Jobiglo

Sin resultados.

DevSecOps Engineer

ThetaRay · Madrid

Nuevo
🇬🇧 English
Kubernetes Azure Kubernetes Service (AKS) OpenShift Container Platform (OCP) Linux SonarQube Checkmarx Veracode Snyk Code Semgrep Prisma Cloud Wiz Microsoft Defender for Cloud Orca Lacework Runtime security CI/CD pipelines Vulnerability remediation Azure

Descripcion del puesto

About the role

ThetaRay is seeking a DevSecOps Engineer to join its global engineering team in Madrid. You will help secure and harden the cloud‑native anti‑money‑laundering platform, working closely with engineering, DevOps and security teams across multiple time zones.

Key responsibilities

  • Identify, prioritize and remediate security vulnerabilities (CVEs) in containers, dependencies and infrastructure.
  • Collaborate with engineering and DevOps to embed security fixes into CI/CD pipelines, container images and Kubernetes workloads.
  • Support and harden Kubernetes environments, primarily Azure Kubernetes Service (AKS) and optionally OpenShift.
  • Implement container security, image scanning, runtime protection and Kubernetes hardening controls.
  • Use SAST tools to detect code‑level security issues and guide developers on remediation.
  • Leverage CSPM solutions to find and fix cloud misconfigurations.
  • Automate security, compliance and operational tasks with Bash and other scripting languages.
  • Participate in incident response, security reviews and continuous improvement of the platform.

Required profile

  • Proven experience as a DevSecOps, DevOps with security focus, or Cloud Security Engineer.
  • Hands‑on experience handling CVEs, vulnerability remediation, patching and risk prioritization.
  • Strong background in Linux system administration, troubleshooting and hardening.
  • Experience working in Kubernetes‑centric environments, preferably AKS; OpenShift knowledge is a plus.
  • Ability to work collaboratively with distributed, multi‑disciplinary teams.

Required skills

  • Kubernetes (AKS, OpenShift)
  • Linux administration
  • Bash scripting
  • Static Application Security Testing (SAST) tools – SonarQube, Checkmarx, Veracode, Snyk Code, Semgrep
  • Cloud Security Posture Management (CSPM) tools – Prisma Cloud, Wiz, Microsoft Defender for Cloud, Orca, Lacework
  • Container image scanning and runtime security
  • CI/CD pipeline security gates
  • Vulnerability remediation and CVE management
  • Azure cloud platform

Questions fréquentes

Le salaire n'est pas communiqué publiquement par le recruteur. Vous pouvez postuler et négocier directement avec ThetaRay.
Cliquez sur "Postuler maintenant" en haut de la page. Vous pouvez importer votre CV en 1 clic — Jobiglo extrait automatiquement vos informations et postule pour vous.

Por que reporta esta oferta?

Gracias por su reporte. Revisaremos esta oferta.

Postula en 30 segundos

Ingresa tu email para postular. Se creara una cuenta automaticamente.

Al continuar, aceptas nuestras condiciones de uso.

Ya tienes cuenta? Iniciar sesion

Publicado hace 17 horas

Expira en 1 mes

3 vistas · 0 candidaturas

Aumenta tus posibilidades

Sube tu CV: te propondremos las ofertas que coinciden con tu perfil.

Analizando tu CV...

ThetaRay

Madrid