DevSecOps & Application Security Lead

New
J
JustMarketsSecurity, Technology
Remote, EuropeFull-TimeLead
Salary not disclosed
Apply NowOpens the employer's application page

Job Details

Languages
English
Experience
5+ years of experience in DevOps, SRE, Platform Engineering, or related infrastructure/security roles; 3+ years focused on DevSecOps and Application Security; 1+ years in a lead/ownership role
Required Skills
PythonBashCI/CD

Requirements

  • 5+ years of experience in DevOps, SRE, Platform Engineering, or related infrastructure/security roles
  • 3+ years focused on DevSecOps and Application Security
  • 1+ years in a lead/ownership role
  • Deep understanding of modern software development, Git workflows, and hands-on experience integrating security checks into CI/CD pipelines
  • Practical experience with SAST, SCA, secrets scanning, and vulnerability management
  • Ability to select and scale security tools based on accuracy and developer experience
  • Strong knowledge of web/API/mobile risks (OWASP Top 10, auth, supply-chain risks)
  • Ability to run threat modeling and secure design reviews
  • Good scripting skills (Python, Bash, or similar)
  • Understanding of cloud-native/containerized environments
  • Ability to write clear security requirements and guidelines for developers
  • English - Intermediate+ or higher

Responsibilities

  • Build the DevSecOps/AppSec function from scratch, and create the roadmap, KPIs, and metrics for leadership
  • Create secure development processes, including release security gates and vulnerability management
  • Choose, configure, and integrate security scanners (SAST, SCA, secrets) with a focus on automation and AI-assisted workflows
  • Integrate security checks into pipelines and development processes together with Engineering, DevOps, and Product teams
  • Run threat modeling and security reviews for high-risk systems and major architecture changes
  • Create clear security standards, checklists, and practical guidelines for developers (covering code, APIs, and secrets)
  • Launch and grow a Security Champions program to involve engineers in security processes
  • Help investigate incidents related to application vulnerabilities, leaked secrets, and supply-chain attacks
View Full Description & ApplyYou'll be redirected to the employer's site
View details
Apply Now