The Mission
As a DevSecOps Engineer, your mission will be to support the integration of security practices within our development and operations teams. You will work closely with engineers and other stakeholders to implement secure coding practices, automate security processes, and help ensure that security is a fundamental aspect of our continuous delivery pipelines.
Seniority: Senior level experience in a DevSecOps or similar role, with a focus on security
Employment Type: Employee or Contractor
Schedule: Full-time
Work Arrangement: Remote possible, with availability for in-person gatherings, collaboration sessions as well as team-buildings
Implement and advocate for security best practices within the CI/CD pipeline, ensuring that security is a fundamental part of the development process.
Collaborate with development, operations, and security teams to address security vulnerabilities and ensure secure software delivery (SSDLC).
Participate in code reviews to identify security issues and suggest improvements.
Develop and maintain automated security testing tools and scripts to streamline security checks and ensure continuous compliance.
Monitor security tools and systems to detect and respond to security events.
Stay current with industry trends, emerging technologies, and security best practices.
Ensure that all systems comply with relevant security standards and regulations together with our Security Officer.
Must Have:
Basic understanding of software development and IT operations.
Familiarity with programming languages such as Python, Java or Shell scripting.
Understanding of basic security concepts and principles.
Exposure to cloud platforms (e.g., AWS) and containerization technologies (e.g., Docker, k8s).
Strong problem-solving skills and eagerness to learn.
Nice to Have:
Hands-on experience with CI/CD tools (e.g. GitLab CI/CD).
Basic knowledge of security tools (e.g., SAST, DAST).
Familiarity with infrastructure as code (IaC) tools such as Terraform or Ansible.
Previous internship or experience in a DevOps, security, or related field.
What we value:
Ownership: A strong ability to take ownership and move towards shared goals without supervision.
Collaboration: A positive, can-do attitude with a no-excuse, startup mindset, clear honest and timely communication.
Innovation: A fervent passion to learn new skills and technologies, seeking improvement, being open to new ideas, and making data-driven decisions.
Adaptability: Thriving in a fast-paced and evolving environment, being flexible and ready to take on new challenges.