Назад
Company hidden
2 часа назад

Senior DevSecOps Engineer

Формат работы
remote (только Europe)
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
Romania
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/

TL;DR

Senior DevSecOps Engineer (DevSecOps): Designing and managing security solutions across the SDLC for a global eSIM platform with an accent on CI/CD automation, API security, and cloud infrastructure protection. Focus on implementing robust security monitoring, vulnerability remediation, and ensuring compliance with international standards like SOC 2 and GDPR.

Location: Must reside in the CET timezone (or similar) and possess valid work authorization for their country of residence.

Company

hirify.global is the world’s first and largest eSIM store, providing seamless connectivity for travellers in over 200 countries.

What you will do

  • Design and manage security solutions within CI/CD pipelines and software development lifecycles.
  • Proactively identify and remediate vulnerabilities, including threat modeling and penetration testing.
  • Develop and maintain security monitoring and alerting systems to counter cyber attacks.
  • Lead compliance initiatives and audit readiness for SOC 2, ISO 27001, and GDPR.
  • Define secure coding standards and mentor engineering teams on DevSecOps principles.
  • Participate in a 24/7 on-call rotation with provided compensation and rest policies.

Requirements

  • 5+ years of experience in DevSecOps or Security Engineering.
  • 3+ years of hands-on experience with AWS cloud security and container orchestration.
  • 2+ years of experience with Kubernetes security.
  • Proficiency in infrastructure-as-code tools like Terraform and CI/CD platforms like GitHub Actions.
  • Strong background in vulnerability assessment, threat modeling, and incident response.
  • Proficiency in at least one programming language such as Python or Go for automation.

Nice to have

  • Relevant certifications like AWS Security Specialty, CISSP, or Security+.
  • Experience with AI-driven anomaly detection tools.
  • Understanding of Zero Trust principles.
  • Experience securing PHP (Laravel/Symfony) or JS (NuxtJS) applications.

Culture & Benefits

  • Fully remote team with annual international company retreats.
  • Generous paid time off policy.
  • Wellness and learning allowances provided to all team members.
  • Emphasis on engineering autonomy, ownership, and direct impact on global products.
  • Flexible hours and support for work-life balance, particularly following on-call incidents.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →