DevSecOps Analyst

Posted 63ds ago

Employment Information

Education
Salary
Experience
Job Type

Report this job

Job expired or something wrong with this job?

Job Description

DevSecOps Engineer automating security controls across cloud platforms using internal tools at a startup. Joining a dynamic team focused on security compliance and cloud operations.

Responsibilities:

  • Internal tool development: Build bots, scripts, and microservices (Python/Bash) to automate security hardening, secrets management, key rotation, and compliance checks
  • Publish and maintain SDKs or CLI tools that simplify security-related tasks for other teams
  • Validate Terraform and CloudFormation templates prior to deployment using policy-as-code frameworks and linters
  • Define secure IaC modules (VPC, WAF, KMS, IAM) following least-privilege principles and encryption-by-default practices
  • Provide troubleshooting support and security recommendations to engineering teams and other InfoSec verticals
  • Assess and ensure that Artificial Intelligence implementations within the company comply with security standards, preventing data leakage and prompt-injection attacks
  • Evaluate, implement, and manage secrets management tools (e.g., AWS Secrets Manager, HashiCorp Vault) to ensure service credentials are not hardcoded in codebases or backends
  • Adhere to the company’s information security policies, standards, and ISMS requirements
  • Support secure and compliant cloud operations, reporting risks or incidents when identified
  • Follow company guidelines related to environmental responsibility, health, and workplace safety

Requirements:

  • Bachelor’s degree in Systems Engineering, Electronic Engineering, Telecommunications Engineering, or a related field
  • Experience in backend software development and roles related to information security, IT management, or solution architecture
  • Hands-on experience designing and assessing secure architectures in public, private, and hybrid cloud environments (AWS preferred)
  • Ability to communicate complex technical concepts to non-technical audiences
  • Strong analytical skills to assess cloud security risks and design practical, scalable solutions
  • Proven ability to collaborate cross-functionally with development, IT, and security teams
  • Experience integrating security practices into operational and development processes
  • Familiarity with Zero Trust security architectures, applied cryptography, and cloud data encryption
  • Solid knowledge of cloud fundamentals, cloud security architectures, and Infrastructure as Code (Terraform, CloudFormation, Pulumi)
  • Experience with automation using Python and secrets management / PKI.

Benefits:

  • Well-funded and proven startup with large ambitions and competitive salaries.
  • Entrepreneurial culture where pushing limits, creating and collaborating is everyday business.
  • Open communication with management and company leadership.
  • Small, dynamic teams = massive impact.
  • 100% Remote Work (You choose where to work from).
  • 500USD a year for you to invest in learning.
  • 2 Family days.