A DevSecOps Engineer is responsible for integrating security practices into the entire software development lifecycle, ensuring applications, infrastructure, and operations are secure. This role blends development, operations, and security expertise to maintain high-availability systems and proactively manage security risks and compliance.
Requirements
- Strong knowledge of cloud platforms (AWS, GCP, Azure)
- Proficiency in scripting/programming (Python, Bash, Go, TypeScript)
- Experience with CI/CD tools (GitLab, Jenkins, CircleCI) and integrating security into pipelines
- Hands-on experience with Kubernetes, Docker, and container security tools (Trivy, Clair, Anchore)
- Familiarity with infrastructure as code (Terraform, Pulumi) and securing IaC workflows
- Understanding of network security, identity and access management, secrets management (Vault, AWS Secrets Manager)
- Knowledge of monitoring and logging tools (Prometheus, Grafana, OpenTelemetry)
- Strong understanding of security standards (ISO27001, SOC 2, GDPR, NIST)
- Knowledge of security automation frameworks and policy-as-code tools
- Familiarity with zero-trust architectures and microservices security patterns
- Strong interest in penetration testing, red teaming, or security audits
Benefits
- Learning support
- Unique loyalty program
- Team retreats
- Memorable events with wow prizes
- Employee of the Month award
- Flexible days off
- New career tracks
- Work-life fit