Senior DevOps Engineer with Security Operations Focus
Summary
A Senior DevOps Engineer focused on security operations manages Windows/Linux servers in Azure, troubleshooting endpoint/monitoring agents (e.g., Microsoft Defender, Azure Monitor), optimizing patching processes, and integrating security/code-quality checks into CI/CD pipelines (e.g., SonarCloud) for a global SaaS client.
Svitla Systems Inc. is looking for a Senior DevOps Engineer with Security Operations Focus for a full-time position (40 hours per week) in Poland. Our client is a leading global provider that gathers information and reports to enhance the environmental and social impacts on the business.
You’ll be part of a global team supporting multiple SaaS environments that help make the world a safer place. The team uses Azure as the core but hosts on multiple platforms due to specific needs and the rapid pace of development and acquisition. The environment is rapidly changing from IaaS to PaaS to serverless, so you’ll need to both apply your current skillset and learn new things daily to push the business forward. This role is dedicated to supporting the Security Team. Your priority is hardening and stabilizing the server estate — restoring endpoint and monitoring agent health, strengthening how they patch, and building security and code-quality checks into the pipelines. While a diversity of expert-level DevOps skills will help you succeed, deep, hands-on experience with Windows/Azure server operations, patching, and endpoint tooling is what this role is built around.
Requirements:
Hands-on experience administering Windows Server (and Linux) in Azure, including patching, agents, and OS-level troubleshooting.
Working knowledge of Microsoft Defender for Servers/Endpoint and the Azure Monitor Agent (AMA) for onboarding, health troubleshooting, and remediation.
Understanding of patch and vulnerability management using tooling such as Azure Update Manager, WSUS, or similar.
Proven success in managing and optimizing CI/CD for an Azure-based SaaS application, including codequality/SAST tooling such as SonarCloud.
Strong understanding of scripting with at least PowerShell or Bash.
Hands-on experience with common DevOps tools, including Azure DevOps.
Experience with configuration management / infrastructure-as-code tools like Terraform.
In-depth understanding of security principles.
Knowledge of version control / source-code management tools.
Knowledge of databases including SQL and NoSQL.
Strong understanding of web server configuration and management such as IIS or Tomcat.
Working knowledge of local and wide-area networking and associated technologies, e.g. switches, routers, firewalls, VPNs.
Excellent communication and collaboration skills, with the ability to work effectively across multiple disciplines.
Strong analytical skills with the ability to drive reliability improvements.
Experience working in an agile software development life cycle.
Ability to assimilate information quickly under pressure and deliver on time in a fast-paced, high-standards environment.
Bachelor’s degree in Computer Science or a similar area of study, or equivalent experience.
Nice to have:
Understanding of cloud-based networking (VNETs, NSGs, Route Tables, Hub/Spoke architecture, Private Endpoints, etc.).
Strong understanding of CI/CD (YAML and Classic Pipelines).
Knowledge of PaaS (Web Apps, Function Apps, Storage Accounts, Key Vaults, Azure Redis Cache, Azure Service Bus, API Management, Azure Data Factory, Azure Databricks).
Experience in monitoring (Azure Monitor, New Relic, LogEntries, Rapid7, etc.).
Experience with Containers/Docker for microservice or service-oriented architectures.
Familiarity with Git, ARM, Terraform, Ansible, Azure CLI, or similar.
Familiarity with JavaScript, React, C#, Java, PowerShell, Bash or similar languages.
Responsibilities:
Remediate endpoint and monitoring agent health. Diagnose and fix broken Microsoft Defender for Servers/Endpoint and Azure Monitor Agent (AMA) deployments across the server fleet. Restore full security and monitoring coverage, verify healthy reporting to Defender for Cloud/Azure Monitor, and put safeguards in place so agents don’t silently break again.
Review and improve patching processes.
Assess our current OS and system patching processes end to end, identify gaps in cadence, coverage, reporting, and exception handling, and recommend and implement improvements that make patching consistent, measurable, and auditable.
Patch systems as appropriate.
Execute patching across servers and systems on a defined cadence and in response to identified vulnerabilities, using tooling such as Azure Update Manager.
Coordinate with application owners to schedule and validate patches while minimizing disruption to production.
Support SonarCloud and pipeline implementation.
Support the implementation and rollout of SonarCloud and related CI/CD improvements. Integrate static code analysis and quality/security gates into Azure DevOps pipelines and help engineering teams adopt them.
Additional responsibilities:
Perform and automate system administration including installation, configuration, maintenance, and disaster recovery.
Build and maintain supporting infrastructure for cloud environments and applications, using a wide range of Azure resources to deliver scalable, reliable, and cost-efficient services.
Automation, auditing, and tooling for security, compliance, and resource usage — monitor and improve processes across deployments.
Identify system-level issues related to OS configuration and virtual hardware bottlenecks.
Work side by side with engineers, guiding critical projects and applying your subject-matter expertise to solve complex problems.
Support application infrastructure to ensure the platform is optimized for performance and reliability.
Take ownership of operational excellence by establishing and maintaining business-focused KPIs, and use these metrics to drive positive transformation.
Maintain and take ownership of your tasks each sprint, ensuring time worked is logged and details are captured.
We offer:
US and EU projects based on advanced technologies.
Competitive compensation based on skills and experience.
Regular performance appraisals to support your growth.
Flexibility in the workspace, either remote or in our welcoming office.
Comprehensive medical insurance after one month.
MultiSport card with access to 2500 sports facilities all over Poland
Bonuses for recommendations of new employees.
Bonuses for article writing, public talks, and other activities.
15 vacation days, 10 national holidays, 10 sick leaves, and family days off.
Personalized learning program tailored to your interests and skill development.
Free tech webinars and meetups organized by Svitla.
Welcome and anniversary presents, gifts for children, and more.
Regular corporate events and meetups.
Awesome team, friendly and supportive community!
Ref # 5274