DevSecOps Engineer (EU)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
DevSecOps Engineer (EU): Operationalizing DORA-compliant Secure SDLC and integrating security tools into CI/CD pipelines with an accent on Jenkins shared libraries, security gates, and compliance checks. Focus on developing modular pipelines, conducting risk assessments, threat modeling, and ensuring auditable documentation for automotive financing platform.
Location: Albania, Austria, Belgium, Bosnia and Herzegovina, Bulgaria, Croatia, Cyprus, Czech Republic, Denmark, Estonia, Finland, France, Germany, Hungary, Italy, Kosovo, Latvia, Lithuania, Luxembourg, Norway, Poland, Portugal, Romania, Slovakia, Slovenia, Spain, Sweden, Switzerland, The Netherlands
Salary: EUR 3600-5400 per month (gross). Final compensation depends on experience and location.
Company
International outsourcing company cooperating with brands like Siemens, Johnson & Johnson, AstraZeneca, BNP Paribas, Allianz, Ryanair, TUI, Verivox, Media Markt on projects including automotive financing platforms.
What you will do
- Operationalize DORA-compliant Secure SDLC and integrate security into development workflows and CI/CD.
- Implement and configure security tools like SAST, DAST, SCA, SBOM into pipelines.
- Define security gates with automated validation and develop modular Jenkins shared libraries.
- Conduct risk assessments, support threat modeling, and create guidelines for third-party components.
- Ensure auditable documentation and support governance for secure development.
- Collaborate with architects, developers, product owners, and stakeholders.
Requirements
- 5+ years in DevOps or Systems Engineering.
- Several years in DevSecOps, Application Security, or Secure SDLC.
- Experience integrating security tools into CI/CD.
- Strong Jenkins knowledge, especially Groovy-based shared libraries for security gates.
- Practical experience with CLI security tools and Jenkins plugins (SAST, SCA, SBOM).
- Knowledge of CI/CD platforms (GitLab, GitHub), regulatory requirements (DORA desirable).
- Very good German and English; English from Intermediate+ (B2)
Nice to have
- Structured, independent working style with high technical implementation strength.
- Ability to integrate security into processes and strong communication skills.
- Solution-oriented, hands-on mentality.
- Knowledge of German.
Culture & Benefits
- Mentoring, adaptation, transparent performance reviews, and growth paths.
- Access to educational platforms, seminars, knowledge base, and continuous learning support.
- Streamlined processes in expert teams with informal communication.
- Stable competitive salary, extensive benefits package, and rewards for specialist or managerial growth.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →