¡Activa las notificaciones laborales por email!

Devsecops Engineer

buscojobs España

Almería

Presencial

EUR 40.000 - 70.000

Jornada completa

Hace 14 días

Genera un currículum adaptado en cuestión de minutos

Consigue la entrevista y gana más. Más información

Empieza desde cero o carga un currículum

Descripción de la vacante

A dynamic team in Spain seeks a proactive DevSecOps Engineer to integrate security into the software development lifecycle (SDLC). The ideal candidate will implement security practices, conduct threat modeling, and work collaboratively in Agile teams, demanding robust communication skills. Knowledge of security tools and cloud security principles is essential.

Formación

  • Proven experience as a DevSecOps Engineer or similar role.
  • Strong hands-on experience with SAST and DAST tools.
  • Experience in Agile/Scrum environments.

Responsabilidades

  • Implement and manage security tools and practices in SDLC.
  • Conduct threat modeling and ensure application security.
  • Collaborate with Agile teams to foster a security-first culture.

Conocimientos

Agile methodologies
Security testing
Scripting languages
Cloud security principles
Problem-solving
Communication

Herramientas

SonarQube
Burp Suite
GitLab CI
AWS DevOps
Docker
Kubernetes

Descripción del empleo

We are seeking a skilled and proactive DevSecOps Engineer to join our dynamic team. The ideal candidate will be passionate about integrating security seamlessly into our software development lifecycle (SDLC) and fostering a security-first culture. You will be responsible for implementing and managing security tools and practices, conducting threat modeling, and ensuring our applications and infrastructure are robust and resilient against emerging threats. This role requires a strong understanding of Agile methodologies, particularly Scrum, and hands-on experience with various security testing tools and techniques.

The ideal candidate will possess a proven track record of successful collaboration within Agile development teams. Strong communication skills, both written and verbal, are key for this role. The ability to build strong working relationships and navigate diverse cultural contexts is essential.

Requirements

  • Proven experience as a DevSecOps Engineer, Security Engineer, or a similar role.
  • Strong hands-on experience with SAST tools (e.g., SonarQube, Semgrep) and DAST tools (Burp Suite, Acunetix).
  • Proficiency in Software Composition Analysis (SCA) tools (Dependency-Track).
  • Demonstrable experience in developing and implementing security hardening guides for various technologies.
  • Solid understanding and practical application of threat modeling methodologies, particularly STRIDE analysis.
  • Experience working in an Agile / Scrum environment and integrating security into agile workflows.
  • Familiarity with CI / CD tools (e.g., Jenkins, GitLab CI, AWS DevOps, GitHub Actions).
  • Experience with scripting languages for automation.
  • Knowledge of cloud security principles and practices ( AWS is a must ; Azure or GCP desirable).
  • Understanding of containerization and orchestration technologies (e.g., Docker, Kubernetes) and their security aspects.
  • Excellent problem-solving skills and attention to detail.
  • Strong communication and interpersonal skills.
  • English proficient, both spoken and written

J-18808-Ljbffr

Consigue la evaluación confidencial y gratuita de tu currículum.
o arrastra un archivo en formato PDF, DOC, DOCX, ODT o PAGES de hasta 5 MB.