DevSecOps Engineer
6.0/10
Золотое Яблоко
Not specified
Remote
mid
26 days ago
devtechDevSecOpsCI/CDGitLab CIKubernetesDockerIaCAppSecOWASP Top 10
AI Summary
The vacancy is well-defined but lacks compensation details, affecting overall attractiveness.
Check Match — Just drop your CV
See your fit for DevSecOps Engineer in seconds.
Description
Responsibilities
- •Integrate and develop security checks in CI/CD pipelines (SAST, SCA, secrets scanning, container scanning, IaC) and configure release blocking rules.
- •Automate vulnerability control in services, libraries, and dependencies.
- •Ensure the security of container infrastructure (Docker, Kubernetes).
- •Implement and maintain secure secret management processes (Vault / cloud solutions).
- •Check and enhance security of infrastructure as code and configurations (IAM, service accounts, cloud).
- •Automate checks for common vulnerabilities and attack patterns identified by AppSec.
- •Configure security rules and policies affecting the release process.
- •Optimize pipeline for speed and quality of security checks.
- •Reduce manual checks through automation.
- •Implement security requirements, including those formulated by AppSec in CI/CD and infrastructure.
Requirements
Requirements
- •2+ years of DevSecOps experience.
- •Practical experience with CI/CD (GitLab CI).
- •Experience with Kubernetes and container infrastructure.
- •Understanding of microservices architecture.
- •Experience implementing security checks (SAST, SCA, secrets, containers, IaC).
- •Understanding of common vulnerabilities (OWASP Top 10) and prevention methods.
- •Ability to build processes, not just use tools.
- •Experience interacting with development and balancing security and speed requirements.
Loading similar jobs...