6+ years in security engineering, DevSecOps, or related roles. Excellent communication and teamwork abilities. Strong experience integrating security into modern SDLC pipelines. Hands-on with AppSec tooling (Snyk, OWASP ZAP, Burp Suite, SonarQube, Checkmarx). Solid understanding of web app security (OWASP Top 10, API security, auth flows, input validation). Familiarity with AWS/Kubernetes security. Strong programming skills (Python, Go, or JavaScript). Proven track record in partnering with product and engineering teams to drive security adoption. Strong AWS security skills (IAM, KMS, Security Hub, GuardDuty, WAF). Experience with Kubernetes security (RBAC, OPA/Gatekeeper, network policies). Hands-on with Terraform, Helm, and GitOps practices. Familiarity with security tooling (Trivy, Falco, Snyk, Aqua). Knowledge of networking, encryption, and cloud-native security best practices.