DevSecOps - Platform Engineer (SonarQube / Vault) - Senior/Lead

Devoteam Logo

Devoteam

๐Ÿ“Remote - Portugal

Summary

Join Devoteam Cyber Trust, a cybersecurity specialist arm of the Devoteam Group, as a DevSecOps Engineer specializing in on-premises OpenShift and Kubernetes environments. You will be responsible for designing, implementing, and maintaining infrastructure solutions, containerized solutions, and infrastructure as code, ensuring alignment with application requirements and cybersecurity best practices. You will also develop and optimize DevSecOps practices and tools, implement comprehensive logging, monitoring, and alerting solutions, and respond to incidents related to infrastructure, applications, and deployments. This role requires a strong understanding of DevOps, SecOps, and GitOps principles, extensive experience with on-premises infrastructure management, and deep experience with containerization technologies, particularly OpenShift, Docker, and Kubernetes. You will also need experience with IaC tools, CI/CD pipelines, artefact repositories, and testing automation frameworks. The company offers professional development opportunities, a commitment to employee development, and a strong organizational culture focused on collaboration, sharing, flexibility, integrity, and low ego.

Requirements

  • Degree in Computer Engineering, Information Technology or a related field
  • Proven experience (+5 years) as a DevSecOps Engineer or similar role, with significant experience in on-premises environments
  • Strong understanding of DevOps, SecOps and GitOps principles and practices, with a focus on on-premises infrastructures
  • Extensive experience with on-premises infrastructure management, including Linux systems and provisioning through IaC
  • Deep experience with containerisation technologies, specifically OpenShift, Docker, and Kubernetes, including the use of Kubernetes Operators
  • Experience with OpenShift specific tools such as Harbor, ACS (Advanced Cluster cybersecurity), Argo CD (GitOps), and ACM (Advanced Cluster Management)
  • Proven experience with IaC tools such as Terraform / Terragrunt and Ansible for infrastructure automation, with a focus on on-premises infrastructures
  • Proven experience implementing and managing CI/CD pipelines with Jenkins / CloudBees, Azure DevOps for containerised applications on OpenShift and Kubernetes
  • Experience with artefact repositories such as Artifactory and XRay from JFrog, and Nexus from Sonatype
  • Experience with additional HashiCorp tools such as Vault, Consul, Nomad and Packer
  • Experience with testing automation frameworks, code analysis and cybersecurity scanning tools such as SonarQube
  • Proven experience as an administrator, manager, and operator of Vault (HashiCorp) and SonarQube, including creating pipelines to build and deploy it across multiple environments, managing its CI/CD pipelines, configurations, and security controls
  • Hands-on experience with infrastructure logging, monitoring, and alerting tools relevant to OpenShift and Kubernetes such as Prometheus, Grafana, Loki and Alertmanager
  • Proficient in scripting languages such as Python and Bash
  • Familiarity with Scrum or Agile methodologies
  • Experience with the Atlassian suite of tools (Jira, Confluence, Bitbucket)
  • Experience working in GxP regulated environments and understanding GxP requirements
  • Excellent organisational, analytical, and problem-solving skills
  • Strong sense of ethics, integrity, and responsibility, particularly in regulated environments
  • Excellent communication and teamwork skills, including the ability to collaborate effectively with development and infrastructure teams
  • Fluency in Portuguese and a moderate to high level of proficiency in English

Responsibilities

  • Design and implement infrastructure solutions, ensuring alignment with application requirements and cybersecurity best practices, with a focus on on-premises infrastructures
  • Design, implement, and maintain containerised solutions on OpenShift, Docker and Kubernetes, including the use of Kubernetes Operators, with a focus on on-premises infrastructures
  • Design, develop, and maintain infrastructure as code (IaC), with a focus on on-premises infrastructures, primarily using Terraform / Terragrunt and Ansible, to manage infrastructure with a strong focus on OpenShift and Kubernetes environments
  • Develop, implement, and maintain CI/CD pipelines specifically tailored for on-premises OpenShift and Kubernetes deployments, automating build, test, and deployment processes, with a focus on Jenkins and integrating with artefact repositories such as Artifactory, JFrog Xray, and Nexus
  • Collaborate with infrastructure and development teams to integrate cybersecurity practices (SecOps) throughout the infrastructure and software development lifecycle, ensuring documentation and cybersecurity within the OpenShift and Kubernetes context
  • Develop and optimise DevSecOps practices and tools on the environments, contributing to continuous improvement by leveraging testing automation frameworks, code analysis tools such as SonarQube, and other cybersecurity scanning tools
  • Implement and manage comprehensive logging, monitoring, and alerting solutions, such as Prometheus, Grafana, Loki, and Alertmanager to ensure system operation, performance, and proactive incident detection within the OpenShift and Kubernetes ecosystem
  • Respond quickly and effectively to incidents related to infrastructure, applications, and deployments, with a specific focus on OpenShift and Kubernetes on-premises environments
  • Document processes, including installation protocols, technical specifications (BSDS), and GxP relevant documentation, to ensure knowledge management and compliance
  • Keep up to date with the latest technologies and trends in DevSecOps, with a strong emphasis on on-premises OpenShift and Kubernetes

Preferred Qualifications

  • Relevant certifications, such as ITIL v4 Foundation or higher, are highly valued
  • Relevant OpenShift/Kubernetes certifications, such as CKA, CKS, Red Hat Certified Specialist in OpenShift, are highly valued
  • Proficiency in information cybersecurity principles, cybersecurity best practices, and frameworks such as ISO 27001, NIST Cybersecurity Framework and CIS Top Critical cybersecurity Controls
  • Knowledge of Javascript frameworks
  • Knowledge of Artificial Intelligence and Machine Learning concepts, and their application in DevSecOps within on-premises environments, including infrastructure, CI/CD, cybersecurity, and code analysis

Benefits

  • Professional development and monitoring talent
  • Commitment to our employees' development
  • Collaboration in a company that is constantly growing and evolving
  • Strong organisational culture: collaboration, sharing, flexibility, integrity and low ego

Share this job:

Disclaimer: Please check that the job is real before you apply. Applying might take you to another website that we don't own. Please be aware that any actions taken during the application process are solely your responsibility, and we bear no responsibility for any outcomes.