Devoteam Cyber Trust | DevSecOps - Architect - Senior/Lead (Remote)

  • Full-time
  • Contract type: Fixed-term contract

Company Description

Devoteam Cyber Trust is the Cybersecurity specialist arm of the Devoteam Group. With our 800+ experts located across EMEA, we aim to establish cybersecurity as an enabler of business success rather than a gatekeeper. We leverage an end-to-end approach to Cyber Resilience, Applied Security, and Managed Security services to secure the tech journey of large and medium-sized companies from all sectors and industries.


Since 2009, previously known as INTEGRITY, our team based in Portugal is specialised in providing cutting-edge Managed Security Services that combine its expertise and proprietary technology to consistently and effectively reduce the cyber risk of our clients. The comprehensive service range includes Persistent Intrusion Testing, ISO 27001, PCI-DSS, GRC Consulting and Solutions, and Third-Party Risk Management. ISO 27001 (Information Security) and ISO 9001 (Quality) certified, PCI-QSA, and member of CREST and CIS - Centre for Internet Security, we provide services to a considerable number of clients, operating in more than 20 countries.

Job Description

Time zones: EMEA (08:00 - 17:00 CET), AMER (16:00 - 01:00 CET) or APAC (00:00 - 09:00 CET)

  • Architect, design and implement infrastructure solutions, ensuring alignment with application requirements and cybersecurity best practices, with a focus on on-premises infrastructures.
  • Architect, design, implement, and maintain containerised solutions on OpenShift, Docker and Kubernetes, including the use of Kubernetes Operators, with a focus on on-premises infrastructures.
  • Architect and develop infrastructure as code (IaC) strategies and implementations, with a focus on on-premises infrastructures, primarily using Terraform / Terragrunt and Ansible, to manage infrastructure with a strong focus on OpenShift and Kubernetes environments.
  • Define and guide the development of CI/CD pipelines specifically tailored for on-premises OpenShift and Kubernetes deployments, automating build, test, and deployment processes, with a focus on Jenkins and integrating with artefact repositories such as Artifactory, JFrog Xray, and Nexus.
  • Collaborate with infrastructure and development teams to integrate cybersecurity practices (SecOps) throughout the infrastructure and software development lifecycle, providing architectural guidance and ensuring documentation and cybersecurity within the OpenShift and Kubernetes context.
  • Strategise, develop and optimise DevSecOps practices and tools on the environments, contributing to continuous improvement by leveraging testing automation frameworks, code analysis tools such as SonarQube, and other cybersecurity scanning tools.
  • Design and oversee the implementation of comprehensive logging, monitoring, and alerting solutions, such as Prometheus, Grafana, Loki, and Alertmanager to ensure system operation, performance, and proactive incident detection within the OpenShift and Kubernetes ecosystem.
  • Provide expert guidance and lead the response to incidents related to infrastructure, applications, and deployments, with a specific focus on OpenShift and Kubernetes on-premises environments.
  • Document architectural decisions, processes, including installation protocols, technical specifications (BSDS), and GxP relevant documentation, to ensure knowledge management and compliance.
  • Keep up to date with the latest technologies and trends in DevSecOps, with a strong emphasis on on-premises OpenShift and Kubernetes, and define the strategic direction for their adoption.

 

Qualifications

  • Degree in Computer Engineering, Information Technology or a related field.
  • Proven experience (+7 years) as a DevSecOps Engineer or Architect, with significant experience in on-premises environments.
  • Strong understanding of DevOps, SecOps and GitOps principles and practices, with a strategic focus in on-premises infrastructures.
  • Extensive experience with on-premises infrastructure management, including Linux systems and provisioning through IaC, with a proven ability to define infrastructure architectures.
  • Deep experience with containerisation technologies, specifically OpenShift, Docker, and Kubernetes, including the use of Kubernetes Operators, and the ability to design scalable and secure container platforms.
  • Experience with OpenShift specific tools such as Harbor, ACS (Advanced Cluster cybersecurity), Argo CD (GitOps), and ACM (Advanced Cluster Management), with a focus on their architectural integration.
  • Proven experience designing and implementing IaC strategies using tools such as Terraform / Terragrunt and Ansible for infrastructure automation, with a focus on on-premises infrastructures.
  • Proven experience designing and guiding the implementation of CI/CD pipelines with Jenkins / CloudBees, Azure DevOps for containerised applications on OpenShift and Kubernetes.
  • Experience with artefact repositories such as Artifactory and XRay from JFrog, and Nexus from Sonatype, including their role in secure software supply chains.
  • Experience with additional HashiCorp tools such as Vault, Consul, Nomad and Packer, and their application in architectural designs.
  • Experience with testing automation frameworks, code analysis and cybersecurity scanning tools such as SonarQube, and the ability to define their integration into the development lifecycle.
  • Hands-on experience with infrastructure logging, monitoring, and alerting tools relevant to OpenShift and Kubernetes such as Prometheus, Grafana, Loki and Alertmanager, with the ability to design comprehensive observability solutions.
  • Proficient in scripting languages such as Python and Bash, with the ability to develop automation scripts for architectural tasks.
  • Familiarity with Scrum or Agile methodologies, with experience working in agile environments as a technical leader.
  • Experience with the Atlassian suite of tools (Jira, Confluence, Bitbucket), and their use in documenting and communicating architectural decisions.
  • Experience working in GxP regulated environments and understanding GxP requirements, with the ability to design compliant solutions.
  • Excellent organisational, analytical, and problem-solving skills, with a strong ability to think strategically and holistically.
  • Strong sense of ethics, integrity, and responsibility, particularly in regulated environments, with a focus on security by design.
  • Excellent communication and teamwork skills, including the ability to collaborate effectively with development and infrastructure teams, and to articulate complex technical concepts to both technical and non-technical audiences.
  • Fluency in Portuguese and a moderate to high level of proficiency in English.

 

Nice to Have:

  • Relevant certifications, such as ITIL v4 Foundation or higher, are highly valued.
  • Relevant OpenShift/Kubernetes certifications, such as CKA, CKS, Red Hat Certified Specialist in OpenShift, are highly valued.
  • Deep proficiency in information cybersecurity principles, cybersecurity best practices, and frameworks such as ISO 27001, NIST Cybersecurity Framework and CIS Top Critical cybersecurity Controls.
  • Knowledge of Javascript frameworks.
  • Knowledge of Artificial Intelligence and Machine Learning concepts, and their application in DevSecOps within on-premises environments, including infrastructure, CI/CD, cybersecurity, and code analysis, with the ability to envision and design future solutions leveraging these technologies.

Additional Information

What we offer:

  • Professional development and monitoring talent;
  • Commitment to our employees' development;
  • Collaboration in a company that is constantly growing and evolving;
  • Strong organisational culture: collaboration, sharing, flexibility, integrity and low ego.

Would you like to join our team? Then send your CV.

Job Location

Privacy Policy