7+
Experience
Remote
Job Type
B2+
English Level
Experience
Job Type
English Level
Jaxel is looking for a skilled and proactive DevSecOps Engineer to join our team, working on diverse projects. You’ll collaborate with talented engineers to create reliable, scalable, and cost-efficient infrastructure and CI/CD pipelines, playing a key role in delivering top-notch solutions for our clients. If you’re passionate about automation, cloud technologies, and building efficient systems, we would love to have you on board!
Design and maintain secure cloud infrastructure (AWS) compliant with standards like GDPR, SOC 2, and HIPAA.
Embed Security-by-Design into CI/CD pipelines: SAST/DAST, vulnerability scanning, secrets management.
Monitor and respond to threats: configure SIEM, analyze logs, and investigate security incidents.
Harden Kubernetes clusters, Docker images, and databases (PostgreSQL, Kafka, Redis).
Automate security checks for infrastructure (Terraform, Ansible) and containers (Trivy, Clair).
Manage IAM policies, network security, and data encryption in cloud environments.
Collaborate with development and SOC teams to remediate vulnerabilities and conduct audits.
5+ years in DevOps/SRE roles + 2+ years in security (SecOps, DevSecOps, or Cloud Security).
Technical Stack:
Security tools: Wazuh, Falco, OPA, HashiCorp Vault, CSPM solutions.
AWS Security: GuardDuty, Config, KMS, Security Hub, CloudTrail.
Kubernetes Security: Pod Security Policies, Network Policies, runtime protection.
CI/CD Security: Integration of SonarQube, Anchore, Grype with GitLab/ArgoCD.
Experience with network protocols and defenses: VPN, Zero Trust, WAF, IDS/IPS.
Knowledge of standards: NIST, CIS, OWASP Top 10.
Ability to codify security policies (security-as-code) using Rego/Checkov.
Additional requirements (optional)
Certifications: CISSP, CCSP, AWS Certified Security, Certified Kubernetes Security Specialist (CKS).
Experience with pentesting tools (Nmap, Burp Suite) and Red Team/Blue Team exercises.
Familiarity with threat intelligence platforms (MISP, AlienVault).
Knowledge of SOC processes and MITRE ATT&CK Framework.