DevSecOps Engineer
Location
Europe
Posted
6 days ago
Salary
0
Seniority
Mid Level
No structured requirement data.
Job Description
DevSecOps Engineer
Acclaim
Role Description The company is systematically building out its security and compliance function. We have already launched the SOC 2 and ISO 27001 processes on Drata, with the goal of completing them by the end of Q2. In the mid-term roadmap, we also plan to cover GDPR, HIPAA, and HITRUST. We are looking for our first dedicated DevSecOps Engineer who will take ownership of this area. Above all, we are seeking a strong, hands-on engineer, someone who can not only describe security and compliance processes but also independently implement them across infrastructure, CI/CD, Kubernetes, cloud environments, and production services. This role is not about “paper compliance”. However, working with policies, procedures, and evidence will also be an important part of the responsibility. We need someone who can connect compliance requirements to real technical controls and ensure they are properly implemented, validated, documented, and audit-ready. Qualifications - 5+ years of hands-on experience in security / DevSecOps for production infrastructure. - Direct experience with SOC 2 implementation: controls, evidence collection, audit preparation, and communication with auditors. - Ability to write security policies and procedures yourself — and implement them in a way that actually works in day-to-day operations. - Strong hands-on experience with Docker, Kubernetes, and cloud environments — GCP and/or AWS. - Strong understanding of IAM/SSO: centralized access management, provisioning/deprovisioning, and periodic access reviews. - Experience building onboarding and offboarding processes from a security and compliance perspective. - Ability to automate routine work using Python and/or Bash. - Ownership mindset: you take responsibility for a task, drive it to completion, and think one step ahead. - Friendly, non-toxic, and pleasant to work with. - Strong communication with developers: you can clearly and constructively explain your position, defend it when needed, and find common ground. - Willingness and ability to mentor, teach, and share knowledge with others. - Analytical mindset: you dig down to the root cause instead of just treating symptoms. - Proactivity: you would rather prevent an outage than heroically fight it later. - Strong attention to detail and reliability. Requirements - Experience with GDPR, HIPAA, and HITRUST — these are the next steps on our roadmap. - Experience in regulated industries such as banking, fintech, or healthcare, including customer/vendor security audits. - Experience with both on-prem and SaaS environments. - Kubernetes security tooling: Falco, OPA/Gatekeeper, Pod Security Standards, Trivy. - Experience using AI agents to automate routine tasks. - Terraform/Ansible and GitOps experience. - Experience with bug bounty or responsible disclosure programs. Responsibilities - Own Drata, controls, evidence collection, and communication with auditors. Support SOC 2 and ISO 27001, with GDPR, HIPAA, and HITRUST planned next. - Develop and maintain security policies and procedures, including Vulnerability Management, Access Control, Incident Response, Data Protection, and others. - Build onboarding, offboarding, and access review as a real process, automating it through SSO, centralized IAM, and automated provisioning/deprovisioning. - Drive SDLC security: Dependabot, CodeQL/SAST, SCA, dependency update policies, secrets management, and related controls. - Own vulnerability management: scanning, CVE triage, patching, annual penetration testing, vendor selection, coordination, and follow-up on findings. - Participate in response to critical vulnerabilities and security incidents. - Improve security observability: audit logging, change tracking, and reporting across all production platforms. - Spend around 60% of your time on the general infrastructure track: Kubernetes, deployments, monitoring, automation, and on-call. Benefits - The team has built award-winning AI products for tech corporations — devices, voice assistants, products that are actually in the world. - Cutting-edge tech stack: Speech Technologies, NLP, Generative AI (LLMs, diffusion models), voice-first agentic architecture with privacy-first and on-premises deployment. - High engineering bar and real ownership — the team cares about what actually works in production. - Fast career progression — a senior-heavy team and a high volume of real problems means you grow faster than you would anywhere else. - Startup pace with enterprise stability — real clients, real revenue, no bureaucracy. - Fully remote across Europe. - 21 vacation days + public holidays + 5 sick days. - Private English lessons via Preply.
Related Guides
Related Categories
Related Job Pages
More DevOps Engineer Jobs
• Own and continuously optimize our CI/CD pipelines and delivery workflows, ensuring fast feedback loops and secure deployments. • Build and evolve the local developer experience, making it seamless for engineers to spin up, test, and debug services locally across a variety of languages and frameworks. • Own and maintain part of our cloud infrastructure and container orchestration platforms using Terraform and Kubernetes. This will also require participating in identifying and solving infrastructure-related production issues and performance troubleshooting, upgrading our platforms for long-term resilience. • Be a technical referent and drive engineering standards forward by acting as a trusted partner for product engineering squads on delivery and infrastructure best practices, sharing expertise and providing guidance. • Encourage a culture of technical curiosity by frequently evaluating, benchmarking, and prototyping emerging technologies to bring the best tool sets to the team and promoting a culture of continuous learning across the organization.
Intermediate Cloud Engineer
Apex SystemsApex Systems, an IT staffing and workforce solutions firm, provides recruiting and staffing services to large and small companies alike. Founded in 1995 by thre
Support the buildout of scalable AWS cloud infrastructure, assist with networking setup and IAM configurations, and document technical work while collaborating with architects and security teams to ensure compliance and security standards.
SysOps Engineer
DILADocuments à transmettre : Pour postuler à cette offre, l'envoi du CV et d'une lettre de motivation est obligatoire.
Role Description Dans un contexte de rationalisation du système d’information de la DILA et d’industrialisation des pratiques techniques, le pôle « Performance et automatisation » joue un rôle central dans la transformation des méthodes de travail. - Concevoir, mettre en œuvre et maintenir des pipelines de déploiement automatisés pour les applications de la DILA. - Mettre à disposition et administrer des environnements techniques (développement, qualification, préproduction, production) à destination des projets métiers et applicatifs. - Accompagner les équipes projets dans l’intégration de leurs applications, en garantissant l’interopérabilité, la sécurité et la conformité avec les règles internes. - Participer activement aux déploiements en préproduction et production, en coordination avec les équipes d’exploitation et les prestataires externes. - Formaliser et maintenir les procédures techniques et documentations associées aux déploiements et intégrations. - Contribuer à l’amélioration continue des processus d’intégration et de déploiement, dans une logique de standardisation, de sécurité et de performance. Qualifications - Niveau 7 Master/diplômes équivalents. Requirements - Mise à disposition et maintien en conditions opérationnelles du socle d’outils SysOps. - Automatisation de l’intégration applicative et de la mise en exploitation. - Suivi de la qualité de la production et support à l’exploitation. - Contribution au pilotage des chantiers techniques. Benefits - Documents à transmettre : CV et lettre de motivation obligatoires. Company Description Localisation : 26 Rue Desaix, 75015 Paris, France
Epic Principal Site Reliability Engineer
Quest DiagnosticsA Fortune 500 company cited on the S&P 500 Index, Quest Diagnostics is a healthcare products and services provider offering diagnostic testing to 1-in-3 U.S. ad
Title: Epic Principal Site Reliability Engineer Location Secaucus, New Jersey Work mode Hybrid Job Description: As a Principal Site Reliability Engineering, you will be responsible for building a SRE practice, monitoring and performance engineering best practices which will be aligned to our agile teams to help drive availability, resiliency and stability of Quest products, platform and services. You are an engineering technical leader who has a passion for reliability and have a wide breath of experience. Ideally, you will have had experience as a Site Reliability and Observability Engineer where you made significant improvements to the products/services/platforms and customer experience. You will also partner with architecture, engineers, security, and operations to design and build reusable patterns to deploy reliable and resilient solutions. You will also have responsibility to attract, retain and grow top SRE engineering talent, providing guidance and mentorship to team members. You will bring empathy, humility, and a continuous learning mindset to every interaction. You are motivated to innovate and create, to always do the right thing, and to improve both what we build and how we build it. Pay Range: $150,000-170,000, plus yearly bonus (New Jersey) Salary offers are based on a wide range of factors including relevant skills, training, experience, education, and, where applicable, certifications obtained. Market and organizational factors are also considered. Successful candidates may be eligible to receive annual performance bonus compensation. Remote:This position supporting Epic can be 100% remote if not located near a hub location within certain criteria. Benefits Information: We are proud to offer best-in-class benefits and programs to support employees and their families in living healthy, happy lives. Our pay and benefit plans have been designed to promote employee health in all respects physical, financial, and developmental. Depending on whether it is a part-time or full-time position, some of the benefits offered may include: - Day 1 Medical, supplemental health, dental & vision for FT employees who work 30+ hours - Best-in-class well-being programs - Annual, no-cost health assessment program - Blueprint for Wellness - healthyMINDS mental health program - Vacation and Health/Flex Time - 6 Holidays plus 1 MyDay off - FinFit financial coaching and services - 401(k) pre-tax and/or Roth IRA with company match up to 5% after 12 months of service - Employee stock purchase plan - Life and disability insurance, plus buy-up option - Flexible Spending Accounts Annual incentive plans - Matching gifts program - Education assistance through MyQuest for Education Career advancement opportunities and so much more! Responsibilities: - Experience in transforming an organization by designing and implementing SRE capabilities, including monitoring, performance and chaos engineering. You will set the strategy for overall Site Reliability Engineering (SRE)/Development alignment - Lead initiatives to implement service levels (SLIs, SLOs, SLAs) and error budgets. You will initiate, influence and drive SRE within the organization and work with product and service teams to enable this model. - Provides guidelines/patterns and establishes proper metrics for building highly scalable, reliable, high performing systems - Strategizes best in class monitoring frameworks to accomplish end to end flow monitoring and meaningful alerting. - Coaches and mentors' teams of monitoring, performance and SRE engineers. - Proven ability to implement processes, solutions and engineering capabilities at scale. - Prior experience in large scale digital technologies, where uptime and continuous availability was core to the business. - Strong acumen of public cloud and / or private cloud implementation and application adoption - Strong understanding of Cloud, API, Event Driven, and Microservices technologies for large scale environments. - Influences other leaders, principals, and engineers opening the discussion and adoption for implementing SRE best practices. - Builds relationships with other leaders and groups across the company, providing understanding of SRE concepts and value. - Work with other team leads to identify improvements outside of SRE, i.e. DevOps, Quality, etc. - Partners with the Director of SRE to build platform roadmaps, frameworks, and identify team/process improvements. - Technical owner of SRE tools with expertise and understanding of current and other widely used industry tools. - Evaluates other tools/solutions for SRE to ensure IT is being cost aware and tool egnostic. Qualifications: Required Work Experience: - 10+ years of experience in developing enterprise software and proficiency in multiple languages e.g., Java and web technologies (Python, Go, Perl, Ruby or shell scripting) - 5+ years in implementing SRE solutions/practices. - 5+ years in mentoring and coaching. - Expert knowledge of Dynatrace as product owner, user, and - Expert with a proven track record in delivering technology solutions and leading a high performing SRE team in automating manual work. - Expert knowledge of reliability and production management domains - Experience in public cloud environments (AWS/Azure/Google Cloud). - Experience in leading operations, leveraging key event streaming, messaging and DB services e.g., Casandra, MQ/JMS/Kafka, Aurora, RDS, Cloud SQL, BigTable, DynamoDB, Cloud Spanner, Kinesis, Cloud Pub/Sub, etc. - Experience in either SAFe agile, Scrum or Kanban model - Expertise in DevSecOps practices and tools e.g. CI/CD, Gitlab, and any security scanning tools. - Experience with cloud-based technologies and tools especially in deployment, monitoring and operations - Strong experience and technical skills in developing/managing APIs and Microservices - Expert practitioner in multiple technology domains, may be a cross-domain expert able to solve complex and mission critical problems within a business or across the firm Preferred Work Experience: - Experience with containerization (Docker, Kubernetes) - Experience with Terraform and Ansible - Experience with SEIM - Experience with other APM tools - Healthcare industry experience Physical and Mental Requirements: - Ability to sit for long periods of time Knowledge: - Compliance requirements e.g. NIST, CFR21, ISO, GDPR, HIPAA, SOX - HL7 specifications - Integration Platform technologies (Mulesoft, Informatica, SnapLogic, Jitterbit, etc.) Skills: - Self-driven - Problem solving - Adaptable - Negotiation - Prioritization Education - Bachelor's Degree Bachelor's in computer engineering or something similar or equivalent work experience (Required) - Master's Degree Master's in computer engineering (Preferred) Languages - English (Preferred) Licenses and Certifications - AWS (Preferred) - Azure (Preferred) - GPC (Preferred) Work Requirements - Travel Required up to 30% 56391



