Deel is seeking a DevSecOps Engineer to join our team. The successful candidate will play a key role in leading our growth journey, developing and maintaining automated security tools and processes, and collaborating with cross-functional teams.
Requirements
- 3+ years in Security, SecOps, or DevSecOps roles
- Hands-on experience creating, identifying and fixing infrastructure misconfigurations using policy-as-code and IaC security scanning tools such as Checkov, tfsec, or Terrascan.
- Basic programming skills in JavaScript, TypeScript, Python; experience with version control (e.g., Git) and CI/CD pipelines.
- Manage and tune WAF and firewall configurations (e.g., Cloudflare or equivalent) to protect
- Familiarity with security principles, standards, and best practices, including common vulnerabilities (e.g., OWASP Top 10), secure coding, encryption, authentication, access control, and security testing.
- Proficiency in methodologies and tools, including understanding CI/CD pipelines, infrastructure automation (e.g., Docker, Kubernetes), configuration management, and monitoring/observability.
- Ability to assess risks and apply security controls, encompassing an understanding of threat modeling, risk assessment techniques, vulnerability management, and incident response planning.
- Effective collaboration with cross-functional teams (developers, security, operations), promoting security practices, and integrating security seamlessly into the development process.
- Proficiency in automation tools; knowledge of security scanners (e.g., SAST, DAST), vulnerability management systems, log analysis tools, and security-focused frameworks for automating security processes.
Benefits
- Stock grant opportunities dependent on your role, employment status and location
- Additional perks and benefits based on your employment status and country
- The flexibility of remote work, including optional WeWork access
