DevSecOps Engineer integrating security practices throughout the development lifecycle at Keboola. Join a growing SaaS company focusing on cloud security and AI automation.
Responsibilities
Design and oversee security architecture with a focus on DevSecOps principles (shift-left security).
Integrate security controls into CI/CD pipelines and automate security testing (SAST, DAST, SCA, container scanning).
Lead security assessments and audits, identify vulnerabilities and implement countermeasures.
Conduct security code reviews and provide feedback to developers on best practices.
Implement security monitoring tools to detect and respond to security incidents.
Guide and mentor team members on security best practices, DevSecOps culture, and emerging threats.
Build and maintain "security as code" approaches - policy as code, compliance as code.
Own end-to-end resolution of security findings from client security teams - from analysis through infrastructure fixes to communication of remediation status.
Collaborate with the SRE team on reliability improvements that enhance security posture.
Requirements
5+ years' experience securing production services and Kubernetes environments.
Automation-first mindset, including using modern tools (including AI-assisted workflows) to streamline security operations.
Experience integrating security into CI/CD pipelines and automating security checks.
Expertise securing applications and infrastructure on GCP, AWS, or Azure (IAM, network security, encryption, logging).
Hands-on experience with infrastructure as code (Terraform) and securing IaC configurations.
Experience with security monitoring, intrusion detection, and incident response.
Ability to perform threat modeling and vulnerability assessments.
Experience with zero trust architecture in cloud environments.
Proficiency with UNIX systems and scripting (Python, Bash, Go).
Experience with GitOps workflows using ArgoCD.
Experience working with external security teams and managing security findings from discovery through resolution.
(nice to have) Experience with policy as code tools (Open Policy Agent, Kyverno), chaos engineering for security, or service mesh security (Istio, Linkerd).
(nice to have) Understanding of SOC 2 or ISO 27001 compliance frameworks.
Strong documentation, analytical and problem-solving skills.
Collaborative approach, promoting a "security is everyone's responsibility" mindset.
Excellent communication skills - ability to explain security concepts to developers and external security teams.
Self-organized with ability to manage multiple priorities.
Proactive mindset with commitment to continuous learning.
Resilience in handling stressful situations.
Ability to balance security requirements with developer experience.
Benefits
Competitive compensation.
Generous paid vacation time. And we mean generous.
Cool new offices in the heart of Holesovice in Prague. You need to be 3 times a week in the office.
DevOps and Build Engineer for NVIDIA developing and maintaining CI/CD pipelines. Collaborating with teams to enhance compiler technologies and optimize build performance in a diverse environment.
Senior AWS DevOps Developer responsible for managing AWS infrastructure for enterprise public budgeting software at Euna Solutions. Collaborating on cloud projects and enhancing system reliability and performance.
Principal AI Site Reliability Engineer driving operational excellence for critical contact center applications at Fidelity. Leading automation and observability initiatives to improve reliability and efficiency.
Data Transport Infrastructure DevOps Engineer at Leidos modernizing global - scale multi - cloud environments for USAF missions. Involves developing cloud - native solutions and ensuring security best practices.
DevOps Engineer responsible for building and optimizing AWS - based infrastructure and backend systems at Allguth GmbH. Part of a team focused on innovative mobility solutions in Munich region.
(Senior) DevOps Engineer specializing in ML solutions implementation and management in Germany. Focused on CI/CD pipelines, automation, and cloud services.
Specialist DevSecOps joining Periferia IT Group, a leader in digital transformation. Work in a dynamic environment with continuous learning and professional development opportunities.
Join Zinkworks as a Senior Platform Engineer designing scalable IaC - driven cloud platforms for a large - scale enterprise contact centre. Focused on automation, reliability, and platform ownership in a hybrid work environment.
Asset Reliability Engineer providing maintenance advice and service innovations. Join Sensorfact, the leading smart monitoring platform, to modernize the industrial sector.