Yotpo
eCommerce
DevSecOpsEngineer
Neural analysis suggests this role is
optimal for Senior candidates.
“DevSecOps Engineer at Yotpo. Skills: Cloud Security Engineering, DevSecOps, AWS, Kubernetes, Python, Terraform, CI/CD. Designing, maturing, and automating cloud security controls. Contributing to other security domains and initiatives such as Incident Response, Security Monitoring and Risk Management”
What You'll Achieve.
Increase conversion; Strengthen customer relationships; Drive profitable, long-term growth
Industry & Context.
Excellent problem-solving skills for high-complexity environments
What They're Looking For.
Must Have
5+ years of hands-on experience as Cloud Security Engineer, DevSecOps, or similar roles within an AWS environment, Expertise in managing cloud security controls (IAM, Security Groups/ACLs, WAF, IDS/IPS, load balancing, proxies, VMs, serverless), Experience securing Kubernetes and containerized workloads, Proficiency with Pythonash scripting and automation, Experience with Infrastructure-as-Code (IaC), preferably Terraform, and CI/CD tooling (e. g. , GitHub Actions), communication skills to influence and guide teams as a cloud security SME, Excellent problem-solving skills for high-complexity environments, Excellent written and verbal English
Nice to Have
AWS certifications (AWS Certified Solutions Architect, AWS Certified DevOps Engineer, AWS Certified Security - Specialty), Experience with CSPM, CNAPP, CWPP, and EDR solutions, Familiarity with security standards and frameworks (ISO, TSC, NIST) and their application to cloud environments
What You'll Do.
and automating cloud security controls
Contributing to other security domains and initiatives such as Incident Response
Security Monitoring and Risk Management
Working in close partnership with DevOps
Communicating vulnerabilities and mitigation strategies to stakeholders
Owning the full lifecycle of security initiatives from proof of concept (POC) and design to deployment and operation
Promoting a security-first mindset
Maintaining and developing the team knowledge base
Staying curious and working with modern security tools and technologies
How You'll Work.
Team & Collaboration
Work in close partnership with our DevOps, R; Communicate vulnerabilities and mitigation strategies to stakeholders; Balancing business agility and security; Collaboration; Share expertise
Communication Scope
Communicate vulnerabilities and mitigation strategies to stakeholders; Balancing business agility and security; Communication skills to influence and guide teams as a cloud security SME; Excellent written and verbal English
Process & Methodology
Own the full lifecycle of security initiatives from proof of concept (POC) and design to deployment and operation
Full Job Description
Yotpo is leading the next era of trust and loyalty in eCommerce. With AI-powered Reviews and Loyalty solutions, we help brands turn browsers into customers and customers into advocates. Through deep integrations across the eCommerce ecosystem and the trust of over 30,000 global brands, Yotpo delivers seamless omnichannel experiences that increase conversion, strengthen customer relationships, and drive profitable, long-term growth. At Yotpo, we are committed to creating secure, reliable, and innovative solutions for our customers. The Security Team is a core part of every aspect of Yotpo’s business - from customers to backend systems and everything in between. As a Senior Cloud Security Engineer, you will play an integral role in designing, maturing, and automating our cloud security controls. You will also contribute to other security domains and initiatives such as Incident Response, Security Monitoring and Risk Management. You will work in close partnership with our DevOps, R communicate vulnerabilities and mitigation strategies to stakeholders, balancing business agility and security. Own the full lifecycle of security initiatives from proof of concept (POC) and design to deployment and operation while promoting a security-first mindset. Maintain and develop the team knowledge base. Stay curious and enjoy working with modern security tools and technologies. Requirements 5+ years of hands-on experience as Cloud Security Engineer, DevSecOps, or similar roles within an AWS environment. Expertise in managing cloud security controls (IAM, Security Groups/ACLs, WAF, IDS/IPS, load balancing, proxies, VMs, serverless). Experience securing Kubernetes and containerized workloads. Proficiency with Python/Bash scripting and automation. Experience with Infrastructure-as-Code (IaC), preferably Terraform, and CI/CD tooling (e.g., GitHub Actions). Strong communication skills to influence and guide teams as a cloud security SME. Excellent problem-solving skills for high-complexi
Applying for this DevSecOps Engineer role?
Most applicants get filtered before a human reads their resume. See if yours makes the cut.
ANONYMOUS · UNFILTERED
What do employees actually say about Yotpo?
Real rants from real employees. Read before you apply.