Middle+ DevSecOps Engineer (AWS/Azure)(Outstaff)
๐ Location: Remote
๐ค Engagement: Long-term Outstaff project for an international client
๐ Employment Type: Full-time
๐ฐ Compensation: $20โ25/hour gross
๐ English: B2 preferred. We are open to considering technically strong candidates with B1+ English if they are an excellent match for the role.
About Us
OpsWorks Co. is an international IT company and an AWS Advanced Tier Services Partner, helping businesses build, scale, and optimize cloud infrastructure and modern software solutions.
We are currently conducting the search and recruitment process for one of our international clients as part of a long-term outstaff engagement.
About the Role
We are looking for a Middle+ DevSecOps Engineer to help build and secure modern cloud infrastructure across AWS and Azure. This is a hands-on role for an engineer who is passionate about security automation, implementing security best practices, and ensuring infrastructure is secure by default.
Responsibilities
- Build and manage cloud infrastructure on AWS and Azure using Terraform (Infrastructure as Code).
- Integrate security into CI/CD pipelines (GitHub Actions, Azure DevOps, GitLab CI).
- Implement SAST, DAST, Software Composition Analysis (SCA), container scanning, and secret detection.
- Develop and maintain Policy as Code using Checkov, Tfsec, or OPA/Rego.
- Deploy and harden Kubernetes clusters (EKS and AKS).
- Implement Zero Trust principles through IAM, RBAC, HashiCorp Vault, and Azure Key Vault.
- Monitor cloud security posture using AWS Security Hub and Microsoft Defender for Cloud.
- Automate vulnerability management workflows.
- Configure centralized logging and SIEM solutions.
- Develop secure Terraform modules and Helm charts.
- Collaborate closely with Security and Engineering teams.
Client Requirements
- 3+ years of commercial experience in DevOps, DevSecOps, or Cloud Infrastructure.
- Hands-on experience with AWS and/or Azure.
- Strong Terraform skills, including building reusable modules.
- Kubernetes (EKS or AKS).
- Experience integrating security tools into CI/CD pipelines.
- Hands-on experience with Checkov, Tfsec, or OPA.
- Python or Bash scripting.
- Familiarity with SOC2, ISO 27001, or CIS Benchmarks.
Nice to Have
- HashiCorp Vault or Azure Key Vault.
- AWS Security Hub or Microsoft Defender for Cloud.
- SIEM implementation experience.
- Golden Image automation.
- Experience in FinTech or other regulated industries.
Interview Process
- CV screening and initial discussion with our recruiter.
- Technical interview with the client.
- Final interview.
- Offer.