Overview
Your mission
ClearOps keeps the world of machinery moving by connecting supply chains and harnessing data to centralize aftersales information and ensure parts and services are available when and where they are needed. ClearOps is looking for a DevSecOps Engineer to strengthen our growing team. You will work closely with DevOps, development, and compliance to ensure that our platform remains secure, reliable, and compliant as we scale. In this role, you will drive security initiatives across infrastructure, applications, and culture, building trust with clients and empowering teams to deliver safely.
Responsibilities
ISO 27001 & Compliance
- Operate and maintain our Information Security Management System (ISMS)
- Own and update security documentation: policies, risk register, SoA, incident reports, audits
- Coordinate audits, risk assessments, and corrective actions
- Support Sales, HR, and Ops with client assessments and security-related processes
Application & Cloud Security
- Collaborate with engineers to design and ship secure applications (Java/Kotlin/Spring Boot, React/TypeScript)
- Perform design and code reviews to identify security risks
- Champion best practices for authentication, authorization, and data protection
- Secure our AWS environment (IAM, S3, RDS, EC2, logging, alerting, AI-driven systems)
Tooling & DevSecOps
- Improve and maintain security in CI/CD pipelines
- Review and harden infrastructure as code (Terraform, Ansible)
- Operate SecOps and compliance tools (Drata, Aikido, ElasticSearch SIEM, AWS Security Hub, AWS Inspector, AWS CloudTrail, and more)
Culture & Training
- Lead security awareness training across the company
- Educate developers to integrate security without slowing them down
- Represent ClearOps security in client and internal discussions
Your profile
Qualifications
- Experience with ISO 27001 or similar frameworks (SOC 2, NIST)
- Solid knowledge of network and cloud security in AWS
- Familiarity with secure coding and OWASP Top 10 vulnerabilities
- Hands-on experience with CI/CD pipelines, security tools, and scripting
- Strong communication skills with both technical and non-technical audiences
- Background in Software Engineering or DevOps (Java/Kotlin or JavaScript/TypeScript)
Nice to have experience in
- Experience with tools like SonarCloud, Aikido, Snyk
- Terraform expertise for building secure infrastructure
- Knowledge of GDPR and handling client security questionnaires
- Interest in mentoring or building security champions in teams
Why us?
ClearOps is a hidden champion on a strong growth path in the supply-chain-software industry. As part of ClearOps, you will benefit in several ways:
- High Ownership: Shape a role that influences every part of the business
- Supportive Culture: Work in a no-blame environment where security is valued, not feared
- Growth Opportunities: Develop into a leadership position as our team expands
- Learning & Development: Access to mentors, continuous feedback, and personal development plans
- Flexibility: Flexible working hours, mobile work, and workcation opportunities