Jobedly Post a Job

Senior, DevSecOps Engineering (m/f/d)

RedCap Pharmacy · Remote
RemoteFull-timeGeneralSenior$10,000–$10,000/yr
Apply on Jobedly ⚡ One-click AI Apply

About the Senior Devsecop Engineering role

Senior Devsecop Engineering positions focus on delivering results in their domain. This page aggregates open Senior Devsecop Engineering roles and what employers typically expect.

## Company Description **About Redcare Pharmacy:** As Europe’s leading online pharmacy, Redcare Pharmacy is driven by our dedicated teams and cutting-edge innovation. We strive to create an enjoyable and collaborative working environment where every employee feels comfortable and is motivated to contribute to our vision: *“Until every human has their health.”* If you are looking for a meaningful career that aligns with your values, join our team and start your #Redcareer. **About the role:** You’ll secure our Azure & Kubernetes Data & AI platform end-to-end—baking security into CI/CD, infrastructure, data, and ML workloads. You’ll use Azure DevOps or GitHub Actions, Terraform for policy-as-code guardrails, and Azure services like Key Vault, Entra ID (AAD), and Data Lake with least-privilege access. You’ll also work with Azure Policy, Microsoft Defender for Cloud, Microsoft Sentinel, and Kubernetes security features (RBAC, NetworkPolicies, Pod Security Standards, admission controllers). Experience with ACR image scanning (e.g., Defender, Trivy), OPA/Gatekeeper or Kyverno, CodeQL/Dependabot, Checkov/tfsec, and Databricks security (Unity Catalog, SCIM/AAD) is a plus. ## Job Description **About your tasks:** - Build and maintain **secure CI/CD pipelines** (Azure DevOps or GitHub Actions): secrets hygiene, signed artifacts/SBOMs, SAST/DAST/container scanning, least-privilege service connections, and supply-chain hardening. - **Automate security in infrastructure** with Terraform: enforce guardrails using policy-as-code (Azure Policy, OPA/Conftest) and continuous IaC scanning (Checkov/tfsec). - **Harden Kubernetes**: implement RBAC, NetworkPolicies, Pod Security Standards, secret management, image signing/scanning, and admission policies (Gatekeeper/Kyverno). - **Protect cloud identities & data**: manage Entra ID roles/Managed Identities, Key Vault, Private Link/NSGs, encryption at rest/in transit, and just-in-time/least-privilege access. - **Secure ML/MLOps**: lock down Databricks (Unity Catalog permissions, secret scopes), MLflow/model registry, feature stores; add model artifact signing, provenance, and runtime isolation for training/serving. - **Monitoring, logging & response**: wire platform and security telemetry to Microsoft Sentinel/Defender, define alerts/runbooks, and support incident response and tabletop exercises. - **CVE & vulnerability management**: maintain and publish SBOMs; continuously scan for vulnerabilities; **triage CVEs** (e.g., CVSS scoring + exploitability context), coordinate mitigations/patches, track exposure windows and SLAs, verify remediation, and report metrics to SecOps/GRC. - **Concepts & architecture**: draft and maintain reference architectures, trust-boundary diagrams, data-classification schemes, environment isolation patterns, secure secret/key management patterns, and network segmentation for AI services. - **Compliance & assurance**: contribute to risk assessments and threat modeling (incl. AI-specific risks: prompt injection, data exfiltration, model theft), support DPIAs, vendor/third-party risk reviews, penetration tests, control testing, evidence collection, and audit readiness for **ISO 27001**, **GDPR**, and **EU AI Act/NIS2** where applicable. - **Governance**: maintain security baselines and exceptions, own platform security KPIs, ensure retention policies, access reviews, and end-to-end audit trails (code → data → model → deployment). ## Qualifications **About you:** - Experience as a **DevSecOps / Cloud Security Engineer** (or DevOps with strong security focus) in Azure and Kubernetes environments. - Hands-on with **Azure DevOps/GitHub Actions**; comfortable automating guardrails and checks in pipelines. - Working knowledge of **Azure security** (Entra ID, Key Vault, Azure Policy, Defender for Cloud, Sentinel) and **Kubernetes security**. - Familiar with **vulnerability management & CVEs** (SBOM creation, dependency/container/IaC scanning, triage/prioritization, remediation workfl…

Salary estimate

$10,000 – $10,000/yr
Provided by the employer.

Skills for this role

RESTAzureKubernetesTerraformCi/CdDevopsSecurity

Resume tips for Senior Devsecop Engineering applicants

Interview preparation

Prepare concrete STAR-format stories that show Senior Devsecop Engineering outcomes you drove.

Research the employer's product and recent news before the interview.

Be ready to explain how you'd approach a typical Senior Devsecop Engineering problem end to end.

Have thoughtful questions ready about the team, tools and success metrics.

About RedCap Pharmacy

RedCap Pharmacy is actively hiring on Jobedly. Explore their open roles and what it's like to work there.

Apply on Jobedly ⚡ One-click AI Apply

Similar jobs

Companies hiring for similar roles