GoMining Logo

GoMining

DevSecOps Engineer

Posted 13 Hours Ago
Remote
5 Locations
Mid level
Remote
5 Locations
Mid level
The DevSecOps Engineer integrates security into software development, manages infrastructure security, and collaborates on secure coding practices to mitigate risks.
The summary above was generated by AI

A DevSecOps Engineer is responsible for integrating security practices into the entire software development lifecycle, ensuring that applications, infrastructure, and operations are secure by design. This role blends development, operations, and security expertise to maintain high-availability systems while proactively managing security risks and compliance requirements.

Responsibilities:
  • Security Integration in CI/CD: Embed security checks, vulnerability scanning, and automated compliance tests into CI/CD pipelines.
  • Infrastructure Security: Implement secure cloud and on-premises infrastructure using best practices for access control, encryption, and network segmentation.
  • Container & Kubernetes Security: Manage and harden containerized environments, including image scanning, runtime protection, and pod security policies.
  • Monitoring & Incident Response: Use observability tools to monitor systems for security threats, respond to incidents, and implement continuous improvements.
  • Collaboration & Education: Work closely with developers, SREs, and QA teams to ensure security-first development practices, provide guidance on secure coding, and conduct threat modeling.
  • Compliance & Governance: Ensure systems and processes comply with standards like ISO27001, SOC 2, GDPR, NIST, and maintain audit readiness.

Requirements
  • Strong knowledge of cloud platforms (AWS, GCP, Azure) and their security services.
  • Proficiency in scripting/programming (Python, Bash, Go, TypeScript).
  • Experience with CI/CD tools (GitLab, Jenkins, CircleCI) and integrating security into pipelines.
  • Hands-on experience with Kubernetes, Docker, and container security tools (Trivy, Clair, Anchore).
  • Familiarity with infrastructure as code (Terraform, Pulumi) and securing IaC workflows.
  • Understanding of network security, identity and access management, secrets management (Vault, AWS Secrets Manager).
  • Knowledge of monitoring and logging tools (Prometheus, Grafana, OpenTelemetry) for security observability.

    Nice to Have

    • Experience in penetration testing, red teaming, or security audits.
    • Knowledge of zero-trust architectures and microservices security patterns.
    • Experience with security automation frameworks and policy-as-code tools.
    • Experience or strong interest in Web3 and crypto technologies, including blockchain-based data systems or decentralized applications.
    • Certifications such as CISSP, CISM, AWS Security Specialty, or GCP Professional Security Engineer.

Benefits
  • Learning support - courses, English classes, and conferences (up to 100% reimbursement)
  • Unique loyalty program - receive corporate digital miners and earn passive income with no investment
  • Team retreats - company-sponsored stays at a villa in Turkey
  • Memorable events with wow prizes - we celebrate big occasions in a big way
  • “Employee of the Month” award - we recognize and reward our top performers
  • Flexible days off — holidays based on your location + up to 15 sick days + up to 28 vacation days (with fast and automated approvals)
  • New career tracks - real opportunities to grow into expert or top management roles
  • Work-life fit - flexible hours and remote work. You don’t need to chase balance - here, work is a part of life, not the opposite. We aim to make work inspiring, not exhausting. For us, results matter most.

Top Skills

Anchore
AWS
Aws Secrets Manager
Azure
Bash
CircleCI
Clair
Docker
GCP
Gitlab
Go
Grafana
Jenkins
Kubernetes
Opentelemetry
Prometheus
Pulumi
Python
Terraform
Trivy
Typescript
Vault

Similar Jobs

20 Hours Ago
In-Office or Remote
Athens, GRC
Mid level
Mid level
Information Technology • Consulting
Design and maintain secure CI/CD pipelines and IaC solutions, automate infrastructure deployments, and enhance DevSecOps strategies.
Top Skills: Azure CloudAzure DevopsBashBicepCi/CdGitJenkinsPythonTerraform
5 Hours Ago
Remote
28 Locations
152K-188K
Senior level
152K-188K
Senior level
Security • Software • Cybersecurity • Automation
As a Senior Enterprise Solutions Architect, you'll ensure successful implementations of Drata's platform, providing technical expertise and enhancing customer satisfaction through collaboration and complex integrations.
Top Skills: AWSAzureBashGCPJavaScriptJSONNode.jsPythonReactRest ApisShellTypescriptUnix
20 Hours Ago
Remote
28 Locations
Entry level
Entry level
Machine Learning • Natural Language Processing
As a Dutch Expert Rater, you will review online ads to improve their relevance and usefulness, contributing to AI training and quality standards.
Top Skills: Ai SystemsOnline Ads

What you need to know about the Colorado Tech Scene

With a business-friendly climate and research universities like CU Boulder and Colorado State, Colorado has made a name for itself as a startup ecosystem. The state boasts a skilled workforce and high quality of life thanks to its affordable housing, vibrant cultural scene and unparalleled opportunities for outdoor recreation. Colorado is also home to the National Renewable Energy Laboratory, helping cement its status as a hub for renewable energy innovation.

Key Facts About Colorado Tech

  • Number of Tech Workers: 260,000; 8.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Lockheed Martin, Century Link, Comcast, BAE Systems, Level 3
  • Key Industries: Software, artificial intelligence, aerospace, e-commerce, fintech, healthtech
  • Funding Landscape: $4.9 billion in VC funding in 2024 (Pitchbook)
  • Notable Investors: Access Venture Partners, Ridgeline Ventures, Techstars, Blackhorn Ventures
  • Research Centers and Universities: Colorado School of Mines, University of Colorado Boulder, University of Denver, Colorado State University, Mesa Laboratory, Space Science Institute, National Center for Atmospheric Research, National Renewable Energy Laboratory, Gottlieb Institute

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account