DevSecOps & Application Security Lead
New
J
JustMarketsSecurity, Technology
Remote, EuropeFull-TimeLead
Salary not disclosed
Apply NowOpens the employer's application page
Job Details
- Languages
- English
- Experience
- 5+ years of experience in DevOps, SRE, Platform Engineering, or related infrastructure/security roles; 3+ years focused on DevSecOps and Application Security; 1+ years in a lead/ownership role
- Required Skills
- PythonBashCI/CD
Requirements
- 5+ years of experience in DevOps, SRE, Platform Engineering, or related infrastructure/security roles
- 3+ years focused on DevSecOps and Application Security
- 1+ years in a lead/ownership role
- Deep understanding of modern software development, Git workflows, and hands-on experience integrating security checks into CI/CD pipelines
- Practical experience with SAST, SCA, secrets scanning, and vulnerability management
- Ability to select and scale security tools based on accuracy and developer experience
- Strong knowledge of web/API/mobile risks (OWASP Top 10, auth, supply-chain risks)
- Ability to run threat modeling and secure design reviews
- Good scripting skills (Python, Bash, or similar)
- Understanding of cloud-native/containerized environments
- Ability to write clear security requirements and guidelines for developers
- English - Intermediate+ or higher
Responsibilities
- Build the DevSecOps/AppSec function from scratch, and create the roadmap, KPIs, and metrics for leadership
- Create secure development processes, including release security gates and vulnerability management
- Choose, configure, and integrate security scanners (SAST, SCA, secrets) with a focus on automation and AI-assisted workflows
- Integrate security checks into pipelines and development processes together with Engineering, DevOps, and Product teams
- Run threat modeling and security reviews for high-risk systems and major architecture changes
- Create clear security standards, checklists, and practical guidelines for developers (covering code, APIs, and secrets)
- Launch and grow a Security Champions program to involve engineers in security processes
- Help investigate incidents related to application vulnerabilities, leaked secrets, and supply-chain attacks
View Full Description & ApplyYou'll be redirected to the employer's site