onsite
Lead DevSecOps Engineer - BWI GmbH
Security Engineer
Lead the design and implementation of secure, automated CI/CD pipelines across cloud and container platforms, driving security best practices and infrastructure as code for high‑availability applications.
About the role
Key Responsibilities
- Architect and maintain end‑to‑end CI/CD pipelines using GitOps principles, ensuring rapid, reliable delivery of secure code.
- Implement and enforce security controls across the software supply chain, including static and dynamic analysis, secret management, and compliance monitoring.
- Lead the migration of legacy workloads to Kubernetes and AWS, leveraging Terraform for reproducible infrastructure.
- Collaborate with development, QA, and security teams to embed security into every stage of the SDLC.
- Mentor and coach cross‑functional teams on DevSecOps practices, tooling, and automation strategies.
Requirements
- 5+ years of experience in DevOps/DevSecOps roles with a strong focus on security automation.
- Proficiency with AWS services (EKS, CodePipeline, IAM, Secrets Manager) and Kubernetes.
- Hands‑on experience with Terraform, Docker, and scripting in Python or Bash.
- Deep understanding of security frameworks (CIS Benchmarks, OWASP Top 10) and compliance standards (ISO 27001, SOC 2).
- Excellent communication skills and a proven ability to lead technical initiatives.
Skills
cicdawskubernetesterraformpythondocker