Design, implement, and maintain Groovy-based Jenkins pipeline steps for build, test, packaging, scanning, and deployment.
Extend and refine Python tooling for SLSA provenance, SBOM generation, hash/digest verification, and security scan aggregation (SonarQube, Sonatype IQ, SAST, container scans).
Optimize pipeline performance through parallelization, caching, and smart dependency management.
Ensure artifact integrity, reproducible builds, and accurate cryptographic mappings (SHA1/SHA256).
Refactor legacy scripts for stability and compliance, apply standard templates, and eliminate global state issues.
Define and document https://jobeax.com/link/pUIUXUtzb8fZLmk3 standards and enforce usage patterns.
Mentor teams on DevSecOps best practices, supply chain security, and secure pipeline design.
Troubleshoot and proactively prevent pipeline incidents across environments.
Note: Detailed project information will be shared during the recruitment process.
Our requirements
Minimum 7+ years in engineering roles, with 3+ years in DevSecOps or CI/CD platform engineering.
Strong hands-on expertise with Jenkins Shared Libraries (Groovy).
Advanced Python programming for automation, YAML/JSON parsing, and tooling development.
Solid understanding of multi-language build pipelines: Java/Maven, Node/NPM, Python, with exposure to Helm, Terraform, and container image metadata handling.
Deep knowledge of supply chain security standards (e.g., SLSA, SBOM via CycloneDX, artifact digests).
Experience with static and container scanning tools: SonarQube, Sonatype IQ, SAST.
Proven ability in build optimization techniques, caching, and dependency pruning.
Compliance Awareness & Documentation Discipline.
What we offer
Flexible cooperation model – choose the form that suits you best (B2B, employment contract, etc.)
Hybrid work setup – 6 days a month from the office in Kraków
Collaborative team culture – work alongside experienced professionals eager to share knowledge
Continuous development – access to training platforms and growth opportunities
Comprehensive benefits – including Interpolska Health Care, Multisport card, Warta Insurance, and more
High quality equipment – laptop and essential software provided
- Proven experience as a DevSecOps Engineer, DevOps Engineer or in a similar role. - Strong hands-on experience with Azure DevOps, particularly CI/CD and automation capabilities. - Experience working in large-scale enterprise environments, preferably in the context of modernization or transformation initiatives. - Good ...
About the Role We are looking for an experienced DevSecOps Engineer to develop and improve CI/CD tooling and secure software delivery processes. The role focuses on pipeline automation, build efficiency, security integration, and software supply-chain best practices. - Strong experience in DevOps, DevSecOps, or CI/CD engineering. ...
... i Java, z wykorzystaniem również JavaScript/Python. - Projektowanie i optymalizacja procesów CI/CD oraz automatyzacja testów i wdrożeń. - Wdrażanie praktyk DevSecOps i Secure Development Lifecycle (SDL). - Integracja narzędzi do automatycznej analizy kodu, zależności i bezpieczeństwa. - Praca z Docker, Kubernetes oraz Infrastructure ...
... standardów bezpieczeństwa,, współpraca z zespołami DevOps, SOC, Cloud, Security, IT oraz zespołami deweloperskimi. min 6-8 lat doświadczenia na stanowisku DevSecOps Engineer, DevOps Engineer, Cloud Security Engineer lub podobnym,, praktyczna znajomość procesów CI/CD oraz narzędzi automatyzacji,, doświadczenie z Dockerem ...
... Projektowanie skalowalnych i bezpiecznych rozwiązań cloud-native - Rozwój i optymalizacja procesów CI/CD oraz automatyzacja testów i wdrożeń - Wdrażanie praktyk devsecops i Secure Development Lifecycle (SDL) - Zapewnienie bezpieczeństwa zależności, podatności i artefaktów w software supply chain - Udział w code review, projektowaniu ...
... Technology, Computer Science, Software Engineering, Cloud Engineering, Cybersecurity, Data Engineering or a related discipline. - 7+ years of experience in software engineering, DevOps, DevSecOps, cloud engineering, platform engineering or site reliability engineering in complex enterprise environments. - Demonstrated experience ...
... Technology, Computer Science, Software Engineering, Cloud Engineering, Cybersecurity, Data Engineering or a related discipline. - 7+ years of experience in software engineering, DevOps, DevSecOps, cloud engineering, platform engineering or site reliability engineering in complex enterprise environments. - Demonstrated experience ...
... bezpieczeństwa z procesem CI/CD - wsparcie zespołów developerskich w obszarze automatyzacji i bezpieczeństwa - udział w rozwijaniu standardów oraz dobrych praktyk DevSecOps Nasze wymagania - minimum 3 lata doświadczenia w obszarze DevOps, DevSecOps lub pokrewnym - szeroka wiedza z zakresu DevSecOps i bezpieczeństwa procesu wytwarzania ...
... and assist with penetration testing and remediation. - Implement monitoring, logging, and alerting for compliance and operational readiness. - Contribute to DevSecOps practices and automated security testing pipelines. - Produce clear standards, hardening guides, and operational security documentation. - Provide guidance ...
... for a place to grow, make an impact, and work with people who care, we'd love to meet you! ABOUT THE ROLE We are looking for a Middle Application Security Engineer to execute hands-on DevSecOps work across CI/CD pipeline security integration, vulnerability management tooling, and automated hardened baseline deployment ...