We’re looking for a DevSecOps Engineer to build and own our Internal Developer Portal (IDP),
enabling developer self-service, golden paths, compliance, automation, and best practices.
RESPONSIBILITIES
Architect, design, deploy, and maintain our Internal Developer Portal so dev teams can selfprovision infrastructure and applications.
Define & implement golden paths (reusable templates) for infrastructure & app deployment
that enforce security, compliance, and cloud best practices. Integrate the portal with CI/CD pipelines, cloud infrastructure (Kubernetes,AWS/Azure/GCP), and developer tooling.
Embed DevSecOps practices from the beginning – security scanning, vulnerability
management, policy-as-code.
Continuously improve developer experience: usability, speed, support.
Evaluate, adopt, or build tools/automation to enhance workflows.
Provide ongoing troubleshooting & support for the IDP and associated infrastructure.
Create and maintain clean, comprehensive documentation + guidelines for best practices.
PRIMARY SKILLS
Proven experience in a DevSecOps or Platform Engineering role.
Demonstrated experience designing and running Internal Developer Portals (or equivalent selfservice / “golden paths”).
Strong cloud-native skills: Kubernetes, Docker, and services from AWS / Azure / GCP.
Solid CI/CD expertise: Jenkins, GitHub Actions, Argo CD, GitLab CI, etc.
Proficiency with Infrastructure as Code (Terraform, Ansible, Pulumi, etc.).
Deep understanding of security in cloud environments, pipeline security, secrets management,
vulnerability scanning, compliance.
Excellent communication & ability to collaborate with both development and operations teams.
SECONDARY SKILLS (IF ANY)
Experience with Port.io or similar IDP / developer self-service platforms.
Templating tools for app/infrastructure deployment.
Experience building software catalogs or reusable component libraries.
Comfortable scripting (Python, Go, Bash).
Familiar with security scanning / remediation tools.
DevSecOps, Platform Engineering, Internal Developer Portal, Developer Self-Service, Golden Paths, Kubernetes, Docker, AWS, Azure, GCP, CI/CD, Jenkins, GitHub Actions, Argo CD, GitLab CI, Infrastructure As Code, Terraform, Ansible, Pulumi, Cloud Security, Pipeline Security, Secrets Management, Vulnerability Scanning, Compliance, Automation, Port.io, Software Catalogs, Component Libraries, Python, Go, Bash, Security Scanning, Remediation Tools, Troubleshooting, Documentation, Collaboration, Communication.