Назад
4 дня назад

DevSecOps Engineer (AWS)

Формат работы
hybrid
Тип работы
fulltime
Грейд
middle
Английский
b2
Страна
Netherlands
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний

Мэтч & Сопровод

Покажет вашу совместимость и напишет письмо

Описание вакансии

Текст:
/
TL;DR
DevSecOps Engineer (AWS): Building and securing Lepaya’s multi-account AWS cloud platform with an accent on Terraform infrastructure, CI/CD security automation, and cloud security posture management. Focus on embedding policy-as-code, compliance automation, observability, and secure-by-default infrastructure into the developer experience.

Location: Amsterdam, Netherlands; hybrid work with at least 3 office days per week. Candidates must be able to work in the Netherlands. Relocation support is not available.

Company

Lepaya is an international scale-up delivering blended workplace learning through its Portal, Academies, and App.

What you will do

  • Build and improve secure AWS infrastructure using Terraform, including least-privilege IAM, encryption, and network controls.
  • Embed dependency, container, secrets, and policy-as-code scanning into CI/CD pipelines.
  • Develop secure-by-default infrastructure modules for engineering teams.
  • Strengthen security across a multi-account AWS organization through identity management, threat detection, and vulnerability management.
  • Automate compliance evidence collection and support security audits.
  • Improve monitoring and observability with Grafana Cloud, OpenTelemetry, security signals, and alerting.

Requirements

  • At least 4 years of experience in DevOps, Platform, Cloud, or Security Engineering, preferably in a start-up or scale-up.
  • Hands-on experience with AWS, Terraform, CI/CD pipelines, Docker, and cloud-native orchestration services.
  • Strong understanding of IAM, hardening, encryption, network security, and secrets management.
  • Experience with security automation such as vulnerability scanning, SAST/SCA, policy-as-code, or cloud security posture management.
  • Scripting skills in Bash or Python and strong English communication skills.
  • Ability to work in the Netherlands and attend the Amsterdam office at least 3 days per week.

Nice to have

  • Experience with ISO 27001, SOC 2, or GDPR compliance.
  • Exposure to DAST tooling, offensive security, or software supply chain security.
  • Experience with GCP alongside AWS.
  • Experience with TypeScript.

Culture & Benefits

  • Flexible hours and a hybrid working arrangement with Tuesday and Thursday as anchor days.
  • Work from anywhere for up to 8 weeks per year.
  • Unlimited holidays and Lepaya Fridays every other Friday.
  • Health and wellbeing support through the work-to-live scheme and Empowr.
  • Learning and career development through Lepaya Academy and the internal hiring program.

Hiring process

  • Introductory video call with Talent Acquisition.
  • Interview with the engineering team followed by a technical case assignment and technical interview at the office.
  • Coffee chat, hiring manager discussion, and final offer stage.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →