We’re always looking for the ones truly passionate about their work. If you are amongst them, you can rest assured there is a place for you in eMAG. We’ve grown very fast and are determined to keep doing so. What brought us here is our desire for continuous evolution and practical results. More than 6000 colleagues are part of eMAG Teams . We strongly believe in people's development and therefore every year we invest more and more energy and resources to remain an organization that is constantly learning. We want to ensure that you’ll have the most talented colleagues and the proper environment to grow and achieve great results, to become what you desire on a personal and professional level. Join us, grow faster ! DevSecOps Engineer (SentinelOps, DevEx & Cloud Enablement Team) You will embed security into the way eMAG builds and runs software - from the pipeline to the cloud account. This is a hands-on engineering role: you will write Terraform, build policy, automate controls and ship platform features that other engineers consume. It is not an audit or paper-compliance role. You will work in an Agile/Kanban setup, owning tasks or whole initiatives depending on scope, and you will take part in the team’s on-call rotation. What you’ll have to do Secure the software delivery lifecycle Embed security practices across the entire SDLC - from code review through to production deployment; Integrate and maintain security tooling in GitLab CI/CD pipelines, delivered as reusable templates rather than per-team bespoke work; Detect and remediate security issues within infrastructure and CI/CD pipelines; harden merge and approval rules in GitLab; Contribute to threat modeling practices and help teams apply them to their own designs; Integrate and maintain tools for risk analysis, vulnerability detection, prevention, and remediation. Platform operations and resilience Operate and maintain Kubernetes clusters deployed both on-premises and in Cloud, ensuring high availability, scalability, and security; Implement disaster recovery and high availability strategies across environments; Automate operational workflows and infrastructure management via scripting (Bash, Python, Go); Document infrastructure configurations, deployment procedures, and operational runbooks; You will focus on managing infrastructure with IaC tools (terraform/terragrunt), standardizing reusable GitLab CI/CD pipelines. AI-assisted analysis and remediation Use AI and purpose-built agents to analyze our multi-account, multi-cloud estate, correlating findings, misconfigurations and drift at a scale, to shorten time-to-fix; Turn cross-account analysis into output the teams owning the affected workloads can act on directly; Help set the standards for using agentic tooling safely against production infrastructure - scoped permissions, guardrails and human review where it matters. Build cloud guardrails and governance Design and enforce preventive controls across multiple cloud environments - organization-level deny and audit policies, SCPs, GCP Organization Policies, account factory standards; Write infrastructure and policy as code using Terraform; scripting and automation are core to the day-to-day, not an occasional extra; Build compliance drift detection, alerting, and run periodic compliance reviews with a focus on NIS2, DORA and GDPR obligations; Manage cloud security posture - triage and drive remediation of findings from cloud security tools. Detect, respond and improve Build and maintain security monitoring, alerting and incident response playbooks; help consolidate cloud-native detections into a unified SIEM; Implement observability: monitoring, alerting and logging to support proactive incident response; Manage vulnerability assessments, coordinate remediation with development teams and track resolution against SLAs; Support and coordinate periodic security audits and penetration testing activities; Participate in production incident response and in the on-call rotation alongside the team. What makes you a good fit 3+ years of hands-on experience as a DevOps, DevSecOps, Platform, SRE or Security Engineer - or as a developer who moved decisively towards infrastructure and security; Practical experience with at least one major cloud provider and solid Linux systems administration; Proficiency with Terraform for infrastructure as code; Experience with cloud security tools (AWS GuardDuty, Security Hub, GCP Security Command Center); Experience with containers and orchestration (Docker, Kubernetes) and with CI/CD pipelines - GitLab CI, Jenkins or similar; Strong security fundamentals: IAM, encryption, network security, secrets management; Experience with monitoring, logging and alerting solutions; working knowledge of HA, disaster recovery and business continuity concepts; Comfort using AI tools as part of your daily engineering workflow; Initiative and the ability to self-prioritize in a fast-moving environment. What makes you stand out Multi-cloud experience - particularly GCP or Tencent Cloud alongside AWS; Experience implementing cloud governance policies (AWS SCPs, GCP Organization Policies) at organization; Hands-on work with cloud security tooling: GuardDuty, Security Hub, GCP Security Command Center, and SIEM integration; Experience with regulatory frameworks relevant to our markets — NIS2, DORA, GDPR; Familiarity with identity solutions, particularly Keycloak, and with federated / workload identity patterns; AWS Security Specialty, AWS DevOps Professional, CKS or equivalent certification; A track record of proactively identifying risk and driving improvements without being asked; A demonstrated history of owning work end to end - you have shipped features you analyzed, built, tested and released yourself, and you stayed accountable for them afterwards. What we’ve prepared for you Medical subscription: Medicover or Regina Maria. A flexible budget that you can invest in yourself as you wish: meal tickets, holiday tickets, cultural vouchers, private pension, foreign language classes, eMAG, Fashion Days, Therme & Genius, membership to different gyms or even professional development classes. Different discounts from our partners: banking, mobile, dental medicine or wellness. Access to the Bookster library and free credits on the Hilio psycho-emotional health platform. An accelerated learning environment, with access to over 100.000 curated online resources and platforms, learning academies and development programs. New headquarters, where sleek design, natural light, and versatile spaces create an energizing and comfortable environment for hybrid work. #LI-remote #midsenior Curious to find out more about the next step in your career? Apply now and if your experience is relevant for the role you wish, we will give you a call for more details! Also, here you can find our confidentiality policy if you want to consult it.
Senior DevSecOps Engineer
Endava
DevOps Engineer
Worldline
Platform Engineer with AI
Global
Senior Backend Engineer
Global
Portfolio Architect
Basware
Talent Sourcer (m/f/d) | Freelance | 100% Remote (EU-wide)
Hugo Schenk UG (haftungsbeschränkt)