{"id":1303684,"url":"https://alion.io/job/woxa-group-devsecops","title":"DevSecOps","company":{"id":3814833,"name":"Woxa Group","domain":"woxagroup.com","url":"https://alion.io/company/woxa-group","size_band":"51-200","is_staffing_agency":false,"employer_type":"direct","is_intermediary":false,"listed_via":null,"ats_vendor":null,"truth_index":null},"role":"Security","role_family":"Security","seniority":"senior","employment_type":"full_time","work_mode":"hybrid","remote_scope":null,"remote_scope_basis":null,"remote_working_hours":null,"hiring_geo_confidence":"structured","locations":["Khon Kaen, Thailand"],"countries":["TH"],"hiring_countries":[],"hiring_countries_total":0,"salary":null,"salary_estimate":{"min_usd":20000,"max_usd":46000,"period":"year","method":"global_role_cell_scaled_by_country","sample_n":1261},"experience_years_min":5,"visa_sponsorship":false,"relocation_package":false,"has_equity":false,"technologies":[{"name":"AWS","optional":false},{"name":"CI/CD","optional":false},{"name":"Cloudflare","optional":false},{"name":"DigitalOcean","optional":false},{"name":"DNS","optional":false},{"name":"GCP","optional":false},{"name":"GitLab","optional":false},{"name":"GitLab CI","optional":false},{"name":"Helm","optional":false},{"name":"ISO 27001","optional":false},{"name":"Kubernetes","optional":false},{"name":"OWASP Top 10","optional":false},{"name":"Shift-Left","optional":false},{"name":"Shift-Left Security","optional":false},{"name":"Snyk","optional":false},{"name":"SonarQube","optional":false},{"name":"Trivy","optional":false}],"status":"live","first_seen_at":"2026-09-21T00:00:00Z","employer_posted_date":null,"last_verified_at":"2026-09-21T00:00:00Z","board_verified":false,"closed_at":null,"days_open":8,"trust":{"level":"not_scored","repost_count":null,"flags":[],"days_open":8},"description":"Job Description:\nArchitect secure software supply chain\nGovern source code, define repository governance, GitLab CI/CD architecture\nManage application security across our Kubernetes platforms, cloud services, and edge networks.\nBe the technical cornerstone of our ISO 27001 compliance program\nEnsuring that security and compliance are embedded natively into how our applications are built, tested, and delivered to end-users.\nDrive \"Shift-Left Security\" initiative, acting as the ultimate bridge between Development, IT Operations, and Security\nSecure all microservice deployed to our Kubernetes clusters\nGovern our external perimeter using Cloud flare\nEnsure seamless orchestration between our various technical and business units.\nQualifications\nExperience: 5+ years or proven experience in Application Security, DevSecOps, or Software Engineering, with leadership managing technical teams\nSource Code & Pipeline Mastery: Expert-level experience with GitLab (or similar SCMs) governing large codebases.Advanced experience building complex, automated, and highly secure CI/CD pipelines\nContainerization & Workload Orchestration: Deep expertise in deploying and securing applications on Kubernetes (K8s) and utilizing Helm in high-traffic production environments\nEdge & Network Security: Proven, hands-on experience managing enterprise edge networking solutions, specifically Cloud flare (WAF, DNS, DDoS protection, CDN configurations, and API security)\nApplication Security (AppSec): Strong operational knowledge of integrating security testing tools (e.g., Snyk, SonarQube, Trivy) into developer workflows. Deep understanding of OWASP Top 10 and secure software design\nCloud Platform Knowledge: Proven track record of securing application workloads and managed services across Hybrid/Multi-Cloud environments (specifically AWS, GCP , and Digital Ocean)\nMindset & Cross-Team Leadership: A pragmatic leader who understands the CIA Triad (Confidentiality, Integrity, Availability). You must negotiate priorities between feature-driven developers, uptime-driven SREs, and risk-averse auditors, knowing exactly when to compromise and when to halt a deployment","description_format":"text","description_chars":2156,"description_truncated":false,"requirements":{"experience_years_min":5,"management_years_min":null,"team_size_min":null,"manages_managers":false,"education":null,"security_clearance":false,"languages":[]},"benefits":[],"hiring_locations":[],"hiring_excludes":[],"relocation_offered":false,"industries":["DevSecOps"],"lifecycle":[{"event":"open","at":"2026-09-26T12:33:12Z"}],"liveness":{"score":90,"band":"hot","label":"Hiring now","p_open":1,"p_active":0.903,"p_room":1,"age_days":7,"expected_fill_days":42,"reasons":["seen:7","velocity","win:early"],"computed_at":"2026-09-28T05:45:00Z"},"pay":null,"html_url":"https://alion.io/job/woxa-group-devsecops","json_url":"https://alion.io/job/woxa-group-devsecops.json","meta":{"generated_at":"2026-09-29T01:16:31Z","cache_seconds":300,"methodology":"https://alion.io/methodology","terms":"https://alion.io/terms","contact":"https://alion.io/contact","api":"https://alion.io/developers","usage":{"tier":"crawler","counted_by":"address","units_charged":1,"used_today":872,"day_limit":5000,"remaining_today":4128,"minute_limit":60,"resets_at":"2026-09-30T00:00:00Z"}}}