Job Opportunities API

The Public Ledger of Openings

← Back to the ledger

DevSecOps Engineer (SentinelOps, DevEx & Cloud Enablement Team)

eMAG
CompanyeMAG
CategoryUncategorised
LocationBucharest
RemoteOn-site (inferred)
EmploymentNot stated
LevelNot stated
SalaryNot stated by the employer
Posted31 Jul 2026
Last verified2 Aug 2026
SourceEmployer ATS (greenhouse)
Applications are handled by the employer, not by us.Apply on the employer's site →
Description
We’re always looking for the ones truly passionate about their work. If you are amongst them, you can rest assured there is a place for you in eMAG. We’ve grown very fast and are determined to keep doing so. What brought us here is our desire for continuous evolution and practical results.    More than 6000 colleagues are part of eMAG Teams . We strongly believe in people's development and therefore every year we invest more and more energy and resources to remain an organization that is constantly learning. We want to ensure that you’ll have the most talented colleagues and the proper environment to grow and achieve great results, to become what you desire on a personal and professional level. Join us, grow faster !     DevSecOps Engineer (SentinelOps, DevEx & Cloud Enablement Team)    You will embed security into the way eMAG builds and runs software - from the pipeline to the cloud account. This is a hands-on engineering role: you will write Terraform, build policy, automate controls and ship platform features that other engineers consume. It is not an audit or paper-compliance role. You will work in an Agile/Kanban setup, owning tasks or whole initiatives depending on scope, and you will take part in the team’s on-call rotation.     What you’ll have to do Secure the software delivery lifecycle   Embed security practices across the entire SDLC - from code review through to production deployment; Integrate and maintain security tooling in GitLab CI/CD pipelines, delivered as reusable templates rather than per-team bespoke work; Detect and remediate security issues within infrastructure and CI/CD pipelines; harden merge and approval rules in GitLab; Contribute to threat modeling practices and help teams apply them to their own designs; Integrate and maintain tools for risk analysis, vulnerability detection, prevention, and remediation. Platform operations and resilience  Operate and maintain Kubernetes clusters deployed both on-premises and in Cloud, ensuring high availability, scalability, and security; Implement disaster recovery and high availability strategies across environments; Automate operational workflows and infrastructure management via scripting (Bash, Python, Go); Document infrastructure configurations, deployment procedures, and operational runbooks; You will focus on managing infrastructure with IaC tools (terraform/terragrunt), standardizing reusable GitLab CI/CD pipelines. AI-assisted analysis and remediation  Use AI and purpose-built agents to analyze our multi-account, multi-cloud estate, correlating findings, misconfigurations and drift at a scale, to shorten time-to-fix; Turn cross-account analysis into output the teams owning the affected workloads can act on directly; Help set the standards for using agentic tooling safely against production infrastructure - scoped permissions, guardrails and human review where it matters. Build cloud guardrails and governance Design and enforce preventive controls across multiple cloud environments - organization-level deny and audit policies, SCPs, GCP Organization Policies, account factory standards; Write infrastructure and policy as code using Terraform; scripting and automation are core to the day-to-day, not an occasional extra; Build compliance drift detection, alerting, and run periodic compliance reviews with a focus on NIS2, DORA and GDPR obligations; Manage cloud security posture - triage and drive remediation of findings from cloud security tools. Detect, respond and improve Build and maintain security monitoring, alerting and incident response playbooks; help consolidate cloud-native detections into a unified SIEM; Implement observability: monitoring, alerting and logging to support proactive incident response; Manage vul
HOUSE ADYou found the opening. Now track it.Tracker, radar and AI drafts in one place.erioun.com →