Apply

Senior DevSecOps Engineer

Posted 2024-10-24

View full description

💎 Seniority level: Senior, Several years

💸 Salary: 136000 - 184000 USD per year

🔍 Industry: Web Development

🗣️ Languages: English

⏳ Experience: Several years

🪄 Skills: DevOps

Requirements:
  • Several years of experience in SRE, devops, security or related roles.
  • Previous experience in a mixed role involving security and system operations.
  • Proven experience working in hyperscale cloud environments.
  • Demonstrated ability to lead security and infrastructure projects.
  • Proficient in managing and securing cloud-based environments.
  • Strong understanding of network protocols, configurations, and encryption technologies.
  • Experience with automation tools (e.g., Ansible, Terraform) and scripting languages (e.g., Python, Bash, Golang).
  • Familiarity with compliance requirements and frameworks: PCI, ISO 2701, HIPAA, SOC 2.
  • Experience automating component deployment using tools like Jenkins, CircleCI, or GitHub Actions.
  • Proficient in observability and log analysis techniques.
Responsibilities:
  • Operate and manage security tools (e.g., SIEM, IDS/IPS) to monitor security posture.
  • Manage the full infrastructure lifecycle from design to decommission ensuring security and compliance.
  • Participate in an on-call rotation for related systems.
  • Monitor security systems for anomalies and respond to incidents.
  • Automate routine tasks and develop tools for efficiency.
  • Conduct system performance tuning, troubleshooting, and capacity planning.
  • Create and test disaster recovery plans.
  • Perform regular security assessments, including penetration testing.
  • Educate team members on security best practices.
Apply

Related Jobs

Apply

🧭 Full-Time

🔍 Travel-tech

  • Strong self-discipline and ability to work without micromanagement.
  • Clear and concise communication skills.
  • Capability to manage multiple projects simultaneously.
  • Analytical mindset with keen attention to detail.
  • Cognizance and tolerance of cultural differences.

  • Implement and manage DevSecOps practices to ensure security throughout the software development lifecycle.
  • Collaborate with development teams to integrate security measures into the deployment process.
  • Oversee multiple projects, prioritizing tasks to meet deadlines and deliver quality results.
Posted 2024-11-21
Apply
Apply

🔍 Football intelligence technology

🏢 Company: SumerSports

  • Strong expertise in Python and libraries for machine learning and data processing.
  • Extensive experience with Kubernetes, including deployments and management of containerized applications.
  • Hands-on experience with AWS security solutions.
  • Extensive knowledge of security protocols, cryptography, and vulnerabilities.
  • Strong experience with automation tools and scripting languages like Python and Bash.
  • Proficient in using security tools such as OWASP ZAP and Fortify.
  • Deep understanding of secure coding practices and threat modeling.
  • Familiarity with regulatory compliance requirements like GDPR and HIPAA.
  • Experience with automation frameworks like Jenkins and GitLab CI.
  • Excellent collaboration and communication skills.

  • Develop, implement, and lead security strategies throughout the development lifecycle to enhance security posture.
  • Integrate security tools into CI/CD pipelines for efficient automated testing.
  • Continuously assess and mitigate security risks and manage vulnerability remediation.
  • Foster a security-first culture by leading training sessions.
  • Ensure compliance with legal and regulatory policies.
  • Develop and maintain security documentation.
  • Innovate security solutions to streamline processes.
  • Collaborate with cross-functional teams to maintain a unified security approach.
  • Conduct regular security assessments and respond to incidents effectively.
Posted 2024-11-07
Apply
Apply

📍 US

🧭 Full-Time

💸 104700 - 120000 USD per year

🔍 Healthcare workforce management

🏢 Company: QGenda

  • Experience implementing security tooling in CI/CD platforms, including SCA and SAST tools.
  • Ability to participate in software architecture discussions for security best practices.
  • Deep knowledge and experience with AWS Security tools such as GuardDuty, SecurityHub, Inspector, and Config.
  • Proven experience developing, operating, and maintaining security systems.
  • Knowledge of DevOps Automation tools and experience with Terraform.
  • Extensive knowledge of operating system, network, and database security.
  • Experience with security tools such as Wiz and Mend/Snyk, or equivalent.
  • Proficiency in networking technologies and network monitoring solutions.
  • Knowledge of security systems including anti-virus applications, firewalls, and intrusion detection.
  • In-depth knowledge of security protocols and principles.
  • Knowledge of the implementation of risk assessment techniques and security best practices.
  • Bachelor's degree from an accredited college or university or equivalent industry experience.

  • Collaborate with Development, Operations, and Security Teams to integrate security into the CI/CD pipeline.
  • Lead projects to implement tools such as SAST, DAST, and SCA.
  • Identify and recommend changes for security design gaps.
  • Design, implement, and maintain security automation tools and processes.
  • Manage AWS security services such as GuardDuty, SecurityHub, Inspector, and Config.
  • Perform regular security assessments and coordinate penetration tests.
  • Communicate security metrics across various levels of the organization.
  • Lead security audits to ensure adherence to SOC and FedRAMP standards.

AWSLeadershipSoftware DevelopmentCybersecuritySoftware ArchitectureCollaborationCI/CD

Posted 2024-10-22
Apply
Apply

📍 Germany, UK, Portugal

🧭 Full-Time

🔍 Blockchain

🏢 Company: Parity Technologies

  • A focus on outcomes rather than activities and outcome-based delivery.
  • Ability to partner with multiple teams to tackle issues, clarify requirements, and communicate with stakeholders.
  • Comfortable with a Linux-based tech stack including managed VMs, SSH, VPNs, and firewalls.
  • Experience with Kubernetes (including managed), Terraform, Ansible, GitHub, GitLab, ArgoCD, image registries.
  • Experience with cloud platforms including Google Cloud and non-managed providers.
  • Understanding of blockchain tech and associated tooling is a plus.

  • Advising Infra Engineering and IT teams on security topics and supporting their work from the security standpoint.
  • Automation of security controls, security hardening of the developer and IaC processes, and supply chain security.
  • Organising and performing penetration testing of our infrastructure and collaborating with external parties on those tests.
  • Writing and enabling adoption of company-wide security standards and guidelines, and implementing tools and automation for their deployment.
  • Mentoring other team members on matters related to security and IT and infrastructure engineering.

BashBlockchainCybersecurityEthereumGitKubernetes*NixWeb3.jsCommunication SkillsAnalytical SkillsCollaborationCI/CDMentoringTerraform

Posted 2024-10-17
Apply
Apply

🧭 Full-Time

🔍 School safety software

  • Approximately 10 years of senior level experience in a DevSecOps or Production Engineering position.
  • Experience in a mentoring or leadership role.
  • Familiarity with deployment pipeline technologies such as Jenkins, Azure DevOps, AWS Code Pipeline, GitLab.
  • Active knowledge of DevOps automation tools like Terraform and GitHub.
  • Strong understanding of security concepts including threat modeling and risk assessment.
  • Experience with cloud environments, container security, and CI/CD practices.
  • Proficient in scripting languages like Bash or Python.
  • Excellent analytical and interpersonal skills.
  • Knowledge of security areas such as Key Management Systems and Vulnerability Scanning is a plus.

  • Lead and be hands-on-keyboard in defining, designing, and implementing build, deployment, security, and monitoring standards.
  • Collaborate with development teams to build and maintain CI/CD pipelines.
  • Administer DevOps tools including version control, build automation, and container orchestration.
  • Enforce security compliance in collaboration with security teams.
  • Implement monitoring systems for production environments.
  • Establish and monitor DORA metrics to assess performance.
  • Create dashboards for visibility into KPIs and operational metrics.
  • Manage deployment and upkeep of infrastructure and applications in cloud platforms.
  • Evaluate application/infrastructure performance and address bottlenecks.
Posted 2024-10-09
Apply