Onapsis

Technology

DevOpsEngineer(security)

€120–180k ~AI est. Bucharest, Romania FULL TIME Remote Friendly
Market Sentiment
HIGH DEMAND

Neural analysis suggests this role is
optimal for Mid candidates.

The Brief

“DevOps Engineer (security) at Onapsis. Skills: DevSecOps, Cybersecurity, Cloud Infrastructure, CI/CD. Embed automated security testing. Maintain automated security testing”

Industry & Context.

Technology
Problems you'll solve

Analytical thinking; Problem-solving skills; Troubleshoot issues

What They're Looking For.

Must Have

Cybersecurity Expertise (2+ Years), Shift-Left-On-Security frameworks, Application security testing methodologies, SAST, DAST, SCA, OSS management, Threat Modeling exercises, Secure code reviews, DevOps practices, Cloud Technologies, Software Development Lifecycle (SDLC), Version Control tools, CI/CD (Git/GitLab), Containerization, Orchestration, Docker, Kubernetes, Linux system administration, Scripting language (Python, Bash), Communication, Collaboration, Managing priorities, Handling operational pressure, Escalating risks or blockers, Continuous improvement initiatives, Analytical thinking, Problem-solving skills, Attention to detail, Security-first mindset

Nice to Have

Knowledge of compliance and auditing standards (ISO 27001/27002, NIST 800-53, PCI DSS, CIS Controls), Active SecOps experience, Exposure to Infrastructure as Code (IaC), Terraform

What You'll Do.

Embed automated security testing

Maintain automated security testing

Optimize automated security testing

Perform platform security assessments

Verify reported exploits

Support vulnerability remediation

Participate in security audits

Provide actionable feedback

Coordinate compliance timelines

Provision test environments

Configure test environments

Deploy target application builds

Coordinate secure access requirements

Evaluate security releases

Generate compliance reports

Support security monitoring

Support security observability

Conduct internal training

Advocate secure coding standards

Advocate DevSecOps best practices

Conduct threat modeling exercises

Identify vulnerabilities

How You'll Work.

Team & Collaboration

Engineering teams; Operations teams; InfoSec teams; Platform Engineering teams; Cross-functional teams

Communication Scope

Effective communication

Process & Methodology

CI/CD pipelines

Full Job Description

About the job The world’s most critical--and at-risk--business applications have been neglected for far too long. Onapsis eliminates this blind spot by providing cybersecurity solutions dedicated to business-critical applications. Onapsis helps nearly 30% of the Forbes Global 100 understand the threats and risks across their SAP and Oracle landscapes, whether running on-premises, in the cloud, or in a hybrid environment. We are looking for self-motivated and enthusiastic DevSecOps Engineer who want to impact cybersecurity by continuing to advance, maintain, and enhance our platform features in Threat Detection & Response, Vulnerability Management, and Compliance Automation. What you will be doing, your legacy: Working closely with leadership, product management, and our Engineering and Operations teams to design and implement security-focused capabilities across the SDLC using Shift-Left-On-Security principles. This role partners with InfoSec, Technical Operations, and Platform Engineering teams to ensure CI/CD frameworks, infrastructure, and automation tooling are secure by design, resilient, and capable of protecting our customers at scale. Key Responsibilities: Security Automation & CI/CD: Embed, maintain, and optimize automated security testing (SAST, DAST, SCA) directly into GitLab CI/CD pipelines. Vulnerability & Patch Management: Perform platform security assessments, verify reported exploits, and support vulnerability remediation activities. Security Compliance: Participate in security audits, provide actionable feedback, and coordinate with engineering teams to meet compliance timelines and regulatory standards. Penetration Testing Enablement: Provision and configure isolated test environments, deploy target application builds, and coordinate secure access requirements for penetration testing activities. Security Operations & Incident Response: Collaborate with cross-functional teams to evaluate security releases, generate compliance reports, and support se

Free ATS check

Applying for this DevOps Engineer (security) role?

Most applicants get filtered before a human reads their resume. See if yours makes the cut.

How to Apply on Greenhouse

  • Create a Greenhouse profile before applying — it saves time across multiple applications.
  • Upload your resume as a PDF; the parser handles it better than Word.
  • Answer all knockout questions carefully — wrong answers auto-reject before a human sees you.
  • Enable email notifications to track application status in real time.

ANONYMOUS · UNFILTERED

What do employees actually say about Onapsis?

Real rants from real employees. Read before you apply.

Read Company Rants →