Senior SecOps Engineer
Remote, PolskaОсновні характеристики вакансії
Мін. 5 років досвіду
DevOps / Хмара: AWS, Azure, Docker, Kubernetes
Повний робочий день
Віддалена робота - без поїздок
Description
We are seeking a Senior SecOps Engineer with strong expertise in software supply chain security to enhance our security posture around Software Bill of Materials and related tooling. This role focuses on defining security requirements, evaluating and implementing solutions, and enabling the engineering team through best practices and training. Responsibilities Assess the security and compliance landscape for SBOM, ensuring alignment with industry best practices and regulatory requirements Conduct in-depth assessments of existing and emerging security tools, identifying optimal solutions for SBOM generation, vulnerability detection, and supply chain risk management Architect, integrate, and optimize security solutions within CI/CD pipelines, ensuring automation, efficiency, and minimal friction for engineering teams Lead training and mentoring sessions to drive adoption of security tools, cultivate a security-first mindset, and establish long-term best practices Define security requirements and strategies tailored to supply chain risk management Evaluate complex security challenges and define pragmatic, high-impact solutions Design scalable security solutions that balance risk mitigation with engineering efficiency Requirements 5+ years of proven track record in SecOps, DevSecOps, or Security Engineering, with a strong focus on software supply chain security and secure development practices Deep understanding of SBOM frameworks such as SPDX and CycloneDX, and their role in securing software dependencies and mitigating supply chain risks Hands-on experience with security tooling, including SCA, SAST, and container security Expertise in CI/CD security automation Ability to design and implement scalable security solutions, balancing risk mitigation with engineering efficiency Strong problem-solving skills, with the ability to evaluate complex security challenges and define pragmatic, high-impact solutions
Requirements
5+ years of proven track record in SecOps, DevSecOps, or Security Engineering, with a strong focus on software supply chain security and secure development practices
Deep understanding of SBOM frameworks such as SPDX and CycloneDX, and their role in securing software dependencies and mitigating supply chain risks
Hands-on experience with security tooling, including SCA, SAST, and container security
Expertise in CI/CD security automation
Ability to design and implement scalable security solutions, balancing risk mitigation with engineering efficiency
Strong problem-solving skills, with the ability to evaluate complex security challenges and define pragmatic, high-impact solutions
Responsibilities
Assess the security and compliance landscape for SBOM, ensuring alignment with industry best practices and regulatory requirements
Conduct in-depth assessments of existing and emerging security tools, identifying optimal solutions for SBOM generation, vulnerability detection, and supply chain risk management
Architect, integrate, and optimize security solutions within CI/CD pipelines, ensuring automation, efficiency, and minimal friction for engineering teams
Lead training and mentoring sessions to drive adoption of security tools, cultivate a security-first mindset, and establish long-term best practices
Define security requirements and strategies tailored to supply chain risk management
Evaluate complex security challenges and define pragmatic, high-impact solutions
Design scalable security solutions that balance risk mitigation with engineering efficiency
Seniority
Senior
Ключові слова / Навички