CrawlJobs Logo

Security DevOps Engineer

taboola.com Logo

Taboola

Location Icon

Location:
Israel , Tel Aviv

Category Icon

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

Not provided

Job Description:

Realize your potential by joining the leading performance-driven advertising company! The ideal candidate will bridge high-level security governance with hands-on, automated security implementation across the Software Development Life Cycle (SDLC). This individual will be a critical enabler, empowering teams to move swiftly and deliver exceptional value to our clients, all while upholding the required security standards. A proven track record in successfully balancing rapid innovation with robust security practices is essential for this role.

Job Responsibility:

  • Build the Secure SDLC (SSDLC) Strategy: Develop, own, and execute the company’s comprehensive DevSecOps strategy, focusing on automation to manage security at scale from code check-in to production deployment
  • Lead Key Security Engineering Initiatives: Lead and manage security engineering programs, including: Maturing the security tools stack (e.g., implementing WAF, and automating SCA/SAST tools)
  • Owning the bug bounty and responsible disclosure program’s triage and remediation tracking
  • Enhancing the Identity and Access Management (IAM) framework through concepts like Just-In-Time (JIT) and Zero Trust principles
  • Operationalize CVE Tracking and Remediation: Design and implement a scalable system for discovering, tracking, and prioritizing Common Vulnerabilities and Exposures (CVEs) in third-party and custom code. Drive the engineering teams to achieve security risk remediation goals by providing clear, actionable data and automated patching mechanisms
  • Measure & Drive Improvement: Develop and maintain key DevSecOps metrics (e.g., Mean Time To Detect/Remediate – MTTD/MTTR, percentage of code coverage by SAST/SCA tools) to measure the effectiveness of automated controls and provide a data-driven picture of the application security posture
  • Embed Security Engineering: Spearhead R&D DevSecOps initiatives, partnering directly with engineering teams to select, deploy, and maintain security tools, establishing security gates and best practices throughout the product development lifecycle

Requirements:

  • Deep DevSecOps Expertise: 5+ years of experience in a senior DevSecOps or Application/Product Security role, with a strong, working knowledge of DevSecOps principles and the modern application threat landscape (e.g., OWASP Top 10)
  • DevSecOps Focus: Proven ability to “shift left” security by embedding automated security controls (SAST, DAST, SCA, IAST) into CI/CD pipelines
  • Open Source Security & Supply Chain Mastery: Deep, hands-on experience managing and hardening open-source software dependencies
  • Key Focus: Expertise in utilizing Software Composition Analysis (SCA) tools (e.g., Dependency-Check, Snyk, Black Duck) to maintain an accurate Software Bill of Materials (SBOM) for all products
  • Vulnerability & Risk Management Pro: Proven ability to establish and own a continuous CVE tracking and remediation process
  • Key Focus: Expertise in risk-rating vulnerabilities based on exploitability and business impact, and driving engineering teams to remediate security risks efficiently using automation and clear Service Level Objectives (SLOs)
  • Audit & Compliance Automation: Proven, hands-on experience managing security audits and certification programs (e.g., SOC 2, ISO 27001) by leveraging “security as code” principles and automating evidence collection to demonstrate compliance across the pipeline
  • Leadership & Influence: Strong leadership skills with the ability to build consensus and partner with R&D, Platform Engineering, and IT teams to embed security practices without being a bottleneck
What we offer:
  • Flexibility: We offer a hybrid work schedule with 3 days in-office with an option to come in more often if desired
  • Work with some of the biggest names: We work with some of the biggest names in the business. Our publisher partners include Yahoo, Conde Nast, Fox Sports, NBCU, ESPN, CBS, and E! Online. Our advertiser clients include Wells Fargo, Honda, Pinterest, Expedia and Honda

Additional Information:

Job Posted:
January 02, 2026

Work Type:
Hybrid work
Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for Security DevOps Engineer

Infrastructure & DevOps Engineer (Security‑Focused)

We’re looking for a versatile technical profile to join us full-time, with skill...
Location
Location
France , Lyon
Salary
Salary:
Not provided
hawkcell.com Logo
HawkCell
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 2–4 years of experience in system administration, security, or DevOps
  • Strong scripting and infrastructure-as-code skills
  • Familiar with VPN configuration, endpoint management, and AWS services
  • Interest and experience in cybersecurity and regulatory compliance
  • Comfortable working independently across multiple domains
  • Ability to work in an international and English-first environment
Job Responsibility
Job Responsibility
  • Take ownership of AWS DevOps tasks, including deployment, maintenance, and scaling of HawkCT and HawkAI cloud infrastructures
  • Manage IPSec tunnel setups and collaborate with client IT departments to ensure secure and stable connectivity
  • Oversee IT infrastructure across multiple office locations, including VPNs (Marcy-Vaise, Grosse Bertha), Synology, and individual VPNs to devices
  • Improve and enforce standardized configuration policies using NinjaOne for all categories of devices (Mac/Windows, internal/external)
  • Contribute to the development of an on-premise version of HawkAI for clinics with limited internet access
  • Enhance system monitoring, ensuring robust and responsive infrastructure performance
  • Collaborate with the team to implement a secured public testing version of HawkAI, aligned with suggestions from internal stakeholders
  • Support the development of HawkAI with improvements in processing parallelization (by slice and by sequence)
  • Participate in securing cloud environments, ensuring data encryption, implementing intrusion detection systems, and overall hardening of infrastructure
  • Perform monthly vulnerability assessments on Python packages and third-party dependencies
What we offer
What we offer
  • A mission to revolutionize the animal healthcare industry
  • A great and ambitious team to grow with
  • An international culture with 10+ nationalities in the team
  • An amazing office for you to share with other Hawkstars in Lyon, France
  • Fulltime
Read More
Arrow Right

Principal Security Engineer

We’re seeking a Principal Security Engineer with deep expertise in cloud securit...
Location
Location
United States , San Francisco
Salary
Salary:
136000.00 - 241000.00 USD / Year
ethoslife.com Logo
Ethos
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 10+ years of experience in security engineering or architecture roles
  • Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or related field from a reputable institution
  • Deep expertise in cloud platforms (particularly AWS), including infrastructure-as-code (e.g., Terraform, CloudFormation)
  • Strong experience in secure software development and application security (e.g., OWASP Top 10, SAST, DAST, threat modeling)
  • Experience designing and implementing zero-trust architectures, secure API gateways, and identity/access controls
  • Proficient in scripting or development languages (e.g., Python, Go, JavaScript) and secure coding practices
  • Demonstrated leadership in cross-functional security initiatives and technical mentorship
  • Ability to come into our San Francisco, CA office once a week
Job Responsibility
Job Responsibility
  • Design and implement secure architectures for applications, APIs, microservices, and containerized workloads
  • Develop and enforce application security best practices across SDLC
  • partner with DevOps and engineering teams to integrate security into CI/CD pipelines
  • Conduct threat modeling, security design reviews, and risk assessments for new and existing systems
  • Evaluate and implement cloud security tools, controls, and frameworks (e.g., CSPM, CWPP, IAM, KMS, logging, and monitoring)
  • Provide technical leadership and mentorship to security engineers, software developers, and DevOps personnel
  • Lead response to complex security incidents or architectural flaws
  • conduct root cause analysis and recommend strategic remediations
  • Contribute to and influence security policies, standards, and governance
  • Stay current with emerging threats, vulnerabilities, and security technologies, advising stakeholders on evolving risks and mitigations
  • Fulltime
Read More
Arrow Right

Senior Application Security Engineer

This role involves embedding security into software delivery pipelines, designin...
Location
Location
India , Bangalore
Salary
Salary:
Not provided
https://www.hpe.com/ Logo
Hewlett Packard Enterprise
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 5–8+ years of experience in Application Security, Product Security, or Secure Software Development
  • hands-on experience securing software delivery pipelines (CI/CD) and source code repositories (GitHub, GitLab, Jenkins)
  • knowledge of supply chain security frameworks and controls (e.g., SLSA, NIST SSDF)
  • familiarity with secrets management, artifact signing (Sigstore, Cosign), and build integrity practices
  • hands-on experience with WAF tuning, API security controls, and vulnerability remediation
  • proficiency with one or more programming languages (Python, Java, Go, JavaScript/Node.js)
  • experience with SAST, DAST, SCA, and container image scanning tools
  • cloud security experience with AWS, Azure, or GCP
  • deep understanding of OWASP Top 10 (Web + API), CWE, and secure coding practices
Job Responsibility
Job Responsibility
  • secure SDLC & DevSecOps integration
  • design and implement security controls for build and release pipelines (GitHub Actions, Jenkins, GitLab, Azure DevOps)
  • ensure code integrity via signing, artifact scanning, and build provenance
  • automate SAST, DAST, SCA, and container image scanning as part of the software delivery pipeline
  • identify and remediate misconfigurations in pipeline environments and access control
  • design, implement, and monitor WAF rules and API protections
  • perform API risk assessments
  • champion secure design patterns
  • conduct secure code reviews and support automation of testing pipelines
  • triage, prioritize, and track security issues identified in code, pipelines, and deployed environments
What we offer
What we offer
  • comprehensive suite of benefits that supports physical, financial and emotional wellbeing
  • programs catered to helping you reach career goals
  • inclusive work environment
  • Fulltime
Read More
Arrow Right

Senior DevOps Engineer (Cloud Networking)

At Easygo, our DevSecOps team is highly involved, impactful and delivers solutio...
Location
Location
Australia , Melbourne
Salary
Salary:
Not provided
easygo.io Logo
Easygo Gaming
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor's/Master's degree in Computer Science or equivalent practical experience
  • 7+ years of hands-on experience in software engineering, with a primary focus on cloud and network security engineering
  • Strong understanding of network topologies, protocols, architecture and design principles
  • Excellent problem-solving skills and the ability to thrive in a fast-paced, dynamic environment
  • Strong communication skills for effective collaboration with teams and stakeholders
  • Analytical mindset to address complex technical challenges and devise innovative solutions
  • Positive attitude and eagerness to learn new technologies to grow as a security engineer
Job Responsibility
Job Responsibility
  • Driving the security strategy for the entire engineering organisation towards Zero Trust principles
  • Take ownership of the cloud network security roadmap. This involves discovery, tracking, prioritising, and remediation of risks ensuring continuous improvement of network security posture
  • Perform threat modelling and provide secure coding guidance to development teams, and embedding security requirements early in the design phase
  • Govern and configure WAF and network security solutions to protect from real-time attacks
  • Proactively build operational capability to detect and drive remediation of security incidents before they happen
  • Write efficient, scalable, and maintainable Terraform and Python code ensuring code quality, scalability, and maintainability
  • Continuously stay on top of an evolving network security landscape, promoting best practices and fostering a proactive security mindset throughout the organisation
  • Collaborate with stakeholders including IT security, product managers, and engineering teams to effectively communicate security concerns and mitigate risks
  • Lead and independently complete cloud network security initiatives from start to finish
  • Analyse complex problems and provide effective solutions, contributing to team goals and initiatives
What we offer
What we offer
  • Access to over 9,000 courses across our Learning and Development Platform
  • EAP access for you and your family
  • Be rewarded with lucrative annual bonuses
  • Give back with a paid volunteer day
  • Fuel your day with daily breakfast and open pantries brimming with unlimited snacks and refreshments, all on the house
  • Break up the week with on site remedial massage Wednesdays
  • In house full-time barista’s providing you your daily coffee needs
  • Weekly team lunches and happy hour in the office from 4pm on Fridays
  • Enjoy a bustling office with the option for up to 2 days work from home per week
  • Fun office environment with pool tables, table tennis and all your favourite gaming consoles
  • Fulltime
Read More
Arrow Right

Application Security Engineer

In the HPE Hybrid Cloud, we lead the innovation agenda and technology roadmap fo...
Location
Location
India , Hyderabad
Salary
Salary:
Not provided
https://www.hpe.com/ Logo
Hewlett Packard Enterprise
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor's degree in Computer Science, Information Security, or a related field
  • 5+ years of experience in application security, including hands-on experience with security testing tools and techniques
  • Strong understanding of web application security concepts, including OWASP Top 10 vulnerabilities and secure coding practices
  • Experience with security testing tools such as Burp Suite, OWASP ZAP, and code analysis tools like SonarQube or Checkmarx, Snyk
  • Proficiency in at least one programming language (e.g., Java, Python, JavaScript) and ability to review and understand code
  • Familiarity with software development methodologies (e.g., Agile, DevOps) and their impact on security practices
  • Excellent analytical and problem-solving skills, with attention to detail
  • Strong communication and interpersonal skills, with the ability to collaborate effectively with cross-functional teams
  • Certifications such as CISSP, CEH, or CASE (Java), or equivalent
  • Demonstrated ability to work independently and prioritize tasks in a fast-paced environment
Job Responsibility
Job Responsibility
  • Conduct thorough security assessments of applications, identifying vulnerabilities and weaknesses in code, architecture, and configurations
  • Collaborate closely with development teams to integrate security best practices into the software development lifecycle (SDLC) and ensure secure coding standards are followed
  • Perform regular security testing, including static code analysis, dynamic application scanning, and penetration testing, to identify and mitigate security risks
  • Analyze security incidents and provide timely response and remediation actions to mitigate potential threats
  • Develop and maintain security documentation, including security requirements, design documents, and security testing reports
  • Assist in the design and implementation of security controls and mechanisms to protect sensitive data and critical systems
  • Stay up-to-date with emerging security threats and industry best practices, and recommend security enhancements and controls accordingly
  • Provide security guidance and support to cross-functional teams, including developers, architects, and project managers
  • Participate in security reviews and audits, ensuring compliance with security policies, standards, and regulatory requirements
  • Collaborate with third-party vendors and partners to assess the security posture of integrated systems and applications
What we offer
What we offer
  • Health & Wellbeing
  • Personal & Professional Development
  • Unconditional Inclusion
  • Fulltime
Read More
Arrow Right

Cloud & DevOps Engineer

Cloud infra management, security & compliance, DevOps activities, ISMS standards
Location
Location
India , Pune
Salary
Salary:
Not provided
waiin.com Logo
Wai Technologies
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • DevOps automation
  • Azure AD
  • Azure resources & security management
  • alerts and monitoring
  • licensing and cost optimization
  • automation
  • domain & SSL management
  • Certifications in all relevant areas
  • Microsoft cloud management along with D365 & Power Platform
  • Bachelor's degree in engineering
Job Responsibility
Job Responsibility
  • O365 management
  • Azure & security management
  • Domain & SSL management
  • ISMS compliance
  • DevOps automation
  • Cloud Security & Governance
  • Licensing & Cost Optimization
What we offer
What we offer
  • Opportunities to work on cutting-edge projects with global clients
  • Learning and development are part of our culture
  • Day shift from 9:30 am to 7:00 pm & fixed weekly off on Saturday and Sunday
  • Opportunities for skill development and training
  • Training and mentorship programs offered
  • Performance-based annual bonuses
  • Health Insurance: Coverage for employees and dependents
  • Paid holidays & maternity benefits
  • Gratuity and Employee Recognition Programs
  • Fulltime
Read More
Arrow Right

Security Engineer

Airspace Link is seeking a Security Engineer to support the security posture of ...
Location
Location
United States , Detroit
Salary
Salary:
Not provided
airspacelink.com Logo
Airspace Link
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 2–5 years of experience in security engineering, cloud security, SOC/IR operations, or related hands-on security roles
  • Working knowledge of Azure security concepts and Microsoft cloud security tools
  • Practical experience with: Microsoft Defender for Cloud, Endpoint, Identity, and Cloud Apps
  • Microsoft Sentinel (KQL querying, incident investigation, dashboards)
  • Microsoft Intune / Endpoint Manager (MDM/MAM)
  • Microsoft Purview (DLP and compliance tooling)
  • Hands-on experience supporting vulnerability remediation with engineering teams
  • Familiarity with Terraform, secure CI/CD practices, and cloud configuration management
  • Strong written and verbal communication skills with the ability to collaborate cross-functionally
Job Responsibility
Job Responsibility
  • Assist with implementing and maintaining security controls within Azure and SaaS environments
  • Support the incident response lifecycle, including initial investigation, coordination with engineering, and documentation of remediation actions
  • Monitor, tune, and assist in the operation of the Microsoft Defender suite (Defender for Cloud, Endpoint, Identity, Cloud Apps, and Vulnerability Management)
  • Support mobile device management (MDM) and endpoint compliance using Microsoft Intune and Endpoint Manager
  • Partner with engineering teams to identify, prioritize, and track remediation of vulnerabilities across applications, cloud infrastructure, and CI/CD pipelines
  • Help implement and maintain Entra ID Conditional Access and Privileged Identity Management (PIM)
  • Assist in integrating DevSecOps guardrails within Azure DevOps and GitHub pipelines (e.g., CodeQL, IaC scanning, secret governance)
  • Participate in developing dashboards and analytics in Microsoft Sentinel, including KQL queries and incident correlation support
  • Contribute to threat modeling and risk assessments as part of project reviews
  • Support the creation and upkeep of security configuration baselines, Terraform modules, and policy templates
  • Fulltime
Read More
Arrow Right

Principal Software Engineer – Cloud Security

Principal Software Engineer – Cloud Security role at Hewlett Packard Enterprise,...
Location
Location
Israel , Tel Aviv
Salary
Salary:
Not provided
https://www.hpe.com/ Logo
Hewlett Packard Enterprise
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor's or master’s degree in computer science, engineering, information systems, or closely related quantitative discipline
  • Typically, 10-15 years’ experience
  • Deep expertise in software systems design, development methodologies, and integration across diverse platforms and technologies
  • Strong business acumen, focusing on aligning technological initiatives with business goals and driving sustainable growth and profitability
  • Exceptional analytical and problem-solving skills, with the ability to navigate complex technical challenges and drive impactful solutions
  • Track record of driving technological innovation, with a portfolio of patents and successful product deployments
  • Exceptional communication and stakeholder management skills, with the ability to effectively convey complex technical concepts to non-technical audiences and influence decision-making at the executive level
Job Responsibility
Job Responsibility
  • Leads the identification, evaluation, and adoption of cutting-edge technologies, innovations, and strategic partnerships to drive growth and competitiveness
  • Drives developing and implementing robust methodologies, standards, and best practices for software systems design, development, and integration
  • Leverages recognized domain expertise and experience to influence decisions
  • Collaborates with executive leadership to align technology initiatives with business objectives, ensuring technology investments deliver measurable value and impact
  • Champion a culture of continuous innovation, thought leadership, and excellence in software systems design and help build technical community
  • Provides strategic guidance and mentorship to senior technical teams, fostering a culture of collaboration, creativity, and high-performance outcomes
  • Analyzes science, engineering, business, and other data processing problems to develop and implement solutions to complex application problems, system administration issues, or network concerns
What we offer
What we offer
  • Health & Wellbeing
  • Personal & Professional Development
  • Unconditional Inclusion
  • Fulltime
Read More
Arrow Right