Camlin Group

DevSecOps Engineer

Kraków, Poland
Bash Python Node.js SQL Grafana GitLab Yocto TLS SonarQube JFrog XRay
Description

DevSecOps Engineer

Location: Kraków, Poland

Department: Mechatronics

We are looking for a DevSecOps Engineer (or a DevOps Engineer with a strong security mindset) to strengthen our Embedded Systems Unit.


In this role, you will collaborate closely with embedded development teams and our Information Security Management System (ISMS) team to ensure that our industrial and field‑deployed products meet cybersecurity requirements defined in CRA, RED, and IEC 62443.


You will not be responsible for creating governance processes; instead, you will execute and apply the workflows and policies defined by ISMS, ensuring they are consistently implemented across development, testing, manufacturing, and deployment environments.


You will support the full lifecycle of our embedded systems, toolchains, factory test infrastructure, and backend services.

Responsibilities

Secure Development & Compliance

  • Execute secure development workflows defined by ISMS. Support developers in applying secure coding, secure update mechanisms, access‑control, and documentation practices aligned with CRA/RED/IEC 62443.

Vulnerability Scanning & Reporting

  • Run SCA / SAST / DAST tools (e.g., SonarQube, JFrog XRay) within CI/CD pipelines.
  • Prepare actionable vulnerability reports aligned with CRA and IEC 62443 vulnerability‑handling requirements.

Security Testing

  • Perform or coordinate grey‑box or white‑box security tests on firmware and backend releases.
  • Validate system behaviour against RED 3.3(d/e/f) cybersecurity safeguards and IEC 62443 component requirements.

Software License & SBOM Reporting

  • Generate and maintain Software Bills of Materials (SBOMs).
  • Produce OSS license compliance reports to support CRA transparency and supply‑chain documentation.

Security Tooling for Production & Field Devices

  • Operate and maintain firmware signing pipelines.
  • Handle certificate provisioning, key management tools, and secure device onboarding workflows defined by ISMS.
  • Support secure manufacturing workflows such as device identity injection and protected configuration handling.

Factory Test Systems

  • Own and improve factory self‑tests, diagnostics, and manufacturing server infrastructure.
  • Add new dashboards, performance metrics, and manufacturing KPIs.
  • Implement data visualization, alerting, and monitoring in tools such as Grafana.

Database & Backend Infrastructure

  • Maintain and further develop the manufacturing database.
  • Implement structured schema versioning.
  • Develop APIs to replace direct SQL access and improve data integrity.
  • Optimize database structure, queries, and overall performance.

CI/CD & Automated Deployment

  • Maintain secure, reproducible CI/CD build and release pipelines for embedded firmware and backend services.
  • Manage deployment workflows, including environment provisioning, artifact signing, and release traceability.


 Required Skills & Qualifications

Technical Skills

  • Familiarity with SCA/SAST/DAST tools such as SonarQube, JFrog XRay, or similar.
  • Understanding of SBOM standards (CycloneDX, SPDX).
  • Programming in Python, Node.js.
  • Experience with SQL databases and API design.
  • Practical knowledge of monitoring and observability tools (Grafana, Prometheus, Loki).
  • Ability to maintain and troubleshoot factory automation systems and backend services.
  • Experience with Embedded Linux and Yocto


Cybersecurity & Standards

  • Understanding of cybersecurity principles relevant to embedded systems.
  • Awareness of CRA, RED cybersecurity requirements, and IEC 62443 concepts (zones, conduits, secure development lifecycle).
  • Willingness for executing ISMS‑defined processes (secure SDLC, vulnerability management, incident support).
  • Familiarity with secure communication protocols (TLS, certificate pinning, encrypted transport layers).

Desired Qualifications (Nice‑to‑Have)

  • Familiarity with CI/CD pipeline development in GitLab
  • Understanding of database architecture
  • Experience with Node.js
  • Experience with manufacturing processes
  • Basic knowledge of electronic circuits
  • Hands‑on with Grafana


 Benefits:

  • Employment contract with competitive salary
  • Work in small, self-organized and autonomous development teams with the ability to choose technologies and best practices
  • Hybrid work model (office in Kraków)
  • Company Pension & Life Assurance Schemes 
  • On-site parking (car and bike) 
  • UoP with 80% author’s rights tax relief
  • MyBenefit system with Multisport membership, private healthcare (Medicover)
  • Wellness programmes


Our Values

  • We work together
  • We believe in people
  • We won’t accept the ‘way it has always been done’
  • We listen to learn
  • We’re trying to do the right thing


Equal Employment Opportunity Statement

Individuals seeking employment at Camlin are considered without regards to race, colour, religion, national origin, age, sex, marital states, ancestry, physical or mental disability, gender identity or sexual orientation.

About the Company

About Camlin

Camlin is a global technology leader that operates with the vision of bringing revolutionary products to life for a wide range of industries, including power and rail, and also has interests in a number of R&D projects in a variety of scientific sectors.


At Camlin we believe in high quality engineering and design, allowing us to develop market leading products and services. In short, we love creating value for our customers by solving difficult problems. As of now, Camlin operates in over 20 countries worldwide.🌐


Camlin Group
Camlin Group

0 applies

0 views

There are more than 50,000 engineering jobs:

Subscribe to membership and unlock all jobs

Engineering Jobs

60,000+ jobs from 4,500+ well-funded companies

Updated Daily

New jobs are added every day as companies post them

Refined Search

Use filters like skill, location, etc to narrow results

Become a member

🥳🥳🥳 452 happy customers and counting...

Overall, over 80% of customers chose to renew their subscriptions after the initial sign-up.

To try it out

For active job seekers

For those who are passive looking

Cancel anytime

Frequently Asked Questions

  • We prioritize job seekers as our customers, unlike bigger job sites, by charging a small fee to provide them with curated access to the best companies and up-to-date jobs. This focus allows us to deliver a more personalized and effective job search experience.
  • We've got over 200,000 jobs from 15,000+ vetted companies. No fake or sleazy jobs here!
  • We aggregate jobs from 15,000+ companies' career pages, so you can be sure that you're getting the most up-to-date and relevant jobs.
  • We're the only job board *for* software engineers, *by* software engineers… in case you needed a reminder! We add thousands of new jobs daily and offer powerful search filters just for you. 🛠️
  • Every single hour! We add 2,000-3,000 new jobs daily, so you'll always have fresh opportunities. 🚀
  • Typically, job searches take 3-6 months. EchoJobs helps you spend more time applying and less time hunting. 🎯
  • Check daily! We're always updating with new jobs. Set up job alerts for even quicker access. 📅

What Fellow Engineers Say