pracaon.plpracaon.pl

Senior SecOps Engineer

Remote, Polska
EPAM
Partner
сьогодні
Зарплата за домовленістю
Повна зайнятість • Дистанційна робота • IT, дані та AI

Основні характеристики вакансії

  • Мін. 5 років досвіду

  • DevOps / Хмара: AWS, Azure, Docker, Kubernetes

  • Повний робочий день

  • Віддалена робота - без поїздок

Description

We are seeking a Senior SecOps Engineer with strong expertise in software supply chain security to enhance our security posture around Software Bill of Materials and related tooling. This role focuses on defining security requirements, evaluating and implementing solutions, and enabling the engineering team through best practices and training. Responsibilities Assess the security and compliance landscape for SBOM, ensuring alignment with industry best practices and regulatory requirements Conduct in-depth assessments of existing and emerging security tools, identifying optimal solutions for SBOM generation, vulnerability detection, and supply chain risk management Architect, integrate, and optimize security solutions within CI/CD pipelines, ensuring automation, efficiency, and minimal friction for engineering teams Lead training and mentoring sessions to drive adoption of security tools, cultivate a security-first mindset, and establish long-term best practices Define security requirements and strategies tailored to supply chain risk management Evaluate complex security challenges and define pragmatic, high-impact solutions Design scalable security solutions that balance risk mitigation with engineering efficiency Requirements 5+ years of proven track record in SecOps, DevSecOps, or Security Engineering, with a strong focus on software supply chain security and secure development practices Deep understanding of SBOM frameworks such as SPDX and CycloneDX, and their role in securing software dependencies and mitigating supply chain risks Hands-on experience with security tooling, including SCA, SAST, and container security Expertise in CI/CD security automation Ability to design and implement scalable security solutions, balancing risk mitigation with engineering efficiency Strong problem-solving skills, with the ability to evaluate complex security challenges and define pragmatic, high-impact solutions

Requirements

  • 5+ years of proven track record in SecOps, DevSecOps, or Security Engineering, with a strong focus on software supply chain security and secure development practices

  • Deep understanding of SBOM frameworks such as SPDX and CycloneDX, and their role in securing software dependencies and mitigating supply chain risks

  • Hands-on experience with security tooling, including SCA, SAST, and container security

  • Expertise in CI/CD security automation

  • Ability to design and implement scalable security solutions, balancing risk mitigation with engineering efficiency

  • Strong problem-solving skills, with the ability to evaluate complex security challenges and define pragmatic, high-impact solutions

Responsibilities

  • Assess the security and compliance landscape for SBOM, ensuring alignment with industry best practices and regulatory requirements

  • Conduct in-depth assessments of existing and emerging security tools, identifying optimal solutions for SBOM generation, vulnerability detection, and supply chain risk management

  • Architect, integrate, and optimize security solutions within CI/CD pipelines, ensuring automation, efficiency, and minimal friction for engineering teams

  • Lead training and mentoring sessions to drive adoption of security tools, cultivate a security-first mindset, and establish long-term best practices

  • Define security requirements and strategies tailored to supply chain risk management

  • Evaluate complex security challenges and define pragmatic, high-impact solutions

  • Design scalable security solutions that balance risk mitigation with engineering efficiency

Seniority

  • Senior

Ключові слова / Навички

Security.Engineering
Docker
Kubernetes
Software Composition Analysis
Argo CD
Google Cloud Platform
Цю пропозицію імпортовано із зовнішнього порталу.Джерело оголошення

Більше схожих вакансій