DevSecOps (Lisbon / Porto - Hybrid)
About this role
We're fast
learners, hard workers, natural collaborators... and we Make Modern Happen!
Our
ambition is to unlock the potential of our digital world so that organisations
everywhere can innovate and thrive securely. We aim to achieve this goal by
bringing together the world’s most talented people and the most powerful
technologies, combining them to address our customers' challenges and to build
something stronger together.
If you
share our vision, join us!
Right now,
we are looking for a DevSecOps for a client on our Talent Team.
Your
responsibilities include:
- Integrate security controls into
CI/CD pipelines.
- Automate vulnerability analysis
processes and security testing throughout the development lifecycle.
- Implement SAST, DAST, SCA, and
container scanning tools.
- Collaborate with development teams
to ensure the adoption of secure coding best practices.
- Define and implement security
policies in Infrastructure as Code (IaC).
- Monitor vulnerabilities in
dependencies, libraries, and container images.
- Support the design of secure
architectures for cloud applications and microservices.
- Implement secrets and credentials
management mechanisms.
- Contribute to the automation of
compliance and security checks in delivery processes.
- Collaborate with security teams in
the response and mitigation of identified vulnerabilities.
You must
have:
- Experience in DevOps, DevSecOps, or application
security.
- Knowledge of CI/CD pipelines (e.g., Jenkins, GitLab
CI/CD, GitHub Actions, Azure DevOps).
- Experience with Infrastructure as Code (e.g.,
Terraform, ARM, CloudFormation).
- Knowledge of containers and orchestration (Docker,
Kubernetes).
- Experience with Kubernetes security;
- Knowledge of OWASP Top 10 and secure coding practices
- Experience with secrets management (e.g., Vault, Azure
Key Vault, AWS Secrets Manager)
- Experience with security monitoring and observability.
We Value:
- SAST (e.g., SonarQube, Checkmarx,
Fortify)
- DAST
- SCA
- Container security scanning
- Knowledge of cloud platforms (Azure,
AWS, or GCP)
- Experience in vulnerability
management and application security
We offer:
- Integration into a dynamic and
motivated team for the performance of the role.
- Additional training.
- Salary package according to the
role performed.
- Professional development.
Workplace: Lisbon - Hybrid
Claranet, Make modern happen!
Company at a glance
Claranet Portugal is the Portuguese market leader in Information Technologies and a specialist in Cloud, Workplace, Applications, Data & AI and Security solutions and managed services.
Founded in 1996, Claranet Portugal has evolved from an innovative and pioneering Internet Service Provider to an independent Managed Services Provider, with around 1,000 employees operating from two offices (Lisbon and Porto) and two datacentres.
More than 2,200 business customers trust Claranet Portugal to modernise, design, implement and operate their applications, critical infrastructures and data securely, 24x7. It works closely with the world's most influential technology companies, creating innovative services with the best solutions and tools provided by its Strategic Partners.
More information at claranet.com/pt
Top Benefits
- Professional development
- Additional training
Tired of cold applications?
Sign up with Clera and we'll reach out the moment a role actually fits you — no more spraying applications into the void.
Know someone who'd be great for this?