Logo for Directio

DevSecOps Engineer – Remote Work Type

Role overview

Qualifications

  • 5+ years of professional experience in Platform Engineering, DevOps, or a similar role
  • Strong hands-on experience with Microsoft Azure and Kubernetes/AKS in production environments
  • Hands-on experience in security engineering and managing security-related processes
  • Fluent in English

Responsibilities

  • Running and maintaining the platform together with the team, working with Azure, AKS, deployments, upgrades, incident response, and on-call support
  • Building and operating infrastructure required for migration from a monolithic architecture to services, including CI/CD pipelines in Azure DevOps
  • Managing the external attack surface and ensuring vulnerabilities are addressed effectively
  • Integrating security into Azure DevOps and Kubernetes delivery pipelines

Key facts

Hard skills

Other skills

  • Prioritization
  • Communication

About the company

Directio logo

Directio

IT Services & IT Consulting

Directio is a global IT services company. We consult, code, test, deploy and manage mainly cloud-based and mobile applications. We provide around the clock support from our offices in Poland, the Philippines, Mexico and the United States. We address the unique challenges businesses face through consulting, developing, and rapidly delivering top-notch tech products. Our goal is to not only tackle today's business hurdles but also prepare our clients for the future by accelerating their digital transformation. We specialize in: - cloud solutions - end-to-end software development - staff augmentation - ongoing support - data visualisation We have extensive experience in serving the FMCG, retail, automotive, SaaS, and IT services sectors. “We Code Success” is our guiding principle. “We code success” means we’re not just writing lines of instructions, crafting prompts or closing tickets. We want everyone associated with us - our clients, partners and employees – to be successful. Successful clients recommend our services to other successful clients – the same is true of partners and employees. “We code success” means focusing on our clients’ needs first. It means making sure we have a solid understanding of the issue before we propose a solution. It means remaining technology neutral as well as being transparent about what our strengths are and what’s possible. It means being receptive to feedback and consistently working to improve our performance. This approach leads to successful clients who remain with us for many years. “We code success” also means taking excellent care of our consultants. It means taking each person as an individual. Our people have families, friends, interests and lives beyond work – we try to support them in these areas as much as possible. Great people are a precious resource we try to acquire, nurture and grow over many years. Our low turnover, long tenured staff and consistently high eNPS score is a testament to this approach.

Company details

IndustryIT Services & IT Consulting
Company size51 - 200

Your match analysis

See how your profile stacks up against this role.

We compared the job requirements to your profile to show where you're strong and where you fall short.

Job description

Directio is a global IT services company. We consult, code, test, deploy, and manage mainly cloud-based and mobile applications, providing around-the-clock support from our offices in Poland, the Philippines, Mexico, and the USA. We prepare our FMCG, retail, automotive, and SaaS clients for the future by accelerating their digital transformation. Operating under the “We Code Success” principle, we prioritize the success of our clients, consultants, and partners. 

About project

We are looking for a DevSecOps Engineer to join a project for our client, an international company operating across multiple markets.

You will be joining a small platform team responsible for Azure, Kubernetes, deployments, Microsoft 365, and on-call support. This is a hands-on role combining platform engineering and DevOps responsibilities with ownership of security engineering practices.

You will be supporting our client’s migration from a monolithic architecture to services, building the required infrastructure, environments, CI/CD pipelines, and observability while ensuring the stability of the existing platform.

At the same time, you will be responsible for strengthening security practices across the organization and supporting the technical side of the ISO 27001 certification journey.

Responsibilities

  • You will be running and maintaining the platform together with the team, working with Azure, AKS, deployments, upgrades, incident response, and on-call support;

  • You will be building and operating infrastructure required for the migration from a monolithic architecture to services, including environments, CI/CD pipelines in Azure DevOps, Infrastructure as Code, monitoring, and alerting;

  • You will be managing the external attack surface, maintaining an inventory of internet-facing assets, monitoring potential exposures, and ensuring vulnerabilities are addressed effectively;

  • You will be integrating security into Azure DevOps and Kubernetes delivery pipelines, including code, dependency, secrets, container, and Infrastructure as Code scanning;

  • You will be establishing and maintaining the Azure and Microsoft 365 security baseline, including identity and access management, MFA, cloud security posture, Microsoft Defender, and access management processes;

  • You will be managing the vulnerability management process end-to-end, from identifying vulnerabilities and coordinating fixes to verifying their resolution and maintaining appropriate evidence;

  • You will be responsible for the technical security controls supporting the ISO 27001 certification programme, working closely with the compliance lead;

  • You will be providing technical input for customer security questionnaires and audits and participating in discussions with customers and auditors when deeper technical expertise is required;

  • You will be supporting penetration testing activities performed by an external partner, including defining the scope, coordinating testing activities, and ensuring identified findings are properly addressed;

  • You will be automating operational and security processes wherever possible and continuously improving the reliability and security of the platform.

Requirements

  • You have 5+ years of professional experience in Platform Engineering, DevOps, or a similar role;

  • You have strong hands-on experience with Microsoft Azure and Kubernetes/AKS in production environments, including building clusters, pipelines, and environments, performing upgrades, and supporting production systems;

  • You have hands-on experience in security engineering and have taken ownership of security-related processes rather than only supporting them;

  • You have experience with the technical side of ISO 27001 or an equivalent security framework, or you have managed vulnerability management processes end-to-end;

  • You have practical knowledge of security tooling and practices, including external attack surface monitoring, DAST, SAST, SCA, secrets scanning, container scanning, and cloud security posture management;

  • You have experience with Azure DevOps and CI/CD pipelines;

  • You have experience with Infrastructure as Code and infrastructure automation;

  • You have scripting and automation skills using Bash, PowerShell, or Python;

  • You are comfortable documenting technical processes and security controls and communicating technical topics clearly to customers, security teams, and auditors;

  • You are able to independently prioritize tasks and take ownership in a small, senior team environment;

  • You are fluent in English.

Nice to have

  • Knowledge of Estonian or German;

  • Previous experience working with enterprise or banking customers and supporting customer security audits;

  • Experience supporting organizations through security certification programmes;

  • Experience working on modernization projects involving migration from monolithic architectures to services.

We offer

  • Salary: 25 000 - 33 000 PLN netto / B2B;

  • Private healthcare, Multisport card and trainings.

Apply once. Then go straight to the hiring manager.

After you apply, unlock the direct contact details of the people who actually make the call. A quick follow-up makes you 5x more likely to land an interview.

MR

Marcus Rivera

Chief Revenue Officer

m.rivera@company.com
linkedin.com/in/marcusrivera
Unlocked after you apply
·

DevSecOps Engineer Related jobs

Other jobs at Directio

Premium

Reach out to the hiring manager directly.

Gain access to the contact details of the hiring managers who actually decide, and reach out to network with them directly. That, plus more when you upgrade:

  • Full match report with fit score and gaps
  • Career diagnostics on how recruiters read you
  • Curated company matches and warm intros
  • 48h early access to new roles

Cancel anytime.