6 дней назад
Freelance Senior DevSecOps Engineer
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Freelance Senior DevSecOps Engineer (Kubernetes/Cloud Security): Owning infrastructure security and vulnerability management across Kubernetes, service meshes, and AWS/GCP/Azure environments with an accent on cloud hardening, automated scanning, and policy-as-code enforcement. Focus on securing multi-cloud infrastructure, remediating vulnerabilities to defined SLAs, auditing new environments, and reviewing AI-enabled systems for security risks.
Location: Fully remote within the European Union, Kazakhstan, Georgia, Armenia, or Serbia
Company
Builds data infrastructure that powers generative AI models for research organizations, technology companies, and enterprises worldwide.
What you will do
- Own vulnerability management, including container image scanning, supply-chain tooling, severity classification, and remediation SLAs.
- Harden AWS, GCP, and Azure environments, covering logging, IAM, service-account governance, and network security.
- Secure Kubernetes and service-mesh environments and roll out policy-as-code enforcement.
- Audit infrastructure and build pipelines in newly added environments and remediate security findings.
- Review integrations, internal systems, and production AI agents for security risks.
- Support workforce and endpoint-security initiatives and use coding agents to review infrastructure configuration and cloud policies.
Requirements
- Senior-level experience independently defining scope, priorities, and execution plans.
- Production experience hardening cloud infrastructure, including IAM, logging, service accounts, and network security.
- Experience with Kubernetes, containers, service meshes such as Cilium or Istio, and policy-as-code tools such as Kyverno or OPA.
- Experience with vulnerability management, SCA/SAST tooling, and SLA-driven remediation.
- Experience using coding or agentic tools for infrastructure-as-code review and verifying their findings.
- Clear written and verbal communication for design reviews and communicating risk to engineers and leadership.
Nice to have
- Experience securing multi-tenant or multi-identity-domain environments.
- Supply-chain security experience with SBOM, Socket, JFrog, or similar tools.
- Secure-SDLC, AppSec, or large-scale Terraform/IaC experience.
- Relevant AWS, GCP, Azure, or CKS certifications.
Culture & Benefits
- B2B contract collaboration with a potential path into a project team.
- Fully remote schedule within the listed locations, 40 hours per week.
- Work on AI-focused projects with leading industry customers.
- Friendly community and collaboration with a distributed team of security and technology experts.
Hiring process
- Initial onboarding covers the cloud environment, Kubernetes architecture, and existing security tooling.
- First six months focus on establishing ownership of vulnerability management, supply-chain scanning, policy-as-code, cloud hardening, infrastructure audits, and security-architecture reviews.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →