Careers
Senior DevSecOps Specialist
NEWRemote (anywhere except Russia and Belarus, schedule GMT+3)Full-timeGlobal
š Midš Remote
RemoteRemote work position availableActivePosted within the last 30 days
Job Description
[AI-summarized by JobStash]
You will design, build, and maintain security monitoring for cloud infrastructure, detect and respond to incidents, and investigate vulnerabilities in code and infrastructure. You will support development teams on secure development practices, configure SAST and secret-detection tools, secure CI/CD and GitHub workflows, and analyze attack vectors to prioritize remediation.
Requirements
- ā1+ year of experience working with AWS (IAM, cloud architecture, etc.)
- ā1+ year of experience securing Kubernetes environments
- āExperience with Cloudflare products (WAF, API Shield, etc.)
- āExperience configuring SAST tools (SonarQube, CodeQL, etc.)
- āExperience securing CI/CD processes in GitHub
- āUnderstanding and ability to analyze Infrastructure-as-Code (Terraform, Terragrunt, etc.)
- āExperience in identifying and investigating information security incidents
- āUnderstanding of security-by-design principles
Responsibilities
- āBuild and maintain security monitoring for AWS infrastructure
- āIdentify and respond to security incidents in AWS
- āDetect and remediate vulnerabilities in code and infrastructure
- āSupport development teams on secure development practices
- āEnsure security of backend infrastructure and public APIs
- āConfigure and maintain GitHub security and CI/CD protections
- āSet up and manage SAST tools and secret detection
- āAnalyze attack vectors and prioritize remediation of infrastructure vulnerabilities
Benefits & Perks
- āRemote work from anywhere in the world excluding Russia and Belarus (schedule aligned with GMT+3)
- ā20 working days of paid vacation
- āBirthday presents
- āCompensation for purchase of necessary technical devices for work
- āPaid sick leaves
- āStability
Tech Stack
Infrastructure-as-Codesecurity monitoringWAFTerragruntIAMvulnerability managementSASTGitHubAPITerraformproject:Tangem AG