Если вы раньше входили через Google, сбросьте пароль для своей Gmail-почты через кнопку «Забыли пароль?» на экране входа. Затем войдите по email и новому паролю.
Если аккаунта ещё нет, зарегистрируйтесь с Gmail-почтой, после подтверждения почты мы предложим задать пароль.
Что нового
Загружаю обновления...
Что нового
Загружаю обновления...
Работа найдется быстрее с подпискойКандидат найдётся быстрее с подпиской
Чтобы адаптировать резюме под вакансию или составить сопроводительное письмо, загрузите резюме
описание
Andersen is a technology company that delivers software development and digital transformation services for businesses across financial technology, healthcare, retail, and telecommunications. The project supports a financial services organization providing banking products and digital solutions through service networks and online platforms.
задачи
Translate the DevSecOps master plan into a practical implementation roadmap;
Define reusable CI/CD, security, and release-management standards;
Support the transition from Bitbucket/Jenkins to Azure Repos and Azure Pipelines;
Implement security scanning and release gates in CI/CD pipelines;
Configure security controls for AKS, container images, identities, and secrets;
Establish artifact signing, SBOM generation, and secure promotion processes;
Integrate platform security events with the bank’s monitoring and SIEM solutions;
Define vulnerability-management, audit-evidence, and incident-response processes;
Provide technical leadership, recommendations, and knowledge transfer to delivery teams;
Participate directly in configuration, integration, and troubleshooting activities.
требования
5+ Years of experience in DevSecOps, cloud security, or platform security;
Strong hands-on experience with Microsoft Azure;
Practical experience with Azure DevOps or comparable enterprise CI/CD platforms;
Experience designing and implementing secure CI/CD pipelines;
Experience integrating security scanners and quality gates into pipelines;
Practical knowledge of Kubernetes and container security, preferably AKS;
Experience with Infrastructure as Code, preferably Terraform;
Knowledge of identity, secrets, and certificate management;
Understanding of SAST, SCA, DAST, secret scanning, IaC scanning, and container scanning;
Ability to combine solution design and technical leadership with hands-on implementation;
Strong communication and documentation skills;
Upper-Intermediate English or above;
Nice to have: Experience with Jenkins, Bitbucket, and migration to Azure DevOps; Azure Key Vault, Azure Container Registry, and Defender for Containers; SonarQube, Sonatype, Nexus, Gitleaks, Checkov, or OWASP ZAP; SBOM, artifact signing, and software supply-chain security; DefectDojo, Microsoft Sentinel, or other vulnerability-management and SIEM solutions; Azure Policy, Gatekeeper, OPA, or Kubernetes admission controls; banking or other regulated-industry experience; DORA, audit traceability, and segregation-of-duties requirements.
условия
The role can be fully remote, office-based, or hybrid;
Professional, financial, and career growth opportunities;
Mentoring and onboarding systems for each new employee;
Opportunity to earn up to an additional 1,000 EUR per month through company activities, included in the annual bonus;
Access to the corporate training portal;
Certification compensation, including AWS and PMP;
Referral program;
Private health insurance and sports compensation, depending on the type of employment;
Bright corporate life with parties, pizza days, PlayStation, fruits, coffee, snacks, and movies.