments. Prepare by thinking through your problem-solving process and how you would apply it in real-world situations.

✨Stay Current with Trends

Keep yourself updated on the latest trends in application security and emerging threats. Being able to discuss recent developments will show your passion for the field and your commitment to continuous learning.

IT Operations Specialist I - AppSec DevSecOps
Fluor Corporation

Land your dream job quicker with Premium

You’re marked as a top applicant with our partner companies
Individual CV and cover letter feedback including tailoring to specific job roles
Be among the first applications for new jobs with our AI application
1:1 support and career advice from our career coaches
Go Premium

Money-back if you don't land a job in 6-months

>