HSBCJP00056223 DevSecOps Engineer

2 tygodni temu


Kraków, Lesser Poland Antalpl Pełny etat 10 560 zł - 11 520 zł rocznie
Senior DevSecOps / CI/CD Engineer

Contract type: B2B / Contracting
Work model: Hybrid – 2 days per week on-site (Kraków)
Industry: Banking / FinTech
Rate: 200–220 PLN/h (B2B)

Role Overview

We are looking for a highly experienced Senior DevSecOps / CI/CD Engineer to join a platform engineering team supporting a major banking client. The role focuses on designing, building, and maintaining secure, efficient CI/CD pipelines and improving the organization's software supply-chain security posture.

You will work on pipeline optimization, Python tooling, artifact integrity, security scanning, and mentoring engineers on DevSecOps best practices.

Key Responsibilities
  • Design and maintain Groovy-based pipeline steps (build, test, package, scan, deploy).

  • Extend Python tooling for SLSA provenance, SBOM generation, digest/hash accuracy, and aggregated security scanning (SonarQube, Sonatype IQ, SAST/Container).

  • Optimize pipeline performance (parallel builds, caching, reduced-scope BOMs, dependency prefetch).

  • Ensure artifact integrity (correct SHA1/SHA256 mapping, reproducible builds, evidence modeling).

  • Refactor legacy scripts: remove global state, unify hashing logic, standardize templates.

  • Create and maintain documentation for ci- standards and usage patterns.

  • Mentor engineers on secure pipeline development and supply-chain security practices.

  • Troubleshoot and prevent incidents in CI/CD pipelines.

Required Skills & Qualifications
  • 7+ years of engineering experience, including 3+ years in CI/CD platform development or DevSecOps.

  • Strong expertise in Jenkins and Groovy Shared Libraries.

  • Advanced proficiency in Python (automation, tooling scripts, JSON/YAML processing).

  • Deep understanding of Maven / NPM / Python packaging; exposure to Helm/Terraform and container image metadata.

  • Strong background in supply-chain security (SLSA, CycloneDX SBOM, digests).

  • Experience with SonarQube, Sonatype IQ, container scanning, and SAST tools.

  • Proven performance tuning skills (caching, parallelization, dependency pruning).

  • Awareness of compliance standards and enterprise governance.

Nice-to-Have
  • Experience with artifact signing / attestations (cosign, OCI).

  • Familiarity with publishing Terraform modules and Helm charts.

  • GitOps or release automation experience.

  • Cloud experience (GCP or AWS).

Soft Skills
  • Clear and precise communication.

  • Strong documentation discipline.

  • Ownership mindset; able to operate independently with minimal supervision.


  • DevSecOps Engineer

    7 dni temu


    Kraków, Lesser Poland Cloudinary Pełny etat 80 000 zł - 120 000 zł rocznie

    Cloudinary is looking for a Senior DevSecOps Engineer to be our eyes and ears on security—end to end. You'll be embedded in the DevOps team and partner with our existing DevSecOps engineer to secure massively scalable, global production systems that power tens of thousands of websites and apps, while also tackling organizational security across identity,...


  • Kraków, Lesser Poland LoopMe Pełny etat 60 000 zł - 120 000 zł rocznie

    We are currently seeking an experienced InfoSec Mid-Level Specialist to enhance our security posture and ensure our systems and data's confidentiality, integrity, and availability. The ideal candidate will have a strong background in information security, familiarity with cloud environments like GCP, and experience securing modern data processing...


  • Kraków, Lesser Poland LoopMe Pełny etat 80 640 USD - 112 800 USD rocznie

    We are currently seeking an experienced InfoSec Mid-Level Specialist to enhance our security posture and ensure our systems and data's confidentiality, integrity, and availability. The ideal candidate will have a strong background in information security, familiarity with cloud environments like GCP, and experience securing modern data processing...

  • Senior DevSecOps Engineer

    2 tygodni temu


    Kraków, Lesser Poland FLYR Pełny etat 60 000 zł - 120 000 zł rocznie

    Our VisionWe believe in a world where travel companies can innovate freely, growing and accelerating their business, while delivering the experience travelers want and the change the industry needs.FLYR is a technology company that unlocks freedom to innovate for the travel industry – eliminating legacy constraints to enable real-time decision making and...

  • DevSecOps Engineer

    2 tygodni temu


    Kraków, Lesser Poland Euroclear Pełny etat 60 000 € - 80 000 € rocznie

    *JOB DESCRIPTIONAbout the TribeTheContinuous Integration Tribeis at the heart of our software delivery ecosystem. Our mission is tomaintain, support, and evolve the CI/CD platforms*that empower thousands of developers across the organization. We ensure that code flows securely and efficiently from development to production, enabling innovation at scale.*What...

  • DevSecOps Engineer

    7 dni temu


    Kraków, Lesser Poland Euroclear Pełny etat 50 000 € - 120 000 € rocznie

    *JOB DESCRIPTIONAbout the TribeTheContinuous Integration Tribeis at the heart of our software delivery ecosystem. Our mission is tomaintain, support, and evolve the CI/CD platforms*that empower thousands of developers across the organization. We ensure that code flows securely and efficiently from development to production, enabling innovation at scale.*What...

  • Senior DevSecOps Engineer

    1 tydzień temu


    Kraków, Lesser Poland Cloudinary Pełny etat

    Cloudinary is looking for a Senior SecOps Engineer to be our eyes and ears on security—end to end.You'll be embedded in the DevOps team and partner with our existing SecOps engineer to secure massively scalable, global production systems that power tens of thousands of websites and apps, while also tackling organizational security across identity,...

  • Senior DevSecOps Engineer

    1 tydzień temu


    Kraków, Lesser Poland Cloudinary Pełny etat 80 000 € - 140 000 € rocznie

    Cloudinary is looking for a Senior SecOps Engineer to be our eyes and ears on security—end to end.You'll be embedded in the DevOps team and partner with our existing SecOps engineer to secure massively scalable, global production systems that power tens of thousands of websites and apps, while also tackling organizational security across identity,...

  • Senior DevSecOps Engineer

    1 tydzień temu


    Kraków, Lesser Poland Cloudinary Pełny etat 120 000 zł - 180 000 zł rocznie

    Cloudinary is looking for a Senior SecOps Engineer to be our eyes and ears on security—end to end. You'll be embedded in the DevOps team and partner with our existing SecOps engineer to secure massively scalable, global production systems that power tens of thousands of websites and apps, while also tackling organizational security across identity,...

  • Staff Engineer

    3 dni temu


    Kraków, Lesser Poland RemoteStar Pełny etat

    Job title : Staff Engineer / Principle EngineerWhat you'll do :Technical Leadership: Lead architectural decisions for trading systems, multi- region AWS deployments, and regulatory compliance implementations including Travel Rule and Chainalysis integrationPlatform Development: Oversee trading platform development and integrations (IBKR, exchange protocols),...