Senior DevOps Security Engineer (DevSecOps) at HFM
on-site · full time · Visa sponsorship
Responsibilities:
- Implement and maintain automated security controls in CI/CD and cloud environments.
- Configure and manage firewalls, access controls, encryption (SSL/TLS, SSH, IPSec) and related systems.
- Conduct vulnerability scanning and support penetration testing; drive remediation actions.
- Monitor security systems, detect incidents and coordinate incident response with DevOps and engineering.
- Embed secure coding and security checks into the software development lifecycle.
- Provide security guidance, run trainings and share best practices across teams.
Requirements:
- Up to 3 years in DevOps security or IT security roles with practical, hands-on experience.
- Solid understanding of firewalls, access control, SSL/TLS, SSH, IPSec and common security tools.
- Familiarity with OWASP Top 10, PCI DSS and vulnerability scanning/pen testing workflows.
- Knowledge of DevOps principles, CI/CD pipelines and secure coding practices.
- Awareness of security frameworks (NIST, ISO 27001) and basic incident response procedures.
- Eagerness to learn, strong communication skills and legal authorization to work locally.