TL;DR
Senior DevOps Engineer (Fintech): Leading the design, guidance, and automation of cloud infrastructure security for a Brokerage-as-a-Service platform with an accent on robust, secure, and scalable solutions. Focus on embedding and operating security controls throughout the delivery lifecycle and designing vulnerability management programs.
Location: Hybrid in the EU/Germany (onsite first, but remote flexible with quarterly team offsites). Work from anywhere in the EU for up to 60 days per year. Relocation assistance and visa sponsorship to Berlin are available.
Company
hirify.global provides a Brokerage-as-a-Service platform, offering digital access to capital markets through an API for FinTechs, Banks, and Wealth Managers to provide investment products.
What you will do
- Lead the design, guidance, and automation of cloud infrastructure security.
- Develop proactive strategies and solutions to ensure security is embedded in everything we do.
- Play a key role in building and expanding the brokerage API offering.
- Expand and improve the existing Trading API product to become a leading API for developers.
Requirements
- Proven experience with AWS infrastructure and services, including security fundamentals (VPC, Security Groups, Guard Duty, Control Tower, CloudTrail).
- Experience securing Kubernetes, applying network policies, admission controls, OPA/policy-as-code, and service-mesh-aware security patterns.
- Understanding of the Software Development Lifecycle (SDLC) and its tooling (GitHub, CI/CD), with experience embedding security controls.
- Proficiency with IaC and Configuration management tools such as Terraform and Helm charts.
- Hands-on experience with network and identity security, including firewalls/WAF, PKI/certificates, identity providers (IdP/SSO), and RBAC/least-privilege access controls.
- Hands-on experience designing and operating a Vulnerability Management program end-to-end (SAST, DAST, SCA, container/image scanning, cloud/Kubernetes posture scanning, and runtime anomaly detection).
- Prior experience in a Fintech, Financial Service provider (Bank, Insurance, Brokerage) or Cyber Security industry is preferred.
- English: B2 required.
Nice to have
- Hold any Security Certifications such as GSEC, CISSP, CCSP, CCSK, CISM, GCUX or SAST.
Culture & Benefits
- Competitive compensation package based on experience and value-add.
- Opportunity to shape tools, processes, and architecture design of the Platform & API.
- Flexible working hours with an emphasis on focus time and asynchronous communication.
- Support to build your perfect setup with MacBook, IDE, and productivity tools.
- Hybrid work model: Onsite first, but remote flexible with quarterly team offsites. Work from anywhere in the EU for up to 60 days per year.
- Commitment to personal development, mentorship, and continuous challenge.
- Flexible setting to accommodate family or personal passions.
- Deutschlandticket sponsorship and 50% off Beatvest for financial education.
Hiring process
- Initial call with Talent (30 minutes).
- Interview with the Hiring Manager (60 minutes).
- Take Home test and Review (45 minutes).
- Onsite team meeting at hirify.global HQ (120 minutes) including System Design and Principle Session.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →