Logo for Interval Group

CI/CD Engineering – Security & Compliance (PID0621)

Roles & Responsibilities

  • Proven experience implementing end-to-end DevSecOps practices and embedding security controls into platform layers.
  • Extensive hands-on experience designing, operating, and troubleshooting large-scale Kubernetes platforms, including deep knowledge of CNI, RBAC, and admission controllers.
  • Strong proficiency with GitOps workflows using Argo CD or FluxCD in production environments.
  • Direct experience with Infrastructure-as-Code (IaC) using Terraform or OpenTofu.

Requirements:

  • Analyse program requirements to design secure, scalable architectures that address complex integration and compliance needs.
  • Develop and configure CI/CD pipelines featuring built-in security scanning, compliance checks, and automated validation.
  • Implement secure configurations, access controls, and encryption for repositories, systems, and deployment workflows.
  • Automate infrastructure provisioning and management using tools such as Terraform or OpenTofu.

Job description

This is a remote position.

This is a contract position for 1 FTE. A daily rate is available for this engagement.

This role involves designing and automating secure DevOps architectures to enhance developer self-service and platform integrity. As a DevSecOps Platform Engineer, you will integrate advanced security tooling and observability into CI/CD pipelines within a cloud-native environment.

  • English is the only language requirement.

  • Only occasional onsite visits in Germany are required.


Design, implement, and maintain robust infrastructure solutions while ensuring the highest standards of integrity, confidentiality, and system availability. You will focus on empowering engineering teams by exposing security tools through self-service interfaces and automating complex compliance workflows. This role is central to optimising continuous integration and delivery across a diverse service landscape.

Responsibilities

  • Analyse program requirements to design secure, scalable architectures that address complex integration and compliance needs.

  • Develop and configure CI/CD pipelines featuring built-in security scanning, compliance checks, and automated validation.

  • Implement secure configurations, access controls, and encryption for repositories, systems, and deployment workflows.

  • Automate infrastructure provisioning and management using tools such as Terraform or OpenTofu.

  • Design user-friendly self-service interfaces and APIs to allow developers to access security tools seamlessly.

  • Drive automation efforts for the generation and validation of Software Bill of Materials (SBOMs) and KBOMs during build processes.

  • Conduct continuous vulnerability management, risk assessments, and threat modelling to identify and mitigate potential weaknesses.

  • Maintain system availability through disaster recovery planning, incident response, and routine audits of system logs and user access.

  • Create comprehensive documentation, including step-by-step guides, architecture diagrams, and FAQs for internal and external stakeholders.

  • Collaborate with cross-functional teams to resolve issues, implement new features, and ensure systems run optimally under data protection requirements.



Requirements

  • Proven experience implementing end-to-end DevSecOps practices and embedding security controls into platform layers.

  • Extensive hands-on experience designing, operating, and troubleshooting large-scale Kubernetes platforms, including deep knowledge of CNI, RBAC, and admission controllers.

  • Strong proficiency with GitOps workflows using Argo CD or FluxCD in production environments.

  • Direct experience with Infrastructure-as-Code (IaC) using Terraform or OpenTofu.

  • Hands-on expertise with Google Cloud Platform, specifically GKE operations, IAM workload identity, and VPC networking.

  • Operational experience with artifact registries such as Harbor and security tooling like Trivy, Dependency-Track, or DefectDojo.

  • Solid understanding of software supply chain security, including artifact signing, provenance, and SBOM standards like CycloneDX.

  • Advanced experience building observability stacks centered around Prometheus and Grafana, including custom security-focused dashboards.

  • Strong background in operating and scaling GitLab architectures for large CI workloads.

  • Deep understanding of encryption mechanisms, asymmetric cryptography, and PKI.

  • Eligibility Residency in the EU, EEC, UK, or Switzerland.

Preferred Requirements

  • Experience operating platforms within highly regulated environments or critical infrastructure.

  • Familiarity with policy-as-code frameworks such as Kyverno.

  • Experience with secrets management solutions like HashiCorp Vault.

  • Ability to reference technical documentation relating to international security standards and certifications.



Benefits

As a freelancer / contractor with us, you will enjoy flexible working hours and the freedom to choose your own projects. Our platform gives you access to exciting projects in various industries and supports you in advancing your career. You'll benefit from competitive pay and a dedicated team to help you with any questions you may have. Work independently and utilise our strong network to achieve your professional goals.

CI/CD Engineer Related jobs

Other jobs at Interval Group

We help you get seen. Not ignored.

We help you get seen faster — by the right people.

🚀

Auto-Apply

We apply for you — automatically and instantly.

Save time, skip forms, and stay on top of every opportunity. Because you can't get seen if you're not in the race.

AI Match Feedback

Know your real match before you apply.

Get a detailed AI assessment of your profile against each job posting. Because getting seen starts with passing the filters.

Upgrade to Premium. Apply smarter and get noticed.

Upgrade to Premium

Join thousands of professionals who got noticed and hired faster.