
DevSecOps Engineer
monday.com
Status
Hexjobs Insights
monday.com is hiring a Senior DevSecOps Engineer in Warsaw, focusing on securing CI/CD pipelines, WAF management, and cloud security. Requires 5+ years experience and skills in Python, Go, or TypeScript.
Słowa kluczowe
At monday.com, we help teams get more work done. We are the best AI work platform that empowers teams to automate, build, and scale their impact end-to-end with tools that actually execute the work for you. With over $1B in ARR, 250,000+ customers, and a global team, we’re serious about building a product people love to use and giving our employees the same ownership and flexibility to shape the way the world works.We’re looking for a Senior DevSecOps to join our team, where you’ll have the chance to grow your career while solving impactful, high-scale problems. This role requires a keen understanding of security practices integrated within the software development lifecycle. The ideal candidate will play a crucial role in securing our CI/CD pipelines, working with Web Application Firewalls, and managing our Cloud Security Posture. A person in this role will be a part of the team serving a key entity in communication and synchronization between the several groups of stakeholders (Infrastructure, Development, Security), fostering a culture of security awareness and collaboration across all the teams.We fully embrace the AI revolution and we equip you with AI-powered IDEs, customizable agent rules, prompt engineering tools to streamline your workflow and AI-infused CI/CD pipelines designed to boost speed and reliability. You'll also tap into AI-driven insights, helping you make smarter decisions, faster.The role is based in our Warsaw office - established in 2022, it is a growing hub for engineers who love solving impactful problems. Teams here work on a broad range of challenges that push the boundaries of our products and infrastructure. Dive into these blog posts to discover the kind of work that could be waiting for you:Detecting traffic anomalies at scaleManaging Trace Volume at monday.comHow we mastered Content Security PolicyGuarding the herd – managing database servers at scaleAbout the roleSecuring CI/CD Pipelines:Implement and manage security controls for CI/CD pipelines.Automate security testing and vulnerability management within the CI/CD process using tools like Terraform.Collaborate with development teams to integrate security best practices and policies.Working with WAFs:Configure and manage Web Application Firewalls (WAFs) such as Cloudflare to protect web applications from security threats.Monitor and update WAF rules to respond to new vulnerabilities and attack vectors.Conduct regular security assessments and audits of WAF configurations.Cloud Security Posture Management:Develop and implement cloud security best practices and policies.Continuously monitor cloud environments using tools like AWS Guard Duty, Wiz, Orca, DataDog and similar to ensure compliance with security standards.Collaborate with cloud operations teams to identify and remediate security risks.Managing security cloud configuration with tools like Terraform and CDK.Implementing Security Self Service approach:Development security tools in the organization IDPTesting/performing PoC of new security tools to increase efficiency development practices in the security context and foster Secure by Design principle.Your experience & skills5+ years of experience in DevOps/DevSecOps or related roles.Passion for keeping systems secure.Proficiency in one of the following languages: Python, Go, TypeScript.Experience with Kubernetes.Strong understanding of operating systems and networking.Expertise implementing Shift Left/Secure by Design inside CI/CD pipelines using SAST/DAST tools such SonarQube, Dependabot alert, Wiz and others.Experience with configuring and managing Web Application Firewalls (WAFs) such as AWS WAF, Cloudflare, or similar.Excellent problem-solving and communication skills.Salary & CompensationAt monday.com, our total compensation package includes:Base salaryBonus targetRestricted Stock Units (RSUs)The total target monthly compensation for this role ranges from 49,000 PLN to 59,000 PLN.The total compensation package shown here reflects the current monday.com stock price and may change over time as the stock price varies. The target bonus and RSU grant are discretionary, depend on individual and company performance, and are subject to Board approval and the company’s equity plan, in line with monday.com’s bonus policy as updated from time to time. The benefits listed reflect programs currently offered in Poland; availability and terms may vary depending on the role, contract type, and company policy. These details do not constitute an employment offer or guarantee and may be modified at the company’s discretion, in accordance with applicable law.What to expect next?First up, you'll have a quick 15-20 minute chat with our Talent Acquisition Partner.If that goes well, we'll move forward to technical stages that might include: coding interview (90 minutes), and system design interview (1 hour).If successful, we'd love to meet you in person too! So, the final stages will be in our Warsaw office, where you'll have a Management Interview and an HR Interview, each lasting about an hour.If everything clicks, we'll be thrilled to offer you a spot on our team!What monday.com can offer you:Opportunity to join an innovative, proven company with big ambitions, competitive salary and benefits, bonus potential, and some roles are eligible to take part in the company equity incentive program.A team that values transparency and collaboration while having fun while we work.From Monday to Wednesday, we'll fuel your day with free breakfast and lunch in the office.Comprehensive private medical care, life insurance, and a Multisport card to keep you active and healthy.We care of employee's mental health as well - you will get access to Calm Mindfulness App.Get awesome discounts on our partners' products and services.Regular team get-togethers and fun events, plus special gifts to mark your birthday and work anniversaries.Fully dedicated learning and development team that provides opportunities for employees to grow, gain new skills, master AI tools, and participate in workshopsAward winning work environment - named a 'Best Place to Work' by Built In as well as 'Great Place To Work' certified.We foster diversity, inclusion, and belonging through our Employee Resource Groups in addition to providing access to resources and education to support our team, facilitate conversations, and encourage understanding.A global work environment with employees in New York, Tel Aviv, London, Sydney, São Paulo, Tokyo, and more.
| Opublikowana | 15 dni temu |
| Wygasa | za około 2 miesiące |
| Rodzaj umowy | Praca stała, B2B |
| Źródło |
Podobne oferty, które mogą Cię zainteresować
Na podstawie "DevSecOps Engineer"
Nie znaleziono ofert, spróbuj zmienić kryteria wyszukiwania.