DevOps Security Engineer Job Description
Posted on: January 30, 2025
Location: Remote
Schedule: Full time
We are seeking a highly skilled and experienced DevOps Security Engineer to join our team. As a DevOPS Security Engineer you will play a critical role in integrating security practices into our software development and operations processes. You will colaborate with cross-functional teams to ensure that security is embedded into every stage of the software development lifecycle (SDLC) and that our system are protected against potential security threats.
Responsibilities:
- Implement and maintain security measures throughout the SDLC, including code development, testing, deployment, and monitoring.
- Collaborate with development and operations teams to integrate security tools and processes into the continuous integration and deployment (CI/CD) pipeline.
- Conduct regular vulnerability assessments and penetration testing to identify potential security weaknesses in our system. Manage the process of tracking and resolving vulnerabilities .
- Develop and maintain security-related scripts, tools, and infrastructure as code (laC) templates to automate security testing, monitoring, and incident response.
- Set up and maintain security monitoring systems to detect and respond to security incidents promptly. Analyse security logs, alerts, and other data sources to identify and investigate potential security breaches.
- Collaborate with incident response teams to mitigate and recover from security incidents effectively.
- Ensure compliance with security policies, standards, and regulatory requirements. Work closely with compliance and audit teams to address security related issues.
- Provide guidance and training to development and operations teams on secure coding practices, secure configuration management, and other security related topics.
- Stay updated with the latest security threats, vulnerabilities, and industry best practices. Continuously improve our security processes based on emerging trends and technologies.
Requirements:
- Bachelor’s degree in Computer Science, Information Security, or a related field. Relevant certifications (e.g., CISSP, CEH, OSCP) are a plus.
- Strong experience in DevOps practices and tools, such a Jenkins, Git, Docker, Kubernetes, and CI/CD pipelines.
- In-depth knowledge of security principles, best practices, and industry standards (e.g. OWASP, NIST).
- Experience with vulnerability assessments tools, penetration testing methodologies, and security monitoring systems.
- Familiarity with scripting languages and infrastructure as code.
- Strong understanding of network protocols, firewall configurations, and secure network architectures.
- Excellent problem-solving and analytical skills. Ability to identify and mitigate security risks effectively.
- Strong communication and collaboration skills. Ability to work effectively with cross functional teams.
- Experience working in an agile development environment is preferred.
Omeron is committed to being an Equal Employment Opportunity employer and supporting affirmative action. We do not tolerate discrimination based on gender, race, color, ethnicity, national origin, age, disability, religion, sexual orientation, gender identity or expression, veteran status, or any other legally protected characteristics. Learn more about our values.
Omeron strives to ensure our website is accessible to all users. If you have a disability or special need that requires accommodation to navigate our site or complete the application process, please email accommodations@omeron.com or call +40 (790) 645 828.
Omeron upholds a fair and open marketplace for all employees. We have strict policies to prevent illegal agreements with other companies regarding recruitment or hiring practices.