Your role as a DevSecOps at Aqemia
- You will be responsible for the integration of security measures into every phase of the software development lifecycle as well as the acquisition, setup and maintenance of any Security tool we would need to safeguard the organization.
- As a DevSecOps Engineer, you will work closely with the Compute team lead (for prioritization), development teams (for education, awareness & training) and core G&A (onboarding, offboarding…) to implement security best practices, automate security processes, and enhance the overall security posture of the organization. This role requires a deep understanding of DevOps practices, cloud environments, and security technologies.
- Frictionless Security: the right path should be the easy path
- Participate in Threat Modeling and Asset Classification efforts
- Champion, educate and evangelize Security initiatives within the organisation
- Foster developer-security collaboration on secure coding practices and process-changing decisions
- Contribute to the Software Development Lifecycle and Supply Chain Assurance efforts
- Write Configuration, Infrastructure, Pipeline, Policy as Code and setup drift detection
- Secure the Cloud and connections from & to it
- Automate everything: Infrastructure, Pipelines, Policies, Scans, Remediations etc.
The competencies we are looking for
- Prior experience as a DevOps/DevSecOps within an engineering organisation
- Knowledge of "Infrastructures as Code (IaC)" technologies like Terraform (Pulumi and Crossplane are a plus)
- Previous experience securing CI/CD pipelines and doing Supply Chain Assurance (SLSA and TUF are a plus)
- Previous experience doing Application security (OWASP TOP 10, secrets management, MITRE ATT@CK, etc.)
- Previous experience remediating Penetration test findings
- Solid knowledge of Cloud infrastructure and products (AWS, other cloud experience is a plus)
- Solid knowledge of containerization and OCI tooling (runtimes, builders, registries)
- Solid knowledge of secure Kubernetes practices (OPA, Kyverno, Kustomize and Timoni are a plus)
- Solid knowledge of AuthN, AuthZ and Identity and Access Management (IAM) (e.g AWS IAM, OIDC, Kubernetes RBAC, etc. – Zero Trust is a plus)
- Experience with Compliance and Security Programs is a plus (ISO27001, SOC2, GDPR, NIST 800-53, 800218, OpenSSF, SLSA, etc.)
- Proficiency in Python is a plus
Preferred mindset
- You find the right balance between quality and fast iterations
- You focus on impactful changes with frictionless designs
- You know how to interact with technical stakeholders that are wary of security driven changes
- You are eager to play an active role in contributing to Aqemia’s strategy to develop drugs for patients.
- You are anxious to bring your wealth of knowledge and skills to the table to inspire and coach brilliant people from diverse backgrounds.
- You are keen to solve tough problems on issues that truly matter, with a proactive and a can-do attitude.
- You thrive on working collaboratively in a fast-paced, interdisciplinary environment that keeps everyone on track.
Our Process
- 1 - Hiring Manager’s interview: you’ll meet directly with your future manager Zeïd (1h, visio call)
- 2 - Technical assessment of your skills: Take home assignment (minimum 4h) - on Github
- 3 - Cultural fit interview with our co-founder and COO Emmanuelle (45min)
- 4 - Final interview with our co-founder and CEO Maximilien (45min)
Stack & tools
- Our Stack:
- AWS
- Git on Github with Github Actions for CI/CD pipelines
- Kubernetes with Helm, Kustomize, ArgoCD
- Some of our Tools:
- Wiz.io
- Tailscale
Other Jobs from AQEMIA
Senior Scientific Software Developer (Cheminformatician)
Senior Python Engineer
Similar Jobs
Senior DevSecOps Engineer
Manager, Cloud Engineering
Senior Machine Learning Developer
Senior Backend Engineer (f/m/d)
Senior Backend Engineer (f/m/d)
Senior Backend Engineer (f/m/d)
There are more than 50,000 engineering jobs:
Subscribe to membership and unlock all jobs
Engineering Jobs
60,000+ jobs from 4,500+ well-funded companies
Updated Daily
New jobs are added every day as companies post them
Refined Search
Use filters like skill, location, etc to narrow results
Become a member
🥳🥳🥳 452 happy customers and counting...
Overall, over 80% of customers chose to renew their subscriptions after the initial sign-up.
To try it out
For active job seekers
For those who are passive looking
Cancel anytime
Frequently Asked Questions
- We prioritize job seekers as our customers, unlike bigger job sites, by charging a small fee to provide them with curated access to the best companies and up-to-date jobs. This focus allows us to deliver a more personalized and effective job search experience.
- We've got about 70,000 jobs from 5,000 vetted companies. No fake or sleazy jobs here!
- We aggregate jobs from 5,000+ companies' career pages, so you can be sure that you're getting the most up-to-date and relevant jobs.
- We're the only job board *for* software engineers, *by* software engineers… in case you needed a reminder! We add thousands of new jobs daily and offer powerful search filters just for you. 🛠️
- Every single hour! We add 2,000-3,000 new jobs daily, so you'll always have fresh opportunities. 🚀
- Typically, job searches take 3-6 months. EchoJobs helps you spend more time applying and less time hunting. 🎯
- Check daily! We're always updating with new jobs. Set up job alerts for even quicker access. 📅
What Fellow Engineers Say