DevSecOps (Lisbon / Porto - Hybrid)

Lisboa · Hybrid

About this role

We're fast learners, hard workers, natural collaborators... and we Make Modern Happen!

Our ambition is to unlock the potential of our digital world so that organisations everywhere can innovate and thrive securely. We aim to achieve this goal by bringing together the world’s most talented people and the most powerful technologies, combining them to address our customers' challenges and to build something stronger together.

If you share our vision, join us!

Right now, we are looking for a DevSecOps for a client on our Talent Team.

 

Your responsibilities include:

  •  Integrate security controls into CI/CD pipelines.
  • Automate vulnerability analysis processes and security testing throughout the development lifecycle.
  • Implement SAST, DAST, SCA, and container scanning tools.
  • Collaborate with development teams to ensure the adoption of secure coding best practices.
  • Define and implement security policies in Infrastructure as Code (IaC).
  • Monitor vulnerabilities in dependencies, libraries, and container images.
  • Support the design of secure architectures for cloud applications and microservices.
  • Implement secrets and credentials management mechanisms.
  • Contribute to the automation of compliance and security checks in delivery processes.
  • Collaborate with security teams in the response and mitigation of identified vulnerabilities.

 

You must have:

  • Experience in DevOps, DevSecOps, or application security.
  • Knowledge of CI/CD pipelines (e.g., Jenkins, GitLab CI/CD, GitHub Actions, Azure DevOps).
  • Experience with Infrastructure as Code (e.g., Terraform, ARM, CloudFormation).
  • Knowledge of containers and orchestration (Docker, Kubernetes).
  • Experience with Kubernetes security;
  • Knowledge of OWASP Top 10 and secure coding practices
  • Experience with secrets management (e.g., Vault, Azure Key Vault, AWS Secrets Manager)
  • Experience with security monitoring and observability.

 

We Value:

  • SAST (e.g., SonarQube, Checkmarx, Fortify)
  • DAST
  • SCA
  • Container security scanning
  • Knowledge of cloud platforms (Azure, AWS, or GCP)
  • Experience in vulnerability management and application security

 

We offer:

  • Integration into a dynamic and motivated team for the performance of the role.
  • Additional training.
  • Salary package according to the role performed.
  • Professional development.

 

Workplace: Lisbon - Hybrid

Claranet, Make modern happen!



Company at a glance

Claranet Portugal is the Portuguese market leader in Information Technologies and a specialist in Cloud, Workplace, Applications, Data & AI and Security solutions and managed services.

Founded in 1996, Claranet Portugal has evolved from an innovative and pioneering Internet Service Provider to an independent Managed Services Provider, with around 1,000 employees operating from two offices (Lisbon and Porto) and two datacentres.

More than 2,200 business customers trust Claranet Portugal to modernise, design, implement and operate their applications, critical infrastructures and data securely, 24x7. It works closely with the world's most influential technology companies, creating innovative services with the best solutions and tools provided by its Strategic Partners.

More information at claranet.com/pt

Founded1996
Team Size1,001-5,000 employees
WorkspaceHybrid
IndustryInformation Technology & Services
Location
Lisbon, Portugal

Top Benefits

  • Additional Training
  • Professional Development

Tired of cold applications?

Sign up with Clera and we'll reach out the moment a role actually fits you — no more spraying applications into the void.

Know someone who'd be great for this?