Company Description
Devoteam Cyber Trust is the Cybersecurity specialist arm of the Devoteam Group. With our 800+ experts located across EMEA, we aim to establish cybersecurity as an enabler of business success rather than a gatekeeper. We leverage an end-to-end approach to Cyber Resilience, Applied Security, and Managed Security services to secure the tech journey of large and medium-sized companies from all sectors and industries.
Since 2009, previously known as INTEGRITY, our team based in Portugal is specialised in providing cutting-edge Managed Security Services that combine its expertise and proprietary technology to consistently and effectively reduce the cyber risk of our clients. The comprehensive service range includes Persistent Intrusion Testing, ISO 27001, PCI-DSS, GRC Consulting and Solutions, and Third-Party Risk Management. ISO 27001 (Information Security) and ISO 9001 (Quality) certified, PCI-QSA, and member of CREST and CIS - Centre for Internet Security, we provide services to a considerable number of clients, operating in more than 20 countries.
Job Description
We are seeking an experienced DevSecOps Engineer to integrate security practices into our
software development lifecycle (SDLC) and infrastructure management processes. This role will focus on implementing secure coding practices, automating security processes, and enhancing our overall application and infrastructure security posture.
The candidate will have the following duties/responsibilities:
- Develop and implement secure coding practices and guidelines for development teams;
- Create and maintain infrastructure as code (IaC) using tools like Terraform, with a focus on security best practices;
- Implement and manage service account rotation practices across our cloud environments;
- Develop automation scripts and tools in Go to enhance security processes;
- Conduct code reviews with a security focus, particularly for Go-based projects;
- Design and implement a centralised secrets management solution;
- Enhance and secure CI/CD pipelines, integrating security checks and tests;
- Implement and manage container security practices;
- Collaborate with development, operations, and security teams to integrate security throughout the SDLC;
- Develop and maintain security documentation for development and operations processes;
- Assist in security incident response related to application and infrastructure issues;
- Implement and manage security monitoring and logging solutions for applications and infrastructure;
- Automate security testing and integrate it into the development process.
Qualifications
The candidate should have:
- 5+ years of experience in DevOps or software development roles, with a strong focus on security;
- Experience with the Go programming language;
- Strong understanding of secure coding practices and common vulnerabilities (e.g., OWASP Top 10);
- Experience with infrastructure as code tools, particularly Terraform;
- Hands-on experience with CI/CD tools (e.g., Jenkins, GitHub, BitBucket);
- Knowledge of container technologies (Docker, Kubernetes) and associated security practices;
- Experience with cloud platforms, particularly GCP and AWS;
- Experience with secrets management tools (e.g., HashiCorp Vault, AWS Secrets Manager, GCP Secret Manager);
- Understanding of identity and access management (IAM) concepts and service account management;
- Experience with security testing tools and practices (SAST, DAST, SCA).
Preferred Qualifications:
- Relevant certifications (e.g., CSSLP, AWS Certified DevOps Engineer, Google Cloud Professional DevOps Engineer);
- Experience with other programming languages (e.g., Python, Java, JavaScript);
- Knowledge of compliance requirements related to application security (e.g., PCI DSS, ISO27001).
Additional Information
What we offer:
- Professional development and monitoring talent;
- Commitment to our employees' development;
- Collaboration in a company that is constantly growing and evolving;
- Strong organisational culture: collaboration, sharing, flexibility, integrity and low ego.
Would you like to join our team? Then send your CV.
Other Jobs from Devoteam
Senior DevSecOps Engineer
Cloud Security Engineer | Devoteam Cyber Trust
Similar Jobs
Site Reliability Engineer - Career
Senior Manager, DevOps, Software Engineering
Senior Software Engineer, DevOps
Lead Software Engineer, DevOps
Senior Software Engineer - DevOps
There are more than 50,000 engineering jobs:
Subscribe to membership and unlock all jobs
Engineering Jobs
60,000+ jobs from 4,500+ well-funded companies
Updated Daily
New jobs are added every day as companies post them
Refined Search
Use filters like skill, location, etc to narrow results
Become a member
π₯³π₯³π₯³ 401 happy customers and counting...
Overall, over 80% of customers chose to renew their subscriptions after the initial sign-up.
To try it out
For active job seekers
For those who are passive looking
Cancel anytime
Frequently Asked Questions
- We prioritize job seekers as our customers, unlike bigger job sites, by charging a small fee to provide them with curated access to the best companies and up-to-date jobs. This focus allows us to deliver a more personalized and effective job search experience.
- We've got about 70,000 jobs from 5,000 vetted companies. No fake or sleazy jobs here!
- We aggregate jobs from 5,000+ companies' career pages, so you can be sure that you're getting the most up-to-date and relevant jobs.
- We're the only job board *for* software engineers, *by* software engineersβ¦ in case you needed a reminder! We add thousands of new jobs daily and offer powerful search filters just for you. π οΈ
- Every single hour! We add 2,000-3,000 new jobs daily, so you'll always have fresh opportunities. π
- Typically, job searches take 3-6 months. EchoJobs helps you spend more time applying and less time hunting. π―
- Check daily! We're always updating with new jobs. Set up job alerts for even quicker access. π
What Fellow Engineers Say