Unlock Full Resume Report

New offer - be the first one to apply!

September 4, 2026

Senior DevSecOps Engineer (AWS & Azure)

Senior • Remote

Krakow, Poland

Role Overview

We are seeking an experienced Senior DevSecOps Engineer with strong AWS and Azure expertise to provide specialist engineering services focused on embedding security throughout the software delivery lifecycle. You will design and deliver automated security capabilities, integrate security tooling (SAST/DAST, EDR, Vulnerability Management) into CI/CD pipelines, and enable secure software delivery through scalable engineering practices. The engagement focuses on delivering automated security capabilities that enable rapid software delivery while maintaining enterprise security, compliance, and governance.

Key Responsibilities

  • CI/CD Security Automation: Design, build, and maintain secure deployment pipelines (e.g., GitHub Actions, Azure DevOps, GitLab CI). Integrate automated vulnerability scanning, secret detection, and software supply chain security (SCA) into the developer workflow.
  • Policy-as-Code & Guardrails: Write, test, and deploy automated policy guardrails using Infrastructure as Code (IaC) linting and scanning tools (e.g., Checkov, Tfsec, OPA/Rego) to catch misconfigurations before production.
  • Security Product Deployment: Automate the baking of EDR agents, vulnerability scanners, and monitoring tools into base machine images (AMIs, Azure Golden Images) and containerized base environments.
  • Vulnerability & Remediation Pipelines: Build automated workflows that ingest findings from cloud security tools, prioritize them based on risk, and route them to engineering backlogs (e.g., Jira tracking).
  • Logging & SIEM Integration: Configure and automate delivery of application, container, and infrastructure logs to central logging repositories and SIEM systems for real-time threat hunting.
  • Developer Enablement: Bridge Security and Engineering by providing developer-friendly remediation guidance and creating reusable, secure-by-default code templates, including Terraform modules and Helm charts.

Required Skills & Qualifications

  • Deep, practical experience constructing and securing automated build/release pipelines at scale.
  • Hands-on engineering experience configuring native security services and access controls in AWS and Azure.
  • Advanced proficiency with Terraform or cloud-native tooling (Bicep, CloudFormation), with a focus on modular design and immutable infrastructure.
  • Direct experience implementing and maintaining security products across the lifecycle, such as SonarQube, Prisma Cloud, Wiz, Snyk, CrowdStrike, or Sentinel.
  • Strong understanding of Kubernetes (EKS/AKS) security best practices, service meshes, and container runtime defense.

Nice to Have Certifications

  • Certified DevSecOps Professional (CDP) or Practical DevSecOps certification.
  • AWS Certified Security – Specialty or Azure Security Engineer Associate.
  • Certified Kubernetes Administrator (CKA) or Certified Kubernetes Security Specialist (CKS).

Offer

Flexible collaboration model based on a B2B contract, with the opportunity to work on diverse projects.

Recruitment Process

  • HR interview
  • Technical interview
  • Client interview
  • Feedback and offer

Similar jobs you might like