Full-Time Senior DevSecOps Engineer

ORCID is hiring a remote Full-Time Senior DevSecOps Engineer. The career level for this job opening is Experienced and is accepting Europe/UK based applicants remotely. Read complete job description before applying.

This job was posted 4 months ago and is likely no longer active. We encourage you to explore more recent opportunities on our site. However, you may still try your luck using 'Apply Now' link below. We recommend focusing on newer listings available here.

ORCID

Job Title

Senior DevSecOps Engineer

Posted

Career Level

Full-Time

Career Level

Experienced

Locations Accepted

Europe/UK

Job Details

ORCID is seeking a Senior DevSecOps Engineer to serve as an technical advisor and implementor to ensure the ongoing security of ORCID products and service offerings. The Senior DevSecOps Engineer reports directly to the Director of Technology but is also functionally accountable to the Director of Operations and the Director of Product as seamless, matrixed partnership across ORCID units will be key to the success of this role. 

This position is full time (40 hours/week) and, like all positions at ORCID, is fully remote. Candidates must be able to work during Europe or Americas standard business hours (Mon-Fri) with at least four hours daily between 1300-2000 UTC, with some recurring meetings between 1400 - 1700 UTC. Outside of these parameters, ORCID offers flexibility with your schedule.

Responsibilities

  • Work with ORCID senior staff, product, technology, and devops teams to identify the right architecture to ensure the secure  implementation of new solutions, products and modules. 
  • Develop, implement and maintain product security strategy for the ORCID product portfolio
  • Conduct complete lifecycle security architecture and technical assessments for a wide range of product infrastructure, databases, web applications, and internal/SaaS software solutions.
  • Identify and work with the ORCID product and technology teams to mitigate security risks in the product and infrastructure.
  • Collaborate with the product and technology teams to ensure security best practices are integrated into the development lifecycle (SDLC) to reinforce “security by design” concepts.
  • Provide guidance and leadership on best practices regarding security in software and product development.
  • Analyse and prioritise vulnerabilities identified by developers, customers, testers, as well as automated static and dynamic application security testing. Work closely with developers to remediate in alignment with the identified risk to ORCID systems, users, and data.
  • Implement or guide the implementation of common application security controls
  • Ensure privacy requirements are implemented through data protection and security technology both within ORCID products and internal/SaaS tools.
  • Work with the ORCID operations team on the selection and secure configuration of internal/SaaS tools.
  • Identify and work with the ORCID operations team to mitigate security risks in internal and SaaS tools.
  • Provide training and education to developers on software security best practices.
  • Participate in the on call rotation for out of hours support, and respond to extraordinary situations or technical emergencies

Requirements and Qualifications 

Required Skills:

  • Proven experience as a DevSecOps engineer or similar role involving securing a user-facing product. (4-6 years)
  • Experience translating OWASP Top 10 into practical development imperatives and applying to product infrastructure (4-6 years)
  • Knowledge of and experience with best practices in the union of security engineering and DevOps (2-3 years)
  • Experience with cloud services (e.g. AWS), their native services, and security features. (3-4 years)
  • Experience securing databases including access control and encryption whilst maintaining performance (2-3 years)
  • Experience with integration and release pipelines and the security of tools such as GitHub Actions or other similar modern CI platform (2-3 years)
  • Familiarity with the security of containerisation technologies such as Docker and Kubernetes. (2-3 years)
  • Knowledge of Terraform, network security architectures, network access controls, and secure network design. (2-3 years)
  • Strong problem-solving skills
  • Ability to work well in teams and across the organisation.
  • Self-starter. Ability to define the problem at hand, recommend solutions, and drive to results
  • Strong communication skills, with the ability to explain complex concepts to colleagues across an entire range of technical capabilities from non-technical to highly-technical.
  • Fluency in English required. Additional languages a plus.
  • Ability to travel based upon business needs (less than 10%)

Nice to have:

  • Previous experience in enterprise security tools
  • Proficiency with securing and addressing security issues within programming languages such as Python or Java. (3-4 years) Previous experience as a practising developer is an additional plus.

 

FAQs

What is the last date for applying to the job?

The deadline to apply for Full-Time Senior DevSecOps Engineer at ORCID is 8th of September 2024 . We consider jobs older than one month to have expired.

Which countries are accepted for this remote job?

This job accepts [ Europe/UK ] applicants. .

Related Jobs You May Like

DevOps Engineer

LATAM or Montevideo, Uruguay
2 days ago
AWS
CI/CD Pipelines
GCP
Blend360
Full-Time
Experienced

Senior Site Reliability Engineer

USA
2 days ago
Cloud Environments
Large-Scale Platforms
Linux/Unix Systems
Fastly
Full-Time
Senior Manager
YEAR $167790 - $201348

Technical Operations Engineer

USA
3 days ago
Automation
AWS
Cloud Computing
Fieldguide
Full-Time
Experienced

Junior DevOps Engineer

India
3 days ago
CI/CD
Docker
Google Cloud Platform
Steer Health
Full-Time
Entry Level

Senior DevOps Engineer

USA
3 days ago
CI/CD Automation
Cloud Infrastructure
Containerization
SandboxAQ
Full-Time
Senior Manager
YEAR $150000 - $215000

Senior DevOps Engineer

Düsseldorf, Germany
3 days ago
Automation Scripting
CI/CD Pipelines
Cloud Infrastructure Management
Experian
Full-Time
Senior Manager

DevOps Production Engineer

Worldwide
4 days ago
CI/CD
Cloud Computing
DevOps
Axonius
Full-Time
Experienced
YEAR $140000 - $160000

Senior DevOps Engineer

India
4 days ago
AWS
Cloud Computing
DevOps
Akuity
Full-Time
Senior Manager

Senior Linux System Admin -- Federal

San Diego, California
4 days ago
Database Replication
Linux Administration
Performance Tuning
ServiceNow
Full-Time
Senior Manager
YEAR $123300 - $209700

Senior DevOps Engineer

Australia
4 days ago
Azure
Cloud Infrastructure
DevOps
Heidihealth.com.au
Full-Time
Senior Manager

Senior Solutions Architect

USA, Canada, Mexico
5 days ago
Cloud Services
Customer Relationship Management
DevOps
Docker
Full-Time
Senior Manager

Senior DevInfra Engineer

USA
5 days ago
Bash
CI/CD
GCP/AWS/Azure
SandboxAQ
Full-Time
Expert
YEAR $150000 - $215000

Looking for a specific job?