DevSecOps (Lisbon / Porto - Hybrid)

Há 2 dias

Porto, Portugal Claranet limited Tempo integral 60 000 € - 80 000 € Contrato
We're fastlearners, hard workers, natural collaborators... and weMake Modern Happen Ourambition is to unlock the potential of our digital world so that organisationseverywhere can innovate and thrive securely. We aim to achieve this goal bybringing together the world’s most talented people and the most powerfultechnologies, combining them to address our customers' challenges and to buildsomething stronger together. Right now,we are looking for aDevSecOpsfor a client on our Talent Team. Yourresponsibilities include:
- Integrate security controls intoCI/CD pipelines.
- Automate vulnerability analysisprocesses and security testing throughout the development lifecycle.
- Implement SAST, DAST, SCA, andcontainer scanning tools.
- Collaborate with development teamsto ensure the adoption of secure coding best practices.
- Define and implement securitypolicies in Infrastructure as Code (IaC).
- Monitor vulnerabilities independencies, libraries, and container images.
- Support the design of securearchitectures for cloud applications and microservices.
- Implement secrets and credentialsmanagement mechanisms.
- Contribute to the automation ofcompliance and security checks in delivery processes.
- Collaborate with security teams inthe response and mitigation of identified vulnerabilities. You musthave:
- Experience in DevOps, DevSecOps, or applicationsecurity.
- Knowledge of CI/CD pipelines (e.g., Jenkins, GitLabCI/CD, GitHub Actions, Azure DevOps).
- Experience with Infrastructure as Code (e.g.,Terraform, ARM, CloudFormation).
- Knowledge of containers and orchestration (Docker,Kubernetes).
- Experience with Kubernetes security;
- Knowledge of OWASP Top 10 and secure coding practices
- Experience with secrets management (e.g., Vault, AzureKey Vault, AWS Secrets Manager)
- Experience with security monitoring and observability. We Value:
- DAST
- SCA
- Container security scanning
- Knowledge of cloud platforms (Azure,AWS, or GCP)
- Experience in vulnerabilitymanagement and application security

We offer
- Integration into a dynamic andmotivated team for the performance of the role.
- Additional training.
- Salary package according to therole performed.