We’re looking for a DevOps Engineer (Security Focus) who treats security as a first-class engineering concern, not a compliance checkbox. You’ll work closely with development to embed security into every stage of the delivery lifecycle — from the first commit to production monitoring.
Responsibilities: * Design and maintain secure CI/CD pipelines from commit to production * Integrate SAST, DAST, SCA, and secret scanning into GitLab / GitHub Actions * Harden Kubernetes clusters — RBAC, network policies, admission controllers, pod security standards * Manage cloud infrastructure (AWS / GCP) using IaC — Terraform, Helm, GitOps workflows * Implement Zero Trust architecture, mTLS, and service mesh (Istio / Linkerd) * Own the observability and alerting stack — Prometheus, Grafana, Loki, ELK * Lead threat modeling sessions and security-focused code reviews * Drive compliance work (SOC 2, ISO 27001, GDPR) on the technical side * Mentor engineers and promote a shift-left security culture across the team
Requirements: * 4+ years in DevOps, DevSecOps, or a closely related role * Proven experience building secure pipelines in real production environments * Solid hands-on knowledge of Kubernetes and cloud providers (AWS preferred) * Strong grasp of network security — firewalls, VPC, WAF, TLS/mTLS * Practical experience with secret management and key rotation * Actively uses AI tools in daily work — Copilot, Cursor, Claude, or similar * Understanding of OWASP Top 10, CVE processes, and vulnerability disclosure * At least B2 English — comfortable reading docs, writing in async, and joining calls
Nice to have: * Experience preparing for or passing SOC 2 / ISO 27001 audits * Certifications: CKS, AWS Security Specialty, OSCP, or equivalent * Familiarity with eBPF-based security tools — Cilium, Tetragon * Background in FinTech, HealthTech, or another regulated domain * Scripting or automation skills in Python
We Offer: * Innovation Culture: Work in a team that actively experiments with AI and modern development approaches * Flexible Work: Remote work or a modern office in Kyiv * Generous Time Off: 20 paid vacation days + 15 sick leave days annually * Professional Growth: Compensation for courses, certifications, and learning resources * Cutting-Edge Tools: Access to premium AI tools (Cursor Pro, GitHub Copilot, etc.) * Supportive Environment: Collaboration, trust, and focus on outcomes rather than micromanagement