DevSecOps Engineer
Summary
Medior/senior DevSecOps engineer at SQA Consulting's Tuzla office, building and maintaining security-focused CI/CD pipelines, hardening servers and cloud environments, and automating security monitoring. Core stack: Linux, Jenkins/GitLab, AWS/Azure/GCP, Ansible/Terraform, Docker/Kubernetes, ELK/Prometheus, Python/Bash.
- Implementation and maintenance of CI/CD pipelines, with respect to "shifting security to the left"
- Continuous security hardening of servers and applications, identifying and eliminating vulnerabilities
- Collaboration with various teams and customers on implementing good practices
- Process automation and monitoring with special regard to security automation
- Defining, implementing, and testing solutions and policies for cloud environments
- Thorough knowledge of computer, application and network security concepts, tools and best practices
- Strong interest in cybersecurity and keeping up-to-date with the latest threats and vulnerabilities
- Experience with Linux systems (Red Hat or Debian based)
- Experience with continuous integration / continuous delivery processes and tools (Jenkins, Gitlab pipelines, etc.)
- Experience with cloud infrastructure (AWS, Azure, GCP)
- Experience with configuration management technologies (Ansible, Terraform, etc.)
- Experience with containerization technologies (Docker, Kubernetes, etc.)
- Experience with monitoring systems (ELK stack, Prometheus, etc.)
- Experience with any programming language (Python, Bash, etc.)
- Familiarity with Information Security frameworks and standards
- Minimum 3+ years of experience
- Ability to converse and write in English
Annual bonus scheme