Золотое Яблоко

DevSecOps Engineer

6.0/10

Золотое Яблоко

Not specified
Remote
mid
26 days ago
devtechDevSecOpsCI/CDGitLab CIKubernetesDockerIaCAppSecOWASP Top 10

AI Summary

The vacancy is well-defined but lacks compensation details, affecting overall attractiveness.

Check Match — Just drop your CV

See your fit for DevSecOps Engineer in seconds.

Description

Responsibilities

  • Integrate and develop security checks in CI/CD pipelines (SAST, SCA, secrets scanning, container scanning, IaC) and configure release blocking rules.
  • Automate vulnerability control in services, libraries, and dependencies.
  • Ensure the security of container infrastructure (Docker, Kubernetes).
  • Implement and maintain secure secret management processes (Vault / cloud solutions).
  • Check and enhance security of infrastructure as code and configurations (IAM, service accounts, cloud).
  • Automate checks for common vulnerabilities and attack patterns identified by AppSec.
  • Configure security rules and policies affecting the release process.
  • Optimize pipeline for speed and quality of security checks.
  • Reduce manual checks through automation.
  • Implement security requirements, including those formulated by AppSec in CI/CD and infrastructure.

Requirements

Requirements

  • 2+ years of DevSecOps experience.
  • Practical experience with CI/CD (GitLab CI).
  • Experience with Kubernetes and container infrastructure.
  • Understanding of microservices architecture.
  • Experience implementing security checks (SAST, SCA, secrets, containers, IaC).
  • Understanding of common vulnerabilities (OWASP Top 10) and prevention methods.
  • Ability to build processes, not just use tools.
  • Experience interacting with development and balancing security and speed requirements.
Loading similar jobs...