Hybrid DevSecOps Manager

Posted last month

Apply now

About the role

  • Ensure security across applications, pipelines, and technology infrastructure, embedding security controls at every stage of the SDLC
  • Analyze financial applications and services to identify vulnerabilities and risks
  • Design and implement security controls in CI/CD pipelines
  • Ensure compliance with a Secure Software Development Lifecycle (Secure SDLC)
  • Recommend and promote security best practices in software development and operations
  • Guarantee data encryption in transit and at rest following standards (TLS 1.3, AES-256, KMS, HSM)
  • Integrate security analysis tools (SAST, DAST, SCA) into pipelines
  • Strengthen container, Kubernetes, and cloud configurations following a Zero Trust approach
  • Collaborate with the incident response team to reduce exposure times and reinforce controls
  • Document and share security guidelines across the organization

Requirements

  • Background in Computer Science, Engineering, Cybersecurity, or related fields (or equivalent hands-on experience)
  • 3–5 years of proven experience in DevSecOps, Application Security, or Cybersecurity roles
  • Previous work in fintechs, banks, payment gateways, or financial companies
  • Experience implementing security controls in CI/CD pipelines (SAST, DAST, dependency scanning, secure deployments)
  • Participation in regulatory compliance projects (PCI DSS, ISO 27001, SOC 2 or similar)
  • Practical experience in encryption, secrets and key management, sensitive data protection, and tokenization
  • Exposure to or management of financial security incidents (fraud, API attacks, data breaches)
  • Knowledge of containers and cloud environments (Docker, Kubernetes, AWS/GCP/Azure) with a strong security focus
  • Experience in security automation through scripting (Python, Bash, Go, Node.js)
  • Familiarity with CI/CD tools (GitHub Actions, GitLab CI, Jenkins, Gitea Actions)
  • Knowledge of security standards (OWASP Top 10, OWASP ASVS, MITRE ATT&CK)
  • Strong knowledge of secrets management and encryption tools (HashiCorp Vault, AWS KMS, GCP Secret Manager)
  • Practical knowledge of cryptography applied to financial data and tokenization

Job title

DevSecOps Manager

Job type

Experience level

Mid levelSenior

Salary

Not specified

Degree requirement

Bachelor's Degree

Location requirements

Report this job

See something inaccurate? Let us know and we'll update the listing.

Report job