Senior DevSecOps Engineer (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Senior DevSecOps Engineer (AWS/Kubernetes): Strengthening the security of cloud-native infrastructure and development pipelines with an accent on SDLC security integration, IaC, and Kubernetes hardening. Focus on automating security controls, designing secure CI/CD pipelines, and optimizing system reliability across cloud and on-prem environments.
Location: Tel Aviv
Company
is an AI-driven cybersecurity company that protects nations and critical infrastructure using proprietary Cyber Language Models.
What you will do
- Integrate security practices into CI/CD pipelines across the entire software development lifecycle (SDLC).
- Design and implement automated security solutions for vulnerability scanning, compliance checks, and threat detection.
- Build and maintain secure, scalable cloud environments using Infrastructure as Code (Terraform, Ansible).
- Manage and harden Kubernetes workloads, focusing on configuration, access control, and image security.
- Conduct security assessments, penetration testing, and compliance audits to improve the security posture.
- Enhance observability by integrating monitoring, logging, and SIEM solutions.
Requirements
- 5-8 years of experience in DevOps/Security with a focus on secure infrastructure and application security.
- Expertise in cloud security (AWS, GCP, Azure) and IaC tools like Terraform and Ansible.
- Experience integrating security into CI/CD pipelines using Jenkins, GitHub Actions, and ArgoCD.
- Proficiency in security practices (SAST, DAST, SCA, secret scanning) and compliance frameworks (CIS, NIST, ISO 27001, SOC2).
- Strong scripting skills in Python and Bash for automating security tasks.
- Knowledge of zero-trust models, IAM, and secrets management.
Nice to have
- Experience securing endpoint products such as agents, sensors, or collectors.
- Background in AI security, including securing ML models and training pipelines.
- Hands-on experience with policy as code tools like OPA (Open Policy Agent) or Kyverno.
- Familiarity with compliance frameworks like HIPAA, PCI-DSS, or FedRAMP.
Culture & Benefits
- Opportunity to work at the intersection of AI and cybersecurity to protect critical infrastructure.
- Collaborative environment driven by passion, expertise, and innovative minds.
- Focus on tackling real-world challenges and redefining cyber defense vision.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →