Senior DevSecOps Engineer
Sofia | Information Technology

Senior DevSecOps Engineer

We are seeking an experienced Senior DevSecOps Engineer to support the modernization of our application deployment and delivery landscape. This is a highly hands-on contract role requiring a professional who can contribute immediately with minimal ramp-up.

The primary objective is to migrate an existing application from Docker Compose to Kubernetes workloads running on k3s, while strengthening CI/CD automation and software supply chain security practices.

This is a delivery-focused engagement. The successful candidate will assess the current environment, propose pragmatic improvements, and implement solutions directly.


Отговорности

Migrate containerized applications from Docker Compose to Kubernetes (k3s).

Design, build, and maintain secure CI/CD pipelines using Azure DevOps and GitLab CI/CD or Jenkins.

Implement DevSecOps controls including:

  • Static Application Security Testing (SAST)
  • Dependency and vulnerability scanning
  • Container image scanning
  • Secrets detection and management
  • Image signing and release controls

Improve deployment automation, environment promotion, rollback capabilities, and release traceability.

Collaborate with development, infrastructure, and security teams to improve delivery reliability and resilience.

Troubleshoot build, deployment, and runtime issues across CI/CD and Kubernetes environments.

Produce clear technical documentation and contribute to DevSecOps best practices.

Изисквания

  • 6+ years of professional experience in DevSecOps, Platform Engineering, or similar roles, with DevSecOps as the primary focus.
  • Strong hands-on experience with Docker and Kubernetes.
  • Experience with k3s is highly desirable.
  • Proven experience migrating workloads from Docker Compose to Kubernetes.
  • Strong Azure DevOps experience.
  • Experience with GitLab CI/CD and/or Jenkins.
  • Practical experience implementing:
    • SAST
    • Dependency scanning
    • Container security scanning
    • Secrets management
    • Image signing
    • Vulnerability management
  • Strong Linux, automation, and scripting skills.
  • Experience working with Git-based workflows, Agile/Scrum methodologies, Azure DevOps, GitLab, and Jira.
  • Excellent troubleshooting, communication, and documentation skills.
  • Strong written and spoken English.

Please apply only if your primary and recent professional experience is in DevSecOps Engineering.

Candidates whose backgrounds are primarily Software Development, System Administration, Infrastructure Engineering, or Security Engineering with limited DevSecOps exposure will not be considered.

Готови ли сте за следващата стъпка в кариерата си?

Кандидатствайте лесно и бързо за позицията директно тук:

    Кандидатствай тук