DevSecOps Engineer integrating security practices throughout the development lifecycle at Keboola. Join a growing SaaS company focusing on cloud security and AI automation.
Responsibilities
Design and oversee security architecture with a focus on DevSecOps principles (shift-left security).
Integrate security controls into CI/CD pipelines and automate security testing (SAST, DAST, SCA, container scanning).
Lead security assessments and audits, identify vulnerabilities and implement countermeasures.
Conduct security code reviews and provide feedback to developers on best practices.
Implement security monitoring tools to detect and respond to security incidents.
Guide and mentor team members on security best practices, DevSecOps culture, and emerging threats.
Build and maintain "security as code" approaches - policy as code, compliance as code.
Own end-to-end resolution of security findings from client security teams - from analysis through infrastructure fixes to communication of remediation status.
Collaborate with the SRE team on reliability improvements that enhance security posture.
Requirements
5+ years' experience securing production services and Kubernetes environments.
Automation-first mindset, including using modern tools (including AI-assisted workflows) to streamline security operations.
Experience integrating security into CI/CD pipelines and automating security checks.
Expertise securing applications and infrastructure on GCP, AWS, or Azure (IAM, network security, encryption, logging).
Hands-on experience with infrastructure as code (Terraform) and securing IaC configurations.
Experience with security monitoring, intrusion detection, and incident response.
Ability to perform threat modeling and vulnerability assessments.
Experience with zero trust architecture in cloud environments.
Proficiency with UNIX systems and scripting (Python, Bash, Go).
Experience with GitOps workflows using ArgoCD.
Experience working with external security teams and managing security findings from discovery through resolution.
(nice to have) Experience with policy as code tools (Open Policy Agent, Kyverno), chaos engineering for security, or service mesh security (Istio, Linkerd).
(nice to have) Understanding of SOC 2 or ISO 27001 compliance frameworks.
Strong documentation, analytical and problem-solving skills.
Collaborative approach, promoting a "security is everyone's responsibility" mindset.
Excellent communication skills - ability to explain security concepts to developers and external security teams.
Self-organized with ability to manage multiple priorities.
Proactive mindset with commitment to continuous learning.
Resilience in handling stressful situations.
Ability to balance security requirements with developer experience.
Benefits
Competitive compensation.
Generous paid vacation time. And we mean generous.
Cool new offices in the heart of Holesovice in Prague. You need to be 3 times a week in the office.
Mechanical/Reliability Engineer responsible for mechanical installations in Bergen op Zoom. Analyzing maintenance strategies and leading projects to enhance reliability.
Senior DevOps Engineer responsible for cloud infrastructure and deployments. Optimizing AWS services and ensuring system security and reliability for Verizon.
Senior DevOps Engineer responsible for automating infrastructure and building CI/CD pipelines for collaborative robotics company. Collaborating with global engineering teams from the Bangalore office.
Site Reliability Engineer Intern at Tencent working on gaming services and cloud native solutions. Collaborating with global teams to eliminate toil and enhance reliability.
Cloud/DevOps Specialist at N5X managing and optimizing critical cloud infrastructures for Brazilian energy trading. Collaborating with a multidisciplinary team to ensure high availability and performance.
Cloud/Devops Specialist responsible for designing a hybrid architecture combining cloud and on - premises infrastructure for energy trading systems. Collaborating with a multidisciplinary team in a dynamic environment.
Reliability Engineering Specialist utilizing reliability tools and models to improve asset performance at Enbridge. Collaborating across teams to guide investment decisions for safe operations.
DevOps Engineer responsible for structuring and supporting cloud DevOps architecture in Brazil. Working strategically on automation and CI/CD practices with development teams in Pernambuco.
DevSecOps Software Engineer developing secure CI/CD pipelines for Boeing's military software systems. Collaborate with cross - functional teams and implement automation and security best practices.
DevOps Manager responsible for managing a team for multi - cloud solutions supporting the USAF Cloud One project. Focus on scalable cloud - native solutions and CI/CD practices.