Jobs
SecDevOps Engineer
ParisFull-timeGlobal
š Midš Hybrid
Job Description
[AI-summarized by JobStash]
You will integrate security practices into development and deployment processes for decentralized applications, blockchain networks, and SaaS services. You will implement security controls, run vulnerability scans and penetration tests, integrate security tools into CI/CD pipelines, set up monitoring and alerts, develop incident response procedures, document configurations, and support compliance and audits.
Requirements
- āBachelor's degree in computer science, information security, or related field
- ā3 years of proven experience in DevOps and security
- āExperience integrating security best practices into the Software Development Lifecycle
- āExperience with security tools such as Metasploit, Burp Suite, OWASP ZAP
- āUnderstanding of security standards and frameworks such as ISO 27001, NIST, GDPR
- āExcellent communication and collaboration abilities
- āAbility to work in a fast-paced, innovative environment
- āCertifications in DevOps, Security, or Blockchain (e.g., CKA, CISSP, CBP) preferred
- āExperience with cloud platforms (AWS, GCP, Azure) and IaC tools (Terraform, Ansible) preferred
- āKnowledge of blockchain security including key management, cryptographic algorithms, and consensus mechanisms preferred
- āExperience with DeFi, DEXs, and other Web3 technologies preferred
- āContributions to open-source blockchain or security projects preferred
Responsibilities
- āImplement security best practices for blockchain networks, smart contracts, key management systems and web applications
- āConduct security assessments, vulnerability scans, and penetration testing for all components
- āIntegrate security tools and processes into CI/CD pipelines to ensure continuous security validation
- āSet up and manage monitoring and alerting systems for blockchain network and web app security issues
- āDevelop security-related incident response strategies and participate in on-call rotations
- āCollaborate with development and security teams to identify and mitigate security risks
- āDocument security practices, incident response procedures, and infrastructure configurations
- āEnsure deployments comply with industry regulations and security standards
- āParticipate in audits and security reviews and implement recommendations
Tech Stack
GDPRpenetration testingAzureGCPincident responseTerraformNISTMetasploitDevOpsproject:Zama