looking for an experienced DevSecOps Engineer with a strong focus on cloud infrastructure & IT security to join our team. As a DevSecOps Engineer you will have the opportunity to lead the protection, guidance, design, automation and support of cloud and IT infrastructure security. You will also contribute to other security domains and initiatives such as Incident Response, Security Monitoring and Risk Management. You will work with our DevOps and IT groups to protect highly scalable marketplace backend and our massive data processing pipeline, ingesting billions of daily events and supporting hundreds of microservices.
What am I going to do?
Develop and guide secure infrastructure practices and processes
Collaborate with Security, IT and Devops teams to define and execute security requirements
Detect, investigate, report and track security vulnerabilities and their mitigation
Maintain existing security tools and systems
Promote the implementation of tools and technologies to improve security and availability of platform and IT environment.
Act as the organizations focal point for cloud and IT security
Conduct security audits, network scans and vulnerability assessments against infrastructure
Participate in relevant security incidents and investigations
Train and educate relevant stakeholders on cloud infrastructure and IT best practices
Requirements:
3+ years of experience in DevSecOps or Cloud Security roles
Extensive experience deploying and monitoring security in AWS
Proven working experience in CI/CD and development pipeline technologies
Strong Security tooling and processes expertise, including KMS, GuardDuty, and Cloudtrail, as well as with CSPM/DSPM tools
Proficiency in scripting, automation and IaC
Hands-on experience with IT security tools such as Endpoint protection, ZeroTrust, email and file protection, patch management and SSO
Proven knowledge of core security networking concepts
Have one or more security-related certifications, such as AWS Security Specialty Certification, CKS, CCSP or similar – an advantage
General understanding of regulatory compliance and how it relates to security and privacy.
Solid knowledge of information security principles and practices
Self-motivation with a strong drive and sense of ownership
Strong organizational skills and excellent attention to detail
Ability to effectively prioritize and execute tasks
Excellent Englishש
3+ years of experience in DevSecOps or Cloud Security roles
Extensive experience deploying and monitoring security in AWS
Proven working experience in CI/CD and development pipeline technologies
Strong Security tooling and processes expertise, including KMS, GuardDuty, and Cloudtrail, as well as with CSPM/DSPM tools
Proficiency in scripting, automation and IaC
Hands-on experience with IT security tools such as Endpoint protection, ZeroTrust, email and file protection, patch management and SSO
Proven knowledge of core security networking concepts
Have one or more security-related certifications, such as AWS Security Specialty Certification, CKS, CCSP or similar – an advantage
General understanding of regulatory compliance and how it relates to security and privacy.
Solid knowledge of information security principles and practices
Self-motivation with a strong drive and sense of ownership
Strong organizational skills and excellent attention to detail
Ability to effectively prioritize and execute tasks
Excellent Englishש
This position is open to all candidates.