Gautam Buddha Nagar, Uttar Pradesh
Job Summary
Role Summary
The GitHub Security Engineer will support secure software development practices across GitHub Enterprise and GitHub Advanced Security. The role will focus on onboarding support, security control enablement, alert monitoring, governance, reporting, and coordination with engineering teams for timely remediation of security issues.
Key Responsibilities
Support GitHub Enterprise onboarding, access coordination, and repository governance activities.
Configure and maintain GitHub Advanced Security capabilities such as Secret Scanning, Push Protection, Dependabot, and Code Scanning.
Monitor GitHub security alerts and coordinate remediation with repository owners and development teams.
Validate remediation evidence for GitHub security findings, including secret exposure and vulnerable dependency alerts.
Maintain organization and repository-level security configurations in alignment with enterprise security requirements.
Manage exception, bypass, and risk acceptance requests with appropriate documentation and approval tracking.
Prepare dashboards, metrics, and status reports for GitHub security coverage, alert trends, and remediation progress.
Support audits by collecting evidence related to repository controls, security settings, and remediation actions.
Assist teams in integrating security checks into CI/CD pipelines and developer workflows.
Conduct awareness and enablement sessions for development and repository admin teams.
Required Technical Skills
Working knowledge of GitHub Enterprise and GitHub Advanced Security.
Understanding of secure SDLC, DevSecOps, source code management, and CI/CD security practices.
Hands-on exposure to Code Scanning, Secret Scanning, Dependency/SCA alerts, and GitHub Actions workflows.
Familiarity with Git, YAML, scripting basics, and repository administration concepts.
Understanding of OWASP Top 10, secure coding practices, and vulnerability remediation lifecycle.
Ability to review security alerts, coordinate with technical teams, and track closure with evidence.
Preferred Skills
Experience with enterprise-scale GitHub governance or repository onboarding.
Exposure to GitHub migration, branch protection, code owners, and pull request governance.
Knowledge of REST APIs, dashboards, automation scripts, and security reporting.
GitHub, DevSecOps, Cloud Security, or Application Security certifications are added advantage.
Experience
4 to 8 years of experience in Application Security, DevSecOps, Platform Security, or Source Code Management security.
Prior experience working with enterprise development teams, repository owners, DevOps teams, and application security stakeholders.
Expected Deliverables
GitHub security onboarding support and governance tracking.
Security alert triage and remediation coordination.
Repository security configuration review and evidence collection.
Periodic GitHub security dashboards and management reporting.
Developer enablement material and awareness support.
Key Responsibilities
Key Responsibilities
Support GitHub Enterprise onboarding, access coordination, and repository governance activities.
Configure and maintain GitHub Advanced Security capabilities such as Secret Scanning, Push Protection, Dependabot, and Code Scanning.
Monitor GitHub security alerts and coordinate remediation with repository owners and development teams.
Validate remediation evidence for GitHub security findings, including secret exposure and vulnerable dependency alerts.
Maintain organization and repository-level security configurations in alignment with enterprise security requirements.
Manage exception, bypass, and risk acceptance requests with appropriate documentation and approval tracking.
Prepare dashboards, metrics, and status reports for GitHub security coverage, alert trends, and remediation progress.
Support audits by collecting evidence related to repository controls, security settings, and remediation actions.
Assist teams in integrating security checks into CI/CD pipelines and developer workflows.
Conduct awareness and enablement sessions for development and repository admin teams.
Skill Requirements
Other Requirements
#body.unify div.unify-button-container .unify-apply-now: focus, #body.unify div.unify-button-container .unify-apply-#body.unify div.unify-button-container .unify-apply-now: focus, #body.unify div.unify-button-container .unify-apply-