For one of our international Client we are looking for a DevSecOps Engineer.
- DevSecOps Engineer
- Long term, 1 year+ possible extension
- Remote
- Start date: asap
- Industry: automotive
Scope and Phases:
- The project will be carried out in two stages, each lasting 12 months.
- The first stage of the project will be conducted in three distinct phases:
- Research and Evaluation (3 months) – Identification and assessment of appropriate ASPM solutions, adaptation to business and security requirements, and definition of success criteria.
- Configuration, Integration, Documentation (3 months) – Installation and integration of the tool within the client ecosystem, preparation of documented processes for application teams, and development of an implementation plan.
- Soft Launch (6 months) – Pilot deployment with selected applications to verify the tool’s effectiveness and feasibility of integration.
Technical skills:
- Hands-on experience with scripting languages such as Powershell, Bash, or Python.
- Passion for programming and leveraging software development for process automation.
- Practical experience with version control (Git) and CI/CD tools including GitHub Actions, Azure DevOps Pipelines, GitLab, and others.
- Developing, documenting, and implementing CI/CD strategies across various platforms and technologies (Java, .NET, Python).
- Experience and knowledge in vulnerability management and security automation (SAST, SCA, DAST, container vulnerability scanning).
- Defining and implementing SDLC best practices including branching strategies, collaboration, process automation, code quality assurance, release management, and deployment strategies.
- Experience with Terraform and infrastructure as code (IaC).
- Monitoring and incident response: experience with observability tools (e.g., Prometheus, Grafana, Azure Monitor).
- Automation of downtime alerts, monitoring, and operational efficiency measurement.
- Hands-on experience with container platforms such as Docker (OpenShift, AKS, ECS).
- Practical experience with code repositories / CI&CD, including GitHub Actions, Azure DevOps Pipelines, GitLab, and others.
- Operating system security experience, including Active Directory, Windows networking, Group Policies, DNS, PKI, and certificates.
- Knowledge of Linux systems, database management, and application server administration in production environments.
- Hands-on experience with databases, particularly SQL Server (highly desirable!).
Soft skills:
- Proactiveness and ability to work independently.
- Excellent communication and interpersonal skills.
- Strong problem-solving and analytical skills.
- Ability to collaborate effectively in a cross-functional team environment.