DevSecOps
DevSecOps We believe that great careers and thriving teams grow through meaningful connections, and we’re here to match you with opportunities that fuel ambition and roles that unlock your talent. We know iGaming inside out and use that know-how to help talented professionals find their place in the game, where drive, innovation, and ambition meet in a perfect match. Our client, Growe, is a leading business advisory and services group in iGaming and Entertainment. Сreators of strategies that work and solutions that scale. Combining strategic vision with hands-on expertise, Growe helps businesses navigate the fast-evolving industry, seize new opportunities, enter new markets, and achieve sustainable growth. Perfect for those who aim to: Build and own the DevSecOps function from the ground up (in the security team), defining strategy, roadmap, priorities, and success metrics; Assess the current security posture of applications, infrastructure, cloud environments, and development processes; Design and implement security controls across the software development lifecycle; Establish and maintain secure CI/CD practices, including security gates and automated validation processes; Integrate security checks into engineering workflows with a strong focus on automation and developer experience; Build and operate vulnerability management processes, including triage, prioritization, remediation tracking, and reporting; Define and implement cloud security standards, guardrails, and best practices across AWS, Azure, or GCP environments; Design and enforce Kubernetes and container security controls, including RBAC, secrets management, network segmentation, and runtime protection; Develop Infrastructure-as-Code security standards and policy-as-code controls; Integrate security logs and events into SIEM to support monitoring, threat detection, and incident response; Create security standards, technical guidelines, and operational procedures for Engineering and Platform teams; Support security incident investigations related to cloud, infrastructure, CI/CD, application vulnerabilities, exposed credentials, and supply-chain threats.
