Ir à oferta completa

DEVSECOPS ENGINEER

Lisboa - Lisboa

Descrição da oferta de emprego

Descripción del puesto.
DevSecOps Engineer " Join us to create secure application delivery ecosystems, safeguarding our organization from the vulnerabilities of tomorrow.
" (Guillaume.
G, Cloud Governance & Architecture Lead)  CONTEXT As a DevSecOps Engineer, you will be part of the Governance & Architecture team within the Cloud & DevOps Services department.
You are instrumental in enabling and enhancing our security posture throughout our software delivery lifecycle, allowing streamlined and secure code development and deployment processes.
You participate in designing, implementing, and continuously improving our security frameworks.
Your proficiency in DevOps and secure application development practices will make you a crucial link between development and operations teams.
HOW WILL YOU MAKE AN IMPACT? * Contribute to and enhance a complete stack of solutions for Cloud Security & DevSecOps management from a people, process, and technology standpoint.
This includes but is not limited to Secret Detection, SAST, SCA, and container security.
* Develop and implement security controls that are aligned with the organization's security policies and procedures throughout our software delivery lifecycle.
* Automate the implementation and testing of these controls.
* Monitor their effectiveness and make necessary adjustments.
* Investigate and resolve security incidents that are related to security controls.
* Provide practical guidance to engineering and project teams to support the implementation of security controls, guidelines, and best practices.
* Be a driving element and enable greater cooperation between product teams, cybersecurity teams, and compliance functions, helping quantify the risk and define relevant control objectives and activities to secure cloud workloads.
* Contribute to the cloud and DevOps security governance (including participating in committees, building dedicated dashboards with associated KPIs, and evangelizing to other teams).
* Be autonomous and proactive; Able to understand functional and technical requirements, identify gaps, and suggest improvements.
HOW WILL YOU EXPERIENCE SUCCESS WITH US? * Previous experience in an SSDLC context, with a proven track record in developing and implementing effective security solutions and managing security challenges.
* Familiarity with security controls and frameworks.
This includes understanding the different types of security controls, such as preventive, detective, and corrective controls, and the various security frameworks, such as the CIS Controls and the NIST Cybersecurity Framework.
* Knowledge of the SDLC and how to integrate security controls into the SDLC.
This includes understanding the different phases of the SDLC and how to apply security controls at each stage.
* Knowledge of security risk assessment frameworks like OWASP top 10 (Web Applications, API).
* Experience with automation tools (gitlab ci, Jenkins, awx…) and scripting languages (Python mainly) will be key to understanding the context in which the controls must integrate and automating the implementation and testing of security controls themselves.
* Knowledge of cloud (AWS, Ali Baba, and GCP, ideally) and Kubernetes security is essential, as these are the foundations of our technology stack.
* Strong problem-solving skills.
DevSecOps engineers need to be able to identify and solve security problems that arise while implementing security controls.
* Effective communication skills.
DevSecOps engineers must communicate effectively with developers, security engineers, and other stakeholders to implement security controls.
* A passion for continuous learning and keeping up with the latest security trends and technologies.
The security landscape is constantly evolving, so DevSecOps engineers must be willing to learn new things and keep up with the latest security trends and technologies.
* Fluent in English, French is a plus
Ir à oferta completa

Detalhes da oferta

Empresa
  • Indeterminado
Localidade
Endereço
  • Indeterminado - Indeterminado
Data de publicação
  • 07/11/2024
Data de expiração
  • 05/02/2025
Mechanical Engineer (m/f) | Lisboa
Claire Joster by Selection

Claire joster is currently recruiting for a portuguese company of power generating, oil&gas; and material handling sectors, which intends to strengthen its internal structure with the integration of a mechanical engineer (m/f) in lisbon... function as a mechanical engineer, you will be responsible for:......

Automation and Robotics Engineer
TECNICOAT, LDA

Please include 'automation and robotics engineer application' in the subject line... position overview: we are looking for a creative automation and robotics engineer to contribute to the design, development, and implementation of cutting-edge automation and robotics solutions... collaborate with cross-functional......

Senior Data Engineer
FÓRUM SELECCAO

Fórum selecção is looking for a senior data engineer (m/f) for a corporate bank main activities: - design high-performance data pipelines (etl) to feed a dwh using state of the art data engineering techniques according to business specifications; - implement flow automation through ci/cd pipelines and......

Test Engineer (Automation) – Phyton
Newin

Test engineer (automation) – air traffic management airspace industry in the role of the automation test engineer at atos you will: · develop and configure test automation frameworks and execute stability and performance tests... · analyse and verify best automated and manual test approaches and execute......

Senior QA Engineer
Equação it

We are looking for a senior qa engineer with the following requirements: requisitos do trabalho • minimum of +6 years of relevant experience;• repository practice (i... • prior work in agile scrum or scaled agile framework paradigm... • applied knowledge in creating, updating, and resolving defects within......

DevOps Engineer
Newin

Obligations: openshift/kubernetesdockersgithubartifact (jfrog)ansiblepython/powershelljira/confluencelinux administrationbasic knowledge of databasesteam player and being able to be part of a community to share information/knowledge good to have: azure/awsgerman speaker job type:full time......

Junior Functional Safety Engineer
Pixida

) in addition, we ask you to provide information about your possible start date, salary expectations and language skills... com/de/pixida3) apply now! pixida is proud to be an equal opportunity employer! we are committed to a work environment that supports, inspires and respects all individuals and in......

Automation Engineer - Java
Xtedder

Minimo 6 anos de experiência* licenciatura em tecnologia ou engenharia informática (ou similar)* experiência em java* conhecimento de ferramentas de ci/cd (por exemplo, jenkins, circle ci)* experiência com testng: anotações e framework* experiência com bdd, nomeadamente cucumber* experiência prática......

MAINTENANCE / TECHNICAL DEPARTMENT
Rainsteal Oil & Gas

Rainsteal oil and gas is a multidiscipline supplier to the oil and gas industry... rainsteal oil and gas will continue to establish new businesses, make acquisitions and alliances in order to steadily develop rainsteal oil and gas as a quality supplier... administrative department business analyst, payroll......

Gestor de engenharia de projetos
Continental AG

Job summary we are looking for a motivated and detail-oriented project engineer to join our team... the project engineer will be responsible for planning, coordinating, and overseeing projects within the organization, ensuring they are completed on time, within scope, and within budget......