Overview
Company
Profile match
Impact
Conditions
Benefits
Hiring process
Similar jobs

Capco

Capco is a global management and technology consultancy dedicated exclusively to the financial services industry, offering expertise in areas such as digital transformation, data management, and risk and compliance. The firm operates as a partner to leading banks, capital markets, insurance companies, and fintechs, helping them navigate complex regulatory environments and modernize their technological infrastructure. With a presence in major financial hubs around the world, it combines deep industry knowledge with innovative technology solutions to drive business agility and growth for its clients.

*We are looking for Poland based candidate.

At Capco Poland, we're not just another consultancy - we're the spark behind digital transformation in the financial world. As a global leader in technology and management consulting, we thrive on helping clients tackle the toughest challenges across banking, payments, capital markets, wealth, and asset management.

Role Overview

We are seeking a hands-on Senior DevSecOps Engineer with strong AWS and Azure experience to embed security directly into our engineering lifecycle. In this role, you will be the technical engine that automates compliance guardrails, integrates security tooling (SAST/DAST, EDR, Vulnerability Management) into CI/CD pipelines, and routes critical security telemetry to our SIEM. Your mission is to build the automated scaffolding that allows software delivery to move at high speed without compromising on enterprise security or governance.

Key Responsibilities

  • CI/CD Security Automation: Design, build, and maintain secure deployment pipelines (e.g., GitHub Actions, Azure DevOps, GitLab CI). Integrate automated vulnerability scanning, secret detection, and software supply chain security (SCA) seamlessly into the developer workflow.

  • Policy-as-Code & Guardrails: Write, test, and deploy automated policy guardrails using Infrastructure as Code (IaC) linting and scanning tools (e.g., Checkov, Tfsec, OPA/Rego) to catch misconfigurations before they reach production.

  • Security Product Deployment: Automate the baking of EDR agents, vulnerability scanners, and monitoring tools into base machine images (AMIs, Azure Golden Images) and containerized base environments.

  • Vulnerability & Remediation Pipelines: Operationalize vulnerability management by building automated workflows that ingest findings from cloud security tools, prioritize them based on risk, and route them to engineering backlogs (e.g., Jira tracking).

  • Logging & SIEM Integration: Configure and automate the pipeline delivery of application, container, and infrastructure logs to central logging repositories and SIEM systems for real-time threat hunting.

  • Developer Enablement: Serve as a bridge between Security and Engineering, providing developer-friendly remediation guidance and creating reusable, secure-by-default code templates (Terraform modules, Helm charts).

Required Skills & Qualifications

  • DevSecOps & CI/CD Pipelines: Deep, practical experience constructing and securing automated build/release pipelines at scale.

  • Multi-Cloud Platforms: Hands-on engineering experience configuring native security services and access controls in both AWS and Azure.

  • Infrastructure as Code (IaC): Advanced proficiency with Terraform or cloud-native tooling (Bicep, CloudFormation), focusing on modular design and immutable infrastructure.

  • Security Tooling Implementation: Direct experience implementing and maintaining security products across the lifecycle (e.g., SonarQube, Prisma Cloud, Wiz, Snyk, CrowdStrike, or Sentinel).

  • Container & Orchestration Security: Strong understanding of Kubernetes (EKS/AKS) security best practices, service meshes, and container runtime defense.

  • Nice to have certifications:

    • Certified DevSecOps Professional (CDP) or Practical DevSecOps certification

    • AWS Certified Security - Specialty or Azure Security Engineer Associate

    • Certified Kubernetes Administrator (CKA) / Certified Kubernetes Security Specialist (CKS)

We offer a flexible collaboration model based on a B2B contract, with the opportunity to work on diverse projects.

Recruitment Process:

  • HR Interview with the recruiter

  • Technical Interview

  • Client Interview

  • Feedback and offer

Recommended for you based on this role

Similar stack
Same company
In your city
Internship • 8+ year exp • Bengaluru
TypeScript
AI/ML
AI Agents
LLM
DevOps
CI/CD
Rest API
QA
Playwright
Apply
Kraków
Management
Confluence
Jira
Apply
Bachelor's Degree • Kuala Lumpur
DevOps
AWS
Azure
GCP
Apply
GCP Data Architect 1 day ago
Internship • 10+ year exp • Bachelor's Degree • Bengaluru
Databases
Databricks
Google BigQuery
Snowflake
AI/ML
Vertex AI
DevOps
AWS
CI/CD
GCP
Cybersecurity
GDPR
Apply
7+ year exp • Toronto
Java
DevOps
AWS
Azure
CI/CD
Docker
GCP
Git
Kubernetes
Platform Engineering
Terraform
Apply
Remote/Hybrid • Contractor • 7+ year exp • Kraków
PowerShell
Python
DevOps
Azure
Azure AKS
Azure DevOps
Bicep
CI/CD
Docker
Git
Grafana
Kubernetes
Prometheus
Terraform
Apply
AI Developer 5 days ago
Contractor
AI/ML
LiteLLM
LLM
DevOps
AWS
Azure
Envoy
Grafana
Kubernetes
Platform Engineering
Splunk
Terraform
Apply
Internship • 6+ year exp • Pune
Python
SQL
Python
pySpark
AI/ML
Hadoop
Spark
DevOps
Bitbucket
CI/CD
Jenkins
Cybersecurity
Checkmarx
Apply
Frankfurt am Main
Python
TypeScript
JavaScript
Frontend
Angular
React.js
DevOps
Azure
Docker
GitHub Actions
Terraform
Apply
GenAI Engineer 6 days ago
Remote • Internship • 1+ year exp • Bachelor's Degree • Brno
Python
TypeScript
JavaScript
Frontend
Angular
React.js
DevOps
Docker
GitHub Actions
Terraform
Apply
Career impact
Discover how this job can transform your career
Get a personal career forecast for this job - salary uplift, next-level role, skill boost and a 3-year financial impact, all calculated from your profile.
Personal salary uplift vs. your current pay
Your 3-year career trajectory
Skills you will level up in this role
3-year financial impact in dollars
Create free account
Free forever • Less than a minute • No credit card

Work setup

Location
Kraków
Remote work
Remote
Employment
Full-Time