Design, implement, and maintain Groovy-based Jenkins pipeline steps for build, test, packaging, scanning, and deployment.
Extend and refine Python tooling for SLSA provenance, SBOM generation, hash/digest verification, and security scan aggregation (SonarQube, Sonatype IQ, SAST, container scans).
Optimize pipeline performance through parallelization, caching, and smart dependency management.
Ensure artifact integrity, reproducible builds, and accurate cryptographic mappings (SHA1/SHA256).
Refactor legacy scripts for stability and compliance, apply standard templates, and eliminate global state issues.
Define and document https://jobeax.com/link/pUIUXUtzb8fZLmk3 standards and enforce usage patterns.
Mentor teams on DevSecOps best practices, supply chain security, and secure pipeline design.
Troubleshoot and proactively prevent pipeline incidents across environments.
Note: Detailed project information will be shared during the recruitment process.
Our requirements
Minimum 7+ years in engineering roles, with 3+ years in DevSecOps or CI/CD platform engineering.
Strong hands-on expertise with Jenkins Shared Libraries (Groovy).
Advanced Python programming for automation, YAML/JSON parsing, and tooling development.
Solid understanding of multi-language build pipelines: Java/Maven, Node/NPM, Python, with exposure to Helm, Terraform, and container image metadata handling.
Deep knowledge of supply chain security standards (e.g., SLSA, SBOM via CycloneDX, artifact digests).
Experience with static and container scanning tools: SonarQube, Sonatype IQ, SAST.
Proven ability in build optimization techniques, caching, and dependency pruning.
Compliance Awareness & Documentation Discipline.
What we offer
Flexible cooperation model – choose the form that suits you best (B2B, employment contract, etc.)
Hybrid work setup – 6 days a month from the office in Kraków
Collaborative team culture – work alongside experienced professionals eager to share knowledge
Continuous development – access to training platforms and growth opportunities
Comprehensive benefits – including Interpolska Health Care, Multisport card, Warta Insurance, and more
High quality equipment – laptop and essential software provided
About the Role We are looking for an experienced DevSecOps Engineer to develop and improve CI/CD tooling and secure software delivery processes. The role focuses on pipeline automation, build efficiency, security integration, and software supply-chain best practices. - Strong experience in DevOps, DevSecOps, or CI/CD engineering. ...
- Proven experience as a DevSecOps Engineer, DevOps Engineer or in a similar role. - Strong hands-on experience with Azure DevOps, particularly CI/CD and automation capabilities. - Experience working in large-scale enterprise environments, preferably in the context of modernization or transformation initiatives. - Good ...
... pipelines designed to boost speed and reliability. You'll also tap into AI-driven insights, helping you make smarter decisions, faster. We’re looking for a Senior DevSecOps Engineer to join our team, where you’ll have the chance to grow your career while solving impactful, high-scale problems. This role is centered on securing ...
... i Java, z wykorzystaniem również JavaScript/Python. - Projektowanie i optymalizacja procesów CI/CD oraz automatyzacja testów i wdrożeń. - Wdrażanie praktyk DevSecOps i Secure Development Lifecycle (SDL). - Integracja narzędzi do automatycznej analizy kodu, zależności i bezpieczeństwa. - Praca z Docker, Kubernetes oraz Infrastructure ...
... standardów bezpieczeństwa,, współpraca z zespołami DevOps, SOC, Cloud, Security, IT oraz zespołami deweloperskimi. min 6-8 lat doświadczenia na stanowisku DevSecOps Engineer, DevOps Engineer, Cloud Security Engineer lub podobnym,, praktyczna znajomość procesów CI/CD oraz narzędzi automatyzacji,, doświadczenie z Dockerem ...
... Projektowanie skalowalnych i bezpiecznych rozwiązań cloud-native - Rozwój i optymalizacja procesów CI/CD oraz automatyzacja testów i wdrożeń - Wdrażanie praktyk devsecops i Secure Development Lifecycle (SDL) - Zapewnienie bezpieczeństwa zależności, podatności i artefaktów w software supply chain - Udział w code review, projektowaniu ...
... Technology, Computer Science, Software Engineering, Cloud Engineering, Cybersecurity, Data Engineering or a related discipline. - 7+ years of experience in software engineering, DevOps, DevSecOps, cloud engineering, platform engineering or site reliability engineering in complex enterprise environments. - Demonstrated experience ...
... Technology, Computer Science, Software Engineering, Cloud Engineering, Cybersecurity, Data Engineering or a related discipline. - 7+ years of experience in software engineering, DevOps, DevSecOps, cloud engineering, platform engineering or site reliability engineering in complex enterprise environments. - Demonstrated experience ...
... bezpieczeństwa z procesem CI/CD - wsparcie zespołów developerskich w obszarze automatyzacji i bezpieczeństwa - udział w rozwijaniu standardów oraz dobrych praktyk DevSecOps Nasze wymagania - minimum 3 lata doświadczenia w obszarze DevOps, DevSecOps lub pokrewnym - szeroka wiedza z zakresu DevSecOps i bezpieczeństwa procesu wytwarzania ...
... and assist with penetration testing and remediation. - Implement monitoring, logging, and alerting for compliance and operational readiness. - Contribute to DevSecOps practices and automated security testing pipelines. - Produce clear standards, hardening guides, and operational security documentation. - Provide guidance ...