Cloud DevSecOps Engineer (AWS & Azure) (She/ He/ They)
⚲ Kraków, Warszawa, Wrocław, Gdańsk, Poznań
Do uzgodnienia
Wymagania
- Terraform
- AWS
- Azure
Opis stanowiska
CAPCO POLAND
*We are looking for Poland based candidate.
At Capco Poland, we’re not just another consultancy - we’re the spark behind digital transformation in the financial world. As a global leader in technology and management consulting, we thrive on helping clients tackle the toughest challenges across banking, payments, capital markets, wealth, and asset management.
Role Overview
We are looking for a security-first Cloud DevSecOps Engineer to design, automate, and protect our multi-cloud infrastructure across AWS and Azure. In this role, you won't just build pipelines, you will bake security directly into them. You will work closely with our development and engineering teams to enforce a "Shift Left" culture, ensuring that automation, scalability, and airtight cloud compliance go hand-in-hand.
Core Responsibilities
•
Multi-Cloud Automation: Build and manage highly available infrastructure across AWS and Azure using Infrastructure as Code (Terraform).
• Pipeline Hardening: Design and secure CI/CD pipelines (GitHub Actions, Azure DevOps, or GitLab), embedding automated vulnerability scanning, SAST/DAST, and container scanning tools.
• Identity & Secrets Access: Enforce zero-trust architecture across both platforms via robust IAM strategy, RBAC, and secure secrets management (HashiCorp Vault, Azure Key Vault).
• Container Security: Deploy, manage, and harden containerized workloads running in Kubernetes (EKS & AKS).
• Compliance & Monitoring: Continuously audit cloud posture using AWS Security Hub and Azure Defender to ensure alignment with frameworks like SOC2, ISO 27001, or CIS benchmarks.
Key Qualifications
•
Experience: 3+ years in a cloud operations or infrastructure role managing production environments in both AWS and Azure.
• Tools: Deep familiarity with Terraform, Docker, Kubernetes, and scripting languages (Python, Bash, or PowerShell).
• Security Mindset: Practical knowledge of cloud network security, data encryption, and vulnerability management.
• Certifications (nice to have): AWS Certified Security/DevOps Professional, Azure Security Engineer (AZ-500), or CKS (Certified Kubernetes Security Specialist).
We offer a flexible collaboration model based on a B2B contract, with the opportunity to work on diverse projects.
Recruitment Process:
• HR Interview with the recruiter
• Technical Interview
• Client Interview
• Feedback and offer
*We are looking for Poland based candidate.
At Capco Poland, we’re not just another consultancy - we’re the spark behind digital transformation in the financial world. As a global leader in technology and management consulting, we thrive on helping clients tackle the toughest challenges across banking, payments, capital markets, wealth, and asset management.
Role Overview
We are looking for a security-first Cloud DevSecOps Engineer to design, automate, and protect our multi-cloud infrastructure across AWS and Azure. In this role, you won't just build pipelines, you will bake security directly into them. You will work closely with our development and engineering teams to enforce a "Shift Left" culture, ensuring that automation, scalability, and airtight cloud compliance go hand-in-hand.
Core Responsibilities
•
Multi-Cloud Automation: Build and manage highly available infrastructure across AWS and Azure using Infrastructure as Code (Terraform).
• Pipeline Hardening: Design and secure CI/CD pipelines (GitHub Actions, Azure DevOps, or GitLab), embedding automated vulnerability scanning, SAST/DAST, and container scanning tools.
• Identity & Secrets Access: Enforce zero-trust architecture across both platforms via robust IAM strategy, RBAC, and secure secrets management (HashiCorp Vault, Azure Key Vault).
• Container Security: Deploy, manage, and harden containerized workloads running in Kubernetes (EKS & AKS).
• Compliance & Monitoring: Continuously audit cloud posture using AWS Security Hub and Azure Defender to ensure alignment with frameworks like SOC2, ISO 27001, or CIS benchmarks.
Key Qualifications
•
Experience: 3+ years in a cloud operations or infrastructure role managing production environments in both AWS and Azure.
• Tools: Deep familiarity with Terraform, Docker, Kubernetes, and scripting languages (Python, Bash, or PowerShell).
• Security Mindset: Practical knowledge of cloud network security, data encryption, and vulnerability management.
• Certifications (nice to have): AWS Certified Security/DevOps Professional, Azure Security Engineer (AZ-500), or CKS (Certified Kubernetes Security Specialist).
We offer a flexible collaboration model based on a B2B contract, with the opportunity to work on diverse projects.
Recruitment Process:
• HR Interview with the recruiter
• Technical Interview
• Client Interview
• Feedback and offer
🔍 Dekoder Ogłoszenia
🟡
we’re not just another consultancy - we’re the spark behind digital transformation in the financial world
Firma pozycjonuje się jako lider transformacji cyfrowej, co może sugerować pracę nad innowacyjnymi projektami, ale też presję na szybkie dostarczanie rozwiązań.
🟢
In this role, you won't just build pipelines, you will bake security directly into them.
Oznacza to, że bezpieczeństwo nie będzie dodatkiem, ale integralną częścią procesu tworzenia i wdrażania, co wymaga głębokiego zrozumienia obu obszarów.
🟢
enforce a "Shift Left" culture
Wymaga proaktywnego podejścia do bezpieczeństwa, gdzie problemy są identyfikowane i rozwiązywane jak najwcześniej w cyklu rozwoju oprogramowania.
🟢
ensuring that automation, scalability, and airtight cloud compliance go hand-in-hand.
Podkreśla potrzebę zrównoważonego rozwoju, gdzie automatyzacja i skalowalność nie są osiągane kosztem bezpieczeństwa i zgodności z przepisami.
🟡
Continuously audit cloud
Sugeruje stały proces monitorowania i weryfikacji zgodności, co może oznaczać konieczność ciągłego dostosowywania się do zmieniających się wymagań i zagrożeń.