Follow us at our new LinkedIn home @ https://www.linkedin.com/company/TungstenAutomation
Cloud SecDevOps Engineer
Location
Sweden
Posted
8 days ago
Salary
0
Seniority
Senior
Job Description
Cloud SecDevOps Engineer
Kofax
• Maintain and evolve Cloud Services security posture of the hosted SaaS environment and the Cloud Services Information Security tools and services • Drive and implement continuous improvements to both the SaaS technology stack and processes • Serve as a goto person to provide guidance and technical leadership to other staff members within the Cloud Services organization and other teams as necessary • Lead security initiatives and principles towards adoption within the organization • Communicate and visualize security threats, trends and needs feeding into the Cloud Services technology roadmap • Manage and lead security incidents and remediations work • Be the Cloud Services POC to the Security Operations Center • Manage and maintain security related integrations to SIEM • Manage and maintain hardening SaaS infrastructure and services • Collaborate with corporate Information Security team • Collaborate on design, analysis, architecture, implementation, pentesting, security reviews and process enhancements • Custodian of the key management ecosystem • Stakeholder in SDLC process • Provide recommendations on emerging security technologies and tools • Support compliance and certification initiatives and design with those in mind • Create Engineering documentation and procedures to implement tools into the environment • Create and maintain documentation describing security architecture and posture • Mentor/train Cloud Services team and provide technical direction and project leadership • Converting feedback from security analysis tools into infrastructure
Job Requirements
- +3 years hands-on experience in security of native SaaS solutions
- 3+ years experience with software security, secure coding and best practices patterns implementing security controls
- Working experience with Azure technologies
- Working experience with Azure Security Center and other Azure native security frameworks and functions
- Experience with infrastructure as code (Terraform, etc)
- Experience with networking and network protocols
- Experience with scripting and/or development in a security context
- Experienced in securing micro services
- Experience with configuration management tools such as ansible, chef, puppet
- Experience with CI/CD automation (Azure DevOps experience a plus)
- Experience with containers and orchestration
Related Guides
Related Categories
Related Job Pages
More DevOps Engineer Jobs
Cloud DevOps Engineer
Koniag Government ServicesCommunity Mission. Solution Oriented. Exceptional People.
• Design, implement, and maintain cloud infrastructure supporting ICAM platforms and services, including computer, networking, storage, and security components, leveraging infrastructure-as-code (IaC) principles and tools. • Build, maintain, and optimize CI/CD pipelines for the automated deployment, testing, and release of ICAM platform configurations, integrations, and application code across development, test, staging, and production environments. • Implement and manage infrastructure-as-code (IaC) solutions using tools such as Terraform, AWS CloudFormation, or Ansible to provision and manage cloud resources supporting ICAM platforms in a consistent, repeatable, and auditable manner. • Support the deployment, configuration, and operational management of ICAM platform components in cloud environments, including Okta tenant configurations, SailPoint cloud deployments, and related identity infrastructure. • Collaborate with ICAM architects and platform engineers to design cloud architectures that meet federal security requirements, Zero Trust principles, and ICAM platform-specific technical requirements. • Implement and maintain DevSecOps practices across the ICAM platform delivery lifecycle, integrating security scanning, vulnerability assessment, compliance checks, and policy enforcement into CI/CD pipelines.
• Design, implement, and maintain GitLab CI/CD pipelines that automate build, test, security validation, and deployment workflows • Develop and manage Infrastructure as Code (IaC) solutions using Ansible, AWS CloudFormation, Terraform, or related technologies to provision and configure cloud resources consistently • Engineer, deploy, and manage secure, scalable cloud infrastructure across AWS and Azure environments, with emphasis on availability, resiliency, and repeatable delivery • Support continuous Authorization to Operate (cATO) and automated ATO processes by automating compliance checks, evidence collection, assessment workflows, and use of pre-configured templates • Integrate and operationalize security and compliance telemetry from tools such as Splunk, Tenable, and CrowdStrike to support continuous monitoring, automated compliance validation, and remediation tracking • Support ingestion, normalization, and use of compliance data from FedRAMP, StateRAMP, SOC 2, and related sources within authorization and continuous-monitoring workflows • Maintain cloud configuration-management processes, approved baselines, and version-controlled environment configuration standards • Provide engineering support for continuous cybersecurity operations, including technical enablement of 24x7 security monitoring, event-log management, alerting, dashboards, and reporting • Support incident-response activities by developing or maintaining automation, integrations, and infrastructure capabilities used for containment, eradication, recovery, and post-incident analysis • Implement and improve analytics and automation capabilities, including AI-enabled approaches where approved, to enhance threat detection, triage, and operational efficiency • Produce and maintain event-log management reports and supporting artifacts consistent with applicable federal requirements, including OMB M-21-31 • Collaborate with development, security, cloud architecture, and operations teams to integrate DevSecOps practices throughout the software delivery lifecycle • Monitor, troubleshoot, and optimize cloud infrastructure and pipeline performance; resolve complex issues in a timely and effective manner • Develop and maintain technical documentation, including runbooks, architecture diagrams, standard operating procedures, configuration records, and operational playbooks • Participate in Agile ceremonies and evaluate tools, technologies, and processes that improve DevOps, cloud operations, security automation, and system onboarding
• Own and evolve the infrastructure that powers our AI platform • Work closely with teammates throughout engineering and security to design scalable, resilient, and secure systems • Enhance production monitoring and observability in containerized environments • Improve our infrastructure-as-code deployments (Pulumi) to prepare for scaling to the next customer growth inflection point • Develop and refine internal tooling to support efficiency and reliability • Strengthen the reliability, performance, and scalability of our core SOC analyst product • Participate actively in a 24x7 on-call rotation, maintaining high availability and rapid response • Contribute to future expansion efforts to support multi-cloud infrastructure (GCP, Azure) • Write new product features when interested and excited to do so
Security Engineer – DevSecOps, AppSec
Saipos | Sistema para RestauranteTornando o dia a dia do seu restaurante mais simples, ágil e inteligente. 🐿️
• Implement and maintain SAST, DAST and SCA tools in the CI/CD pipeline (Bitbucket/GitHub/GitLab) • Implement, maintain, operate and evolve the Secrets Manager and Vault • Perform continuous secret scanning in repositories and drive remediation of findings with development teams • Conduct security-focused code reviews on critical features — authentication, authorization, external integrations, handling of sensitive data • Harden infrastructure: Terraform state, IAM policies, AWS configurations, Security Groups • Support remediation of technical findings collected from security analysis tools, external pentests and internal scans • Build and lead the Security Champions program — identify focal points within dev squads and structure ongoing training • Conduct threat modeling for new features and critical integrations with product and engineering teams • Define and document security requirements in the SDLC — from design to deployment • Assess the security of internal and external APIs, partner integrations and authentication flows



