Onapsis
Technology
DevOpsEngineer(security)
Neural analysis suggests this role is
optimal for Mid candidates.
“DevOps Engineer (security) at Onapsis. Skills: DevSecOps, Cybersecurity, Cloud Infrastructure, CI/CD. Embed automated security testing. Maintain automated security testing”
Industry & Context.
Analytical thinking; Problem-solving skills; Troubleshoot issues
What They're Looking For.
Must Have
Cybersecurity Expertise (2+ Years), Shift-Left-On-Security frameworks, Application security testing methodologies, SAST, DAST, SCA, OSS management, Threat Modeling exercises, Secure code reviews, DevOps practices, Cloud Technologies, Software Development Lifecycle (SDLC), Version Control tools, CI/CD (Git/GitLab), Containerization, Orchestration, Docker, Kubernetes, Linux system administration, Scripting language (Python, Bash), Communication, Collaboration, Managing priorities, Handling operational pressure, Escalating risks or blockers, Continuous improvement initiatives, Analytical thinking, Problem-solving skills, Attention to detail, Security-first mindset
Nice to Have
Knowledge of compliance and auditing standards (ISO 27001/27002, NIST 800-53, PCI DSS, CIS Controls), Active SecOps experience, Exposure to Infrastructure as Code (IaC), Terraform
What You'll Do.
Embed automated security testing
Maintain automated security testing
Optimize automated security testing
Perform platform security assessments
Verify reported exploits
Support vulnerability remediation
Participate in security audits
Provide actionable feedback
Coordinate compliance timelines
Provision test environments
Configure test environments
Deploy target application builds
Coordinate secure access requirements
Evaluate security releases
Generate compliance reports
Support security monitoring
Support security observability
Conduct internal training
Advocate secure coding standards
Advocate DevSecOps best practices
Conduct threat modeling exercises
Identify vulnerabilities
How You'll Work.
Team & Collaboration
Engineering teams; Operations teams; InfoSec teams; Platform Engineering teams; Cross-functional teams
Communication Scope
Effective communication
Process & Methodology
CI/CD pipelines
Full Job Description
About the job The world’s most critical--and at-risk--business applications have been neglected for far too long. Onapsis eliminates this blind spot by providing cybersecurity solutions dedicated to business-critical applications. Onapsis helps nearly 30% of the Forbes Global 100 understand the threats and risks across their SAP and Oracle landscapes, whether running on-premises, in the cloud, or in a hybrid environment. We are looking for self-motivated and enthusiastic DevSecOps Engineer who want to impact cybersecurity by continuing to advance, maintain, and enhance our platform features in Threat Detection & Response, Vulnerability Management, and Compliance Automation. What you will be doing, your legacy: Working closely with leadership, product management, and our Engineering and Operations teams to design and implement security-focused capabilities across the SDLC using Shift-Left-On-Security principles. This role partners with InfoSec, Technical Operations, and Platform Engineering teams to ensure CI/CD frameworks, infrastructure, and automation tooling are secure by design, resilient, and capable of protecting our customers at scale. Key Responsibilities: Security Automation & CI/CD: Embed, maintain, and optimize automated security testing (SAST, DAST, SCA) directly into GitLab CI/CD pipelines. Vulnerability & Patch Management: Perform platform security assessments, verify reported exploits, and support vulnerability remediation activities. Security Compliance: Participate in security audits, provide actionable feedback, and coordinate with engineering teams to meet compliance timelines and regulatory standards. Penetration Testing Enablement: Provision and configure isolated test environments, deploy target application builds, and coordinate secure access requirements for penetration testing activities. Security Operations & Incident Response: Collaborate with cross-functional teams to evaluate security releases, generate compliance reports, and support se
Applying for this DevOps Engineer (security) role?
Most applicants get filtered before a human reads their resume. See if yours makes the cut.
How to Apply on Greenhouse
- Create a Greenhouse profile before applying — it saves time across multiple applications.
- Upload your resume as a PDF; the parser handles it better than Word.
- Answer all knockout questions carefully — wrong answers auto-reject before a human sees you.
- Enable email notifications to track application status in real time.
ANONYMOUS · UNFILTERED
What do employees actually say about Onapsis?
Real rants from real employees. Read before you apply.