Senior DevSecOps engineer

Digipal Bulgaria
Remote
This Job is No Longer Active This position is no longer accepting applications

Job Description


We are DIGIPAL, a software delivery agency specialising in building high-performing product design and software development teams for clients across Europe and North America. We work with a wide range of organisations from ambitious startups to multinational corporations. We have a unique career opportunity for you to work on building exciting digital products for international clients. Yet, remaining flexible in a remote-only environment and getting a top-tier compensation package. Currently, we are looking for a Senior DevSecOps engineer. For further details, take a look at the text below:


Responsibilities:


  • Implement and manage CI/CD pipelines with a focus on automation, scalability, and security.


  • Integrate security controls and testing into DevOps workflows (SAST, DAST, vulnerability scanning, dependency checks).


  • Collaborate with development and operations teams to ensure security is embedded in every phase of delivery.


  • Manage and monitor cloud infrastructure and containerized environments (AWS, Azure, GCP, Kubernetes, Docker, etc.).


  • Develop and enforce security best practices, policies, and compliance standards (ISO 27001, SOC 2, GDPR, etc.).


  • Identify and remediate vulnerabilities in applications and infrastructure.


  • Maintain infrastructure as code (Terraform, CloudFormation, Ansible, etc.).


  • Conduct regular threat modeling, security assessments, and incident response simulations.



Requirements:


  • 4+ years of experience in DevOps, Site Reliability Engineering, or Security Engineering.


  • Strong knowledge of cloud platforms (AWS, Azure, or GCP).


  • Hands-on experience with containerization (Docker, Kubernetes) and CI/CD tools (Jenkins, GitLab CI/CD, GitHub Actions, ArgoCD, etc.).


  • Proficiency with scripting languages (Python, Bash, or similar).


  • Solid understanding of network and application security principles.


  • Experience with monitoring, logging, and observability tools (Prometheus, Grafana, ELK, CloudWatch).


  • Familiarity with DevSecOps tools and frameworks (e.g., OWASP, SonarQube, Trivy, Snyk, Aqua, Twistlock).


  • Excellent communication and collaboration skills.


  

Our offer:


  • Attractive compensation package


  • 100% remote position


  • Opportunities for professional growth and development


  • Collaborate with top minds from around the globe


  • Build world-class digital products for European and US markets


  • Long term B2B Contract

Subscribe our newsletter

New Things Will Always Update Regularly