ThoughtBot
Devsecops Engineer
ThoughtBotBelgium1 day ago
ContractInformation Technology

Description

We currently have a vacancy for a DevSecOps Engineer fluent in English, to offer his/her services as an expert who will be based in Belgium. The work will be carried out either in the company’s premises or on-site at customer premises. In the context of the first assignment, the successful candidate will be integrated with the Development team of the company that will closely cooperate with a major client’s IT team on site.


Your tasks:

  • Design and manage CI/CD pipeline templates and reusable pipeline components using GitLab to streamline and automate software delivery processes;
  • Integrate security throughout the entire software development life cycle. This includes integration of automated security testing and pipeline security;
  • Implement infrastructure as code (IaC) practices using Terraform to automate and manage provisioning and configuration of cloud resources;
  • Collaborate with software developers, QA engineers, and Operations staff to ensure smooth operation of development and production environments;
  • Plan and execute scalable and reliable platform solutions to support current and future business needs;
  • Continuously identify operational and developer challenges and implement automated solutions to reduce manual effort and increase efficiency;
  • Innovate around developer tools to improve productivity and reduce overheads.


Requirements

  • Master’s degree in IT combined with relevant IT professional experience of 15 years;
  • Minimum 5 years of experience with GitLab (GitLab platform and using GitLab APIs) and CI/CD pipelines;
  • Minimum 4 years of experience with Docker and Kubernetes for container orchestration;
  • Minimum 3 years of experience with cloud services like AWS or Azure, using Terraform for IaC;
  • Minimum 3 years of experience with knowledge on software development best practices and integration of automated security testing throughout the entire development life cycle;
  • Minimum 2 years of experience with monitoring and observability in CI/CD;
  • Good knowledge in at least one programming language (Python, Bash, Java, Go, etc.);
  • Experience with integrating secrets management (Hashicorp, CyberArk), automated security testing (Fortify, Sonatype, Black Duck, etc.) and code quality (Sonarqube) tools in CI/CD pipelines;
  • Experience with Monitoring tools (Dynatrace, Prometheus, Grafana, ELK/EFK stack);
  • Good knowledge of Cloud services (AWS, Azure, OVH etc.);
  • Certification: Certified DevSecOps Professional (CDP) certification, DevSecOps Practitioner, AWS Certified DevOps Engineer – Professional, Microsoft DevOps Engineer Expert, Google Professional Cloud DevOps Engineer, or equivalent;
  • Excellent command of the English language.

Key Skills

Ranked by relevance