{"id":1537291,"url":"https://alion.io/job/aduna-global-devsecops-engineer","title":"DevSecOps Engineer","company":{"id":2014758,"name":"Aduna Global","domain":"adunaglobal.com","url":"https://alion.io/company/adunaglobal","size_band":null,"is_staffing_agency":false,"employer_type":"direct","is_intermediary":false,"listed_via":null,"ats_vendor":"Lever","truth_index":null},"role":"Security","role_family":"Security","seniority":"senior","employment_type":"full_time","work_mode":"hybrid","remote_scope":null,"remote_scope_basis":null,"remote_working_hours":null,"hiring_geo_confidence":"structured","locations":["Łódź, Poland"],"countries":["PL"],"hiring_countries":[],"hiring_countries_total":0,"salary":null,"salary_estimate":{"min_usd":60000,"max_usd":106000,"period":"year","method":"role_seniority_country_remote_cell","sample_n":17},"experience_years_min":8,"visa_sponsorship":false,"relocation_package":false,"has_equity":false,"technologies":[{"name":"AWS","optional":false},{"name":"Azure","optional":false},{"name":"CI/CD","optional":false},{"name":"CIS Benchmarks","optional":false},{"name":"FluxCD","optional":false},{"name":"GitLab CI","optional":false},{"name":"GitOps","optional":false},{"name":"HashiCorp Vault","optional":false},{"name":"IAM","optional":false},{"name":"ISO 27001","optional":false},{"name":"Kubernetes","optional":false},{"name":"LLM","optional":false},{"name":"LLM Guardrails","optional":false},{"name":"NIST AI RMF","optional":false},{"name":"NIST CSF","optional":false},{"name":"OWASP","optional":false},{"name":"OWASP ASVS","optional":false},{"name":"PKI","optional":false},{"name":"SOC 2","optional":false},{"name":"Terraform","optional":false},{"name":"Threat Modeling","optional":false}],"status":"live","first_seen_at":"2026-09-04T12:13:47Z","employer_posted_date":"2026-09-04","last_verified_at":"2026-09-30T19:25:58Z","board_verified":true,"closed_at":null,"days_open":27,"trust":{"level":"ok","repost_count":null,"flags":[],"days_open":27},"description":"Aduna's Security Area of Focus exists to protect the company, our CSP partners, and the data flowing through our APIs, while enabling the rest of the engineering organization to move fast and adopt AI safely. As a Senior Security Engineer in this group, you will be an Individual Contributor accountable for implementing security solutions across Aduna's platform and integration estate, and for operationalizing the standards, policies, and risk decisions issued by the Security governance function.\nYou will work hands-on, in collaboration with engineering teams across the company, to turn governance into engineered controls and guardrails that scale, including the controls needed to secure how we build with, and expose, AI capabilities.\nThis is a hands-on technical role focused on owning security outcomes. While it does not include people management, it requires strong accountability, the ability to drive and influence engineers across teams toward the right security decisions, and rigorous attention to standards and applicable telecom security guidelines.\nWhat you will be focused on \nRisk Ownership and Cross-Team Leadership\nOperate with ownership and accountability for one or more security risks at Aduna, including risks introduced by AI and LLM-based features, driving and influencing engineering teams to comprehensively address those risks while enabling the company to move fast.\n\nLead cross-organizational technical efforts to solve challenging security problems that span the Platform, Integration, SRE, and Product teams.\n\nDisambiguate and decompose security problems and solutions, and create clarity for engineering and product partners.\n\nSecurity Implementation and Engineered Controls\nDesign and implement security controls across application, infrastructure, and AI layers, including identity, authentication, authorization, encryption, secret management, and model and prompt safety controls.\n\nOperate and evolve Aduna's secret management platform built on HashiCorp Vault, including secrets engines, dynamic credentials, policies, namespaces, and integration with workloads, CI/CD, and AI/agent toolchains.\n\nHarden Kubernetes clusters, cloud accounts (AWS, Azure), CI/CD pipelines, and AI runtime environments against internal standards and industry best practices.\n\nBuild and maintain security tooling and automation for vulnerability management, dependency scanning, SAST/DAST, container and image scanning, infrastructure-as-code policy enforcement, and emerging categories such as model and prompt scanning.\n\nApply AI to security itself: use LLMs, agents, and ML-based tooling to scale triage, code review, threat detection, and evidence collection, with appropriate human oversight.\n\nGovernance and Policy Operationalization\nTranslate policies, standards, and risk decisions issued by the Security governance function into concrete technical controls, automated checks, and developer-facing guidance, including standards for the responsible and ethical use of AI.\n\nSupport audits and assessments by providing technical evidence, walkthroughs, and remediation plans.\n\nWhat You Bring\nEducation\nBachelor's degree in Computer Science, Engineering, Cybersecurity, or equivalent practical experience.\nExperience\n8+ years of experience in security engineering, application security, cloud security, or a closely related discipline.\n\nProven track record of managing security risk and navigating the tradeoff between security and friction in an engineering organization.\n\nExperience driving cross-team engineering and security initiatives end to end.\n\nExperience with system design, threat modeling, and risk assessment, ideally including AI or ML-enabled systems.\n\nTechnical Skills\nStrong working knowledge of security standards and frameworks (ISO 27001, SOC 2, NIST CSF, OWASP ASVS, CIS Benchmarks), plus growing familiarity with AI-specific frameworks (OWASP LLM Top 10, NIST AI RMF, MITRE ATLAS).\n\nKnowledge of current threat tactics, techniques, and procedures, including AI-specific threats such as prompt injection, model and data poisoning, jailbreaks, and unsafe autonomous actions.\n\nSolid knowledge of identity and access management, including OAuth 2.0, OIDC, SAML, mTLS, and PKI.\n\nExperience with cloud security on AWS and/or Azure (IAM, KMS, network security, logging, posture management).\n\nExperience with Kubernetes security (RBAC, network policies, admission control, image signing, runtime security).\n\nWorking knowledge of infrastructure as code and GitOps (Terraform, FluxCD, GitLab CI or similar) and how to embed security controls into them","description_format":"text","description_chars":4589,"description_truncated":false,"requirements":{"experience_years_min":8,"management_years_min":null,"team_size_min":null,"manages_managers":false,"education":{"level":"bachelor","optional":false},"security_clearance":false,"languages":[]},"benefits":[],"hiring_locations":[{"name":"Poland","iso":"PL","kind":"country"}],"hiring_excludes":[],"relocation_offered":false,"industries":["DevSecOps","Telecommunications","Cloud Platforms (IaaS & PaaS)","Systems Integrators"],"lifecycle":[{"event":"open","at":"2026-09-30T19:25:58Z"}],"liveness":{"score":35,"band":"fade","label":"Fading","p_open":1,"p_active":0.635,"p_room":0.55,"age_days":26,"expected_fill_days":24,"reasons":["conf:10","win:tail"],"computed_at":"2026-10-01T05:45:00Z"},"pay":null,"html_url":"https://alion.io/job/aduna-global-devsecops-engineer","json_url":"https://alion.io/job/aduna-global-devsecops-engineer.json","meta":{"generated_at":"2026-10-02T01:25:44Z","cache_seconds":300,"methodology":"https://alion.io/methodology","terms":"https://alion.io/terms","contact":"https://alion.io/contact","api":"https://alion.io/developers","usage":{"tier":"crawler","counted_by":"address","units_charged":1,"used_today":1667,"day_limit":5000,"remaining_today":3333,"minute_limit":60,"resets_at":"2026-10-03T00:00:00Z"}}}