Job description
We are looking for a DevOps Engineer for one of our projects in the financial industry, who will be
working alongside our colleagues from Moldova, but also with client-side professionals located in Germany and Sweden.
What we EXPECT
Bachelor's Degree in Computer Science or Information Security
Prior experience (3-5 years) in a DevOps and/or IT Security-related position.
DevOps Automation background: Bitbucket, Jenkins, Terraform.
Familiarity with API Security, Container Security, Azure Cloud Security
Familiarity with Microsoft Azure Policies, Configuration, and Security Management tools.
Demonstrated experience with CI/CD security automation.
Strong experience on Kubernetes and Terraform, best if applied to Azure environments.
Experience working with Developers, DevOps, and Engineering teams
Experience coordinating and performing vulnerability assessments through the use of automated
and manual tools (Tenable, OpenVAS, etc).
Knowledge of IT service management basics (OLA/SLA, Trouble ticketing systems, metrics and reporting)
Ability to review and analyze vulnerability data to identify security risks to the organization's network, infrastructure, and applications and determine any reported vulnerabilities that are false positives.
Capability to prepare security vulnerability and risk management reports for management.
Leadership and Teaming skills to coordinate remediation of vulnerabilities within established timeframes.
Proficiency in Bash, Python or other scripting languages.
Comprehension in the security areas of Key Management Systems, Certificate Management,
Encryption, Penetration Testing, Vulnerability Scanning, Security and Monitoring tools, etc.
Experience configuring, implementing and leveraging computer security and networking diagnostic/monitoring tools.
Knowledge of Windows and Linux patch management and related information security functions (authentication, encryption, iptables, SSL, Ciphers, etc
Strong English skills both in verbal and written communication
Would be nice to have also:
Experience managing ELK Stack or ELK-based security products.
Familiarity with Information Security frameworks/standards (i.e. CIS, NIST, ISO 27001, etc).
Knowledge of ISO27001, GDPR, SOC1, SOC2, Standards and Policies and the associated
certification and audit processes
What we OFFER:
Opportunity to interact with global teams on a regular basis and work with the latest technologies in large-scale projects
Pleasant working environment, being part of a young and dynamic team
Strong cultural values: Teamwork, Fairness, Respect, Freedom and Responsibility
Competitive salary, lunch tickets
Private medical subscription
Work from home and monthly allowance for home-working expenses
Training sessions for new technologies, processes, and professional development.
Sport centers discounts (7Card/WorldClass)
Other perks (mostly available after the pandemic): good coffee and tea at the office; entertainment area in the office; team building events (team outings, Christmas party, annual team building, etc.)
Offer
We are looking for a DevOps Engineer for one of our projects in the financial industry, who will be
working alongside our colleagues from Moldova, but also with client-side professionals located in Germany and Sweden.
What we EXPECT
- Bachelor's Degree in Computer Science or Information Security
- Prior experience (3-5 years) in a DevOps and/or IT Security-related position.
- DevOps Automation background: Bitbucket, Jenkins, Terraform.
- Familiarity with API Security, Container Security, Azure Cloud Security
- Familiarity with Microsoft Azure Policies, Configuration, and Security Management tools.
- Demonstrated experience with CI/CD security automation.
- Strong experience on Kubernetes and Terraform, best if applied to Azure environments.
- Experience working with Developers, DevOps, and Engineering teams
- Experience coordinating and performing vulnerability assessments through the use of automated
and manual tools (Tenable, OpenVAS, etc).
- Knowledge of IT service management basics (OLA/SLA, Trouble ticketing systems, metrics and reporting)
- Ability to review and analyze vulnerability data to identify security risks to the organization's network, infrastructure, and applications and determine any reported vulnerabilities that are false positives.
- Capability to prepare security vulnerability and risk management reports for management.
- Leadership and Teaming skills to coordinate remediation of vulnerabilities within established timeframes.
- Proficiency in Bash, Python or other scripting languages.
- Comprehension in the security areas of Key Management Systems, Certificate Management,
- Encryption, Penetration Testing, Vulnerability Scanning, Security and Monitoring tools, etc.
- Experience configuring, implementing and leveraging computer security and networking diagnostic/monitoring tools.
- Knowledge of Windows and Linux patch management and related information security functions (authentication, encryption, iptables, SSL, Ciphers, etc
- Strong English skills both in verbal and written communication
Would be nice to have also:
- Experience managing ELK Stack or ELK-based security products.
- Familiarity with Information Security frameworks/standards (i.e. CIS, NIST, ISO 27001, etc).
- Knowledge of ISO27001, GDPR, SOC1, SOC2, Standards and Policies and the associated
certification and audit processes
What we OFFER:
- Opportunity to interact with global teams on a regular basis and work with the latest technologies in large-scale projects
- Pleasant working environment, being part of a young and dynamic team
- Strong cultural values: Teamwork, Fairness, Respect, Freedom and Responsibility
- Competitive salary, lunch tickets
- Private medical subscription
- Work from home and monthly allowance for home-working expenses
- Training sessions for new technologies, processes, and professional development.
- Sport centers discounts (7Card/WorldClass)
- Other perks (mostly available after the pandemic): good coffee and tea at the office; entertainment area in the office; team building events (team outings, Christmas party, annual team building, etc.)