TL;DR
DevSecOps Engineer (Cybersecurity): Embedding security-first practices throughout the entire DevOps lifecycle, securing CI/CD pipelines, infrastructure, and applications. Focus on designing and implementing automated security gates, proactively identifying and remediating vulnerabilities, and establishing security testing standards.
Location: Spain (Madrid or Barcelona)
Company
hirify.global is a global leader in cybersecurity, protecting organizations with the world’s most advanced AI-native platform, processing nearly 3 trillion events per day.
What you will do
- Embed security controls throughout the DevOps lifecycle and design automated security gates in CI/CD pipelines.
- Build security-as-code frameworks and automate compliance checks across cloud infrastructure (AWS, GCP).
- Proactively identify and remediate security vulnerabilities in applications, containers, and infrastructure.
- Conduct threat modeling for new services and features and perform risk assessments.
- Execute comprehensive security testing (SAST, DAST, SCA) and perform security-focused code reviews.
- Respond to security incidents, collaborate with SOC teams, and conduct post-incident reviews.
Requirements
- 3+ years of experience in DevOps, Security Engineering, or related roles.
- Strong programming skills in Python or Go for automation and tooling.
- Deep knowledge of AWS (EC2, S3, VPC, Security Groups, CloudTrail).
- Hands-on experience with containerization (Docker, Kubernetes), IaC (Terraform, CloudFormation), and CI/CD (GitHub Actions, Jenkins, GitLab CI).
- Strong understanding of OWASP Top 10, secure coding practices, network security, and secrets management.
- Experience with security tools including vulnerability scanners, SAST/DAST, and container security.
Nice to have
- Security certifications (AWS Security Specialty, CKS).
- Contributions to open-source security projects.
- Familiarity with zero-trust architecture principles.
Culture & Benefits
- Remote-friendly and flexible work culture.
- Market leader in compensation and equity awards.
- Comprehensive physical and mental wellness programs.
- Competitive vacation, holidays, and paid parental/adoption leaves.
- Professional development opportunities for all employees.
- Employee Networks, geographic neighborhood groups, and volunteer opportunities to build connections.
Будьте осторожны: если вас просят войти в iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →