Experience embedding security into CI/CD pipelines, software development workflows, cloud platforms, infrastructure as code, containers, Kubernetes, Git-based source control, and CI/CD platforms such as GitHub Actions, GitLab, or Jenkins. Implement and govern SAST, DAST, SCA, secrets detection, container and image scanning, infrastructure-as-code scanning, API testing, license analysis, and risk-based pipeline controls.