DevSecOps | WebTech

Igbaffiliate

Warszawa

Hybrid

PLN 180,000 - 280,000

Full time

14 days+
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Benefits offered by this job

Medical insurance
Career development budget
Flexible schedule
Remote work
Paid vacation & sick leave

Job summary

Boosta is seeking a DevSecOps to join the service team as a remote, full-time role focused on vulnerability management, secure CI/CD integration, and cloud/infrastructure security.

You will implement SAST/DAST/SCAs, manage IAM and secrets, and collaborate with developers to harden systems. The role requires hands-on security design reviews and mentoring across teams.

Qualifications

  • Deep understanding of network security and architecture, including segmentation, firewalls, VPNs, mTLS/TLS, zero-trust, and traffic analysis.
  • Hands-on SIEM experience (Wazuh/ELK) and investigations.
  • Strong cloud/infrastructure security expertise, IAM, IaC scanning, and secret management.
  • Experience implementing SAST/DAST/SCA/secret scanning in CI/CD (e.g., SonarQube, Semgrep, Snyk, Trivy, ZAP, detect-secrets).
  • Proficient in Python and Bash (Go a plus) for automation and remediation tasks.

Responsibilities

  • Lead vulnerability management across code, dependencies, containers, IaC, configurations, and network.
  • Integrate security gates into CI/CD pipelines and manage remediation with developers.
  • Harden cloud and bare-metal infrastructure, IAM, and secret management processes.
  • Develop and maintain RBAC, network policies, and secure container runtimes.
  • Collaborate with SOC/Cloud teams and mentor developers on secure coding practices.

Skills

Vulnerability management
CI/CD security
SAST/DAST/SCA
Cloud security
IAM / SSO
Container security (Docker/Kubernetes)
Python
Bash
GitLab CI / GitHub Actions / Jenkins
SIEM (Wazuh / ELK)

Tools

Trivy
Grype
Falco
Terraform
Helm
Kubernetes
Vault
Keycloak

Job description

# DevSecOps | WebTech27 JUL 2026RemotePermanentTech & ProductVisit SiteApply NowDevSecOps | WebTech We are looking for a DevSecOps to join Boosta’s service team, which provides design, development, content, and IT infrastructure creation & support services for the holding’s projects. Remote Full-time | DevOps Apply job description As a DevSecOps, you will: Vulnerability Management — full lifecycle (core responsibility) Detect vulnerabilities across all layers: code, dependencies, container images, IaC, configurations, and network. Prioritize vulnerabilities based on real risk (exploitability + exposure), not only CVSS. Perform hands-on remediation: dependency upgrades, patching, configuration hardening, and code changes through pull requests together with developers. Verify remediation (re-scan / re-test), track SLA compliance, and prevent regressions. Implement Security into CI/CD Deploy and integrate SAST, DAST, SCA, and secret scanning into CI/CD pipelines. Configure security gates to block deployments on critical findings and manage exceptions with assigned risk owners. Network Security & Architecture Implement segmentation, firewall policies, zero-trust access, VPN, egress filtering, and IMDS protection. Work with edge/WAF (Cloudflare): tune rules, anti-bot protection, and rate limiting for payment and gaming APIs. Review network architecture and perimeter security to identify dangerous exposures. Cloud & Infrastructure Security Assess and harden cloud and bare-metal infrastructure. Perform IaC scanning (Terraform / Helm / Kubernetes) for insecure configurations. Manage secrets and secret rotation (Vault / cloud secrets), eliminate hardcoded credentials. Harden IAM / SSO (OIDC/SAML, Keycloak). SIEM & Detection Engineering Build and maintain logging and audit pipelines, detection-as-code, and correlation rules (ELK-like solutions). Collaborate closely with the SOC team by providing detections for new findings instead of duplicating their work. Containers & Orchestration Scan container images (Trivy / Grype), implement RBAC and least privilege principles, configure network policies, runtime detection (Falco), and harden base images. Secure SDLC & Security Culture Conduct threat modeling during planning and participate in security design reviews. Mentor developers on secure coding practices (OWASP Top 10 / ASVS).We value specialists who:Have a deep understanding of network security and architecture: segmentation, firewalls, VPN, mTLS, TLS, DNS, zero-trust, and traffic analysis.Have hands-on experience with SIEM solutions, including log collection, detection rule creation, and investigations (Wazuh / ELK / similar).Have strong expertise in cloud and infrastructure security, including hardening, IAM, IaC scanning, and secrets management, with confident knowledge of at least one cloud platform (GCP / AWS / Azure) and experience with bare-metal environments.Have practical experience in vulnerability management and remediation, including patching, upgrades, configuration, and code fixes.Have implemented SAST, DAST, SCA, and secret scanning solutions from scratch and integrated them into CI/CD pipelines (SonarQube, Semgrep, Snyk, Trivy, OWASP ZAP, gitleaks/detect-secrets, or similar).Are proficient in Python and Bash (Go will be a plus) for automation and remediation tasks.Have experience working with GitLab CI, GitHub Actions, Jenkins, or TeamCity.Have practical knowledge of Docker and Kubernetes.Do you want to know some details about this position?Anna will help!more detailsworkYOUR JOURNEY WITH US:Step 1. Pre-screen.Step 2. Technical interview.Step 3. Interview.Step 4. Reference check.Step 5. Job Offer!Support for your career growth: compensation for external courses and conferences, access to our corporate library.Flexible schedule: you can start your working day anytime between 8:00–11:00 Kyiv time.Work location of your choice: Kyiv office, coworking in Lviv or Warsaw, or fully remote.28 working days of paid vacation per year, up to 30 days of sick leave with medical confirmation, plus all state holidays.Care for your health: medical insurance and compensation for psychologist sessions.Social initiatives: Ukrainian Victory Support program and other important projects.Regular team-building activities, online or offline.What you’ll get from working with us:
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

DevOps with AWS Experience
DevOps with AWS Experience

Gradient IT • Wrocław, Kraków

On-site
Extensive health insurance
Paid sick leave
Flexible holidays
+2
Middle level AWS DevOps Engineer
Middle level AWS DevOps Engineer

TEAM International • Lublin

Hybrid
PLN 180,000 - 280,000
23 PTO days per year
Sport allowance 40 EUR/month
Private Health Insurance compensation
+1
Senior Security Engineer
Senior Security Engineer

your Jared • Wrocław

Hybrid
PLN 180,000 - 300,000
Employee stock purchase plan 15%
Health insurance
Career development programs
+1
Middle L1 Technical Support Specialist
Middle L1 Technical Support Specialist

your Jared • Warszawa

Hybrid
PLN 54,000 - 74,000
Cafeteria
Annual budget for sports, medical care
Senior Security Engineer
Senior Security Engineer

your Jared • Łódź

Hybrid
PLN 120,000 - 180,000
DevSecOps Engineer
DevSecOps Engineer

LionHires Recruitment • Poland

On-site
PLN 180,000 - 240,000
Career growth
Health insurance
On-site gym
+3
DevOps Engineer (EU)
DevOps Engineer (EU)

DOU Polska • Kraków

Hybrid
PLN 180,000 - 280,000
Remote or hybrid work
Flexible schedule 08:00–11:00 start
Equipment provided
+2
Security Engineer (SecOps)
Security Engineer (SecOps)

inFakt • Kraków

Hybrid
Private medical care for you and your family/partner
MultiSport Benefit card for you and a loved one
Daily lunches, fresh fruit, and good coffee
+2
Senior DevOps Engineer
Senior DevOps Engineer

your Jared • Łódź

Hybrid
PLN 180,000 - 240,000
Hybrid-by-design work mode
Remote within Poland up to 60 days
Relocation opportunities
+9
Senior Cloud Delivery Engineer
Senior Cloud Delivery Engineer

GoReel • Poland

Hybrid
PLN 180,000 - 240,000
Unlimited vacation & sick leave
Flexible working hours
Flexible Work Arrangements - remote/hy
+4