Devsecops Engineer | Devoteam Cyber Trust, Fixed-Term Contract

Detalhes da Vaga

We are seeking an experienced DevSecOps Engineer to integrate security practices into our software development lifecycle (SDLC) and infrastructure management processes. This role will focus on implementing secure coding practices, automating security processes, and enhancing our overall application and infrastructure security posture.The candidate will have the following duties/responsibilities:Develop and implement secure coding practices and guidelines for development teams;Create and maintain infrastructure as code (IaC) using tools like Terraform, with a focus on security best practices;Implement and manage service account rotation practices across our cloud environments;Develop automation scripts and tools in Go to enhance security processes;Conduct code reviews with a security focus, particularly for Go-based projects;Design and implement a centralised secrets management solution;Enhance and secure CI/CD pipelines, integrating security checks and tests;Implement and manage container security practices;Collaborate with development, operations, and security teams to integrate security throughout the SDLC;Develop and maintain security documentation for development and operations processes;Assist in security incident response related to application and infrastructure issues;Implement and manage security monitoring and logging solutions for applications and infrastructure;Automate security testing and integrate it into the development process.QualificationsThe candidate should have:5+ years of experience in DevOps or software development roles, with a strong focus on security;Experience with the Go programming language;Strong understanding of secure coding practices and common vulnerabilities (e.g., OWASP Top 10);Experience with infrastructure as code tools, particularly Terraform;Hands-on experience with CI/CD tools (e.g., Jenkins, GitHub, BitBucket);Knowledge of container technologies (Docker, Kubernetes) and associated security practices;Experience with cloud platforms, particularly GCP and AWS;Experience with secrets management tools (e.g., HashiCorp Vault, AWS Secrets Manager, GCP Secret Manager);Understanding of identity and access management (IAM) concepts and service account management;Experience with security testing tools and practices (SAST, DAST, SCA).Preferred Qualifications:Relevant certifications (e.g., CSSLP, AWS Certified DevOps Engineer, Google Cloud Professional DevOps Engineer);Knowledge of compliance requirements related to application security (e.g., PCI DSS, ISO27001).Additional InformationWhat we offer:Professional development and monitoring talent;Commitment to our employees' development;Collaboration in a company that is constantly growing and evolving;Strong organisational culture: collaboration, sharing, flexibility, integrity and low ego.Would you like to join our team? Then send your CV.
#J-18808-Ljbffr


Salário Nominal: A acordar

Fonte: Whatjobs_Ppc

Função de trabalho:

Requisitos

Big Data Engineer

As an Azure Senior Data Engineer specialized in Microsoft Azure tools, you will support the implementation of projects focused on collecting, aggregating, st...


Avanade - Lisboa

Publicado 15 days ago

Net Consultant

Join as a visionary .net Consultant, leading transformative development with integrated solutions across back-end, bridging the technology-business gap and s...


Avanade - Lisboa

Publicado 15 days ago

Staff Mobile Software Engineer | Mobile Platform

At Wellhub (formerly Gympass) (Permanent), in Lisbon, Portugal Expires at: 2025-06-09 Remote policy: Full remote Apply now for a career that puts wellbeing f...


Landing.Jobs - Lisboa

Publicado 12 days ago

Software Developer (M/F) | Com Atestado Multiuso (M/F) - Lisboa

Estamos a recrutar Software Developer (M/F), para prestigiada empresa do Setor de consultoria Informática, na zona de Lisboa. A pessoa selecionada irá desemp...


Eurofirms - Lisboa

Publicado 12 days ago

Built at: 2024-12-23T07:22:22.217Z