Remote job
DevSecOps Engineer (AWS/Azure)
Job details
About this role
Role overview A DevSecOps Engineer position focused on embedding security into cloud infrastructure and delivery processes for an insurance-sector client. The role spans AWS and Azure, with emphasis on infrastructure as code, automated guardrails, CI/CD security, and developer enablement. Work is remote within Poland under a B2B collaboration model.
Responsibilities - Author and maintain automated policy guardrails using IaC linting and scanning tooling (for example Checkov, Tfsec, and OPA/Rego) to flag misconfigurations before production. - Build and operate highly available infrastructure across AWS and Azure using Terraform-based infrastructure as code. - Bake security agents such as EDR, vulnerability scanners, and monitoring tools into base machine images (AMIs, Azure Golden Images) and container base environments, and develop software distribution flows using Azure Extension and AWS SSM. - Act as the bridge between Security and Engineering, producing developer-friendly remediation guidance and reusable, secure-by-default templates (Terraform modules, Helm charts). - Continuously review and harden CI/CD pipelines, cloud-native security services, and access controls in both cloud platforms.
Requirements - 3+ years of cloud operations or infrastructure experience managing production environments in both AWS and Azure. - Deep hands-on proficiency with Terraform plus scripting in Python, Bash, or PowerShell. - Practical experience designing and securing automated build and release pipelines at scale. - Working knowledge of native security services and access controls across AWS and Azure. - Advanced infrastructure-as-code skills, including modular design and immutable infrastructure patterns (Terraform, Bicep, or CloudFormation).
Benefits and work setup Remote work within Poland on a flexible B2B contract, with the opportunity to contribute to varied consulting engagements.