Назад
Company hidden
обновлено 11 дней назад

Mid-Level DevSecOps Engineer (CI/CD and Security Integration)

Формат работы
hybrid
Тип работы
fulltime
Грейд
middle
Английский
b2
Страна
Portugal/Europe
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Mid-Level DevSecOps Engineer (CI/CD and Security Integration): Designing and maintaining industrial CI/CD pipelines with integrated security controls, dependency management, vulnerability scanning, and SBOM generation with an accent on GitLab CI, Azure DevOps, Jenkins, Artifactory, and JFrog Xray. Focus on automating secure software delivery across multiple projects, optimizing pipeline reliability, and managing compliance-oriented security workflows.

Location: Portugal, hybrid with remote work available up to 2 days per week. Existing legal right to work in the European Union is required.

Company

hirify.global provides technology professionals for client projects focused on innovative software solutions and digital transformation.

What you will do

  • Design, implement, and maintain CI/CD pipelines across multiple projects using GitLab CI, Azure DevOps, Jenkins, or equivalent tools.
  • Develop dependency management processes with Artifactory or similar repositories.
  • Integrate security controls, security scanning, vulnerability management, and compliance checks into CI/CD workflows.
  • Manage tools such as JFrog Xray and maintain Software Bill of Materials using CycloneDX, SPDX, or similar standards.
  • Collaborate with development and security teams to improve pipeline automation and monitor pipeline performance, uptime, and reliability.
  • Apply current DevSecOps practices and emerging security methodologies.

Requirements

  • More than 3 years of experience in DevOps, CI/CD, and security integration.
  • Strong proficiency with GitLab CI, Azure DevOps, Jenkins, or equivalent CI/CD tools.
  • Experience designing and maintaining pipelines across multiple projects.
  • Knowledge of dependency management, repositories, Artifactory, JFrog Xray, security scanning, and vulnerability management.
  • Understanding of SBOM standards including CycloneDX and SPDX.
  • Good command of English and French.

Nice to have

  • DevSecOps or Cloud Security certifications.
  • Familiarity with containerization and orchestration technologies.

Culture & Benefits

  • Hybrid work arrangement in Portugal.
  • Collaboration with development and security teams.
  • Exposure to innovative software solutions and digital transformation initiatives.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →