DevSecOps Engineer
Brussels
Look4IT
Świadczymy usługi rekrutacyjne i outsourcingowe wbranży IT dostosowane do potrzeb Twojej firmy. Poznaj nasze możliwości.Responsibilities:
- Develop / update Jenkins and Azure DevOps pipelines;
- Implement security scanning for containers;
- Implement compliancy scanning for containers;
- Signing of containers;
- Develop and maintain secure common base layers for containers, including applying required hardening settings;
- Develop / maintain infrastructure as code for deployment and configuration of infrastructure (VMs, Disks), core services (AD, CA, Exchange etc.); and applications (NATO and Commercial Application)
- Define standard for infrastructure as code;
- Create pipelines and self-service solutions for deploying test environments using infrastructure as code.
Requirements
- The candidate has extensive and recent experience with and knowledge of Continuous integration and delivery, including the following tools and technologies and concepts:
- Git,
- Ansible,
- Docker,
- Jenkins,
- Terraform,
- Infrastructure as Code such as ARM,
- Designing and implementing build/deploy pipelines,
- Application security/code quality testing tools such as SonarQube, Checkmarx or OWASP Dependency Check,
- The candidate has extensive and recent experience with and knowledge of Continuous Operations, including the following tools and technologies and concepts:
- Kubernetes,
- Telemetry/Monitoring solutions such as Application Insights, Azure Monitor or Prometheus,
- Helm,
- Container Registry,
- Container vulnerability scanning tools such as Trivy and Anchore.
- Fluent English.
Nice to have:
- Java and NodeJS/JavaScript;
- Development tools (e.g. Maven, Jira, GitLab, Zephyr) and the Scrum methodology;
- Shift left/right testing using test automation tools such Junit/NUnit, Selenium, Protractor, Cucumber.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Ansible Application security Automation Azure Checkmarx DevOps DevSecOps Docker GitLab Helm Java JavaScript Jenkins Jira Kubernetes Maven Monitoring NATO Node.js OWASP Prometheus Scrum Security assessment Selenium SonarQube Terraform
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.