DevSecOps Engineer – Remote Work Type
25k - 33k PLN25 000 - 33 000 PLN/ mies.B2B
SeniorFull-time·B2B
#433887·Dodano 4 dni temu·2
Źródło: DirectioTech Stack / Keywords
CloudAzureKubernetesDevOpsSecurityArchitectureCI/CDAzure DevOps
Firma i stanowisko
Directio is a global IT services company providing cloud-based and mobile application support with offices in Poland, the Philippines, Mexico, and the USA. They serve FMCG, retail, automotive, and SaaS clients, focusing on digital transformation.
Wymagania
- 5+ years professional experience in Platform Engineering, DevOps, or similar role.
- Strong hands-on experience with Microsoft Azure and Kubernetes/AKS in production environments.
- Hands-on experience in security engineering with ownership of security-related processes.
- Experience with technical aspects of ISO 27001 or equivalent security framework, or managing vulnerability management end-to-end.
- Practical knowledge of security tooling and practices: external attack surface monitoring, DAST, SAST, SCA, secrets scanning, container scanning, cloud security posture management.
- Experience with Azure DevOps and CI/CD pipelines.
- Experience with Infrastructure as Code and infrastructure automation.
- Scripting and automation skills using Bash, PowerShell, or Python.
- Comfortable documenting technical processes and security controls; clear communication to customers, security teams, and auditors.
- Ability to independently prioritize tasks and take ownership in a small, senior team environment.
- Fluent in English.
Nice to have:
- Knowledge of Estonian or German.
- Experience with enterprise or banking customers and supporting security audits.
- Experience supporting security certification programs.
- Experience with modernization projects involving migration from monolithic architectures to services.
Obowiązki
- Run and maintain the platform with Azure, AKS, deployments, upgrades, incident response, and on-call support.
- Build and operate infrastructure for migration from monolithic architecture to services, including environments, CI/CD pipelines in Azure DevOps, Infrastructure as Code, monitoring, and alerting.
- Manage external attack surface, maintain inventory of internet-facing assets, monitor exposures, and address vulnerabilities.
- Integrate security into Azure DevOps and Kubernetes delivery pipelines: code, dependency, secrets, container, and Infrastructure as Code scanning.
- Establish and maintain Azure and Microsoft 365 security baseline, including identity and access management, MFA, cloud security posture, Microsoft Defender, and access management.
- Manage vulnerability management process end-to-end: identify vulnerabilities, coordinate fixes, verify resolution, and maintain evidence.
- Responsible for technical security controls supporting ISO 27001 certification program.
- Provide technical input for customer security questionnaires and audits; participate in discussions with customers and auditors.
- Support penetration testing activities with an external partner, including scope definition, coordination, and remediation follow-up.
- Automate operational and security processes and continuously improve platform reliability and security.
Benefity
- Salary: 25,000 - 33,000 PLN netto on B2B contract.
- Private healthcare.
- Multisport card.
- Trainings.
Opieka zdrowotna
Karta sportowa
Dofinansowanie szkoleń
Directio
9 aktywnych ofert