Yotpo

eCommerce

DevSecOpsEngineer

sofia, sofia-capital, bulgaria
Market Sentiment
HIGH DEMAND

Neural analysis suggests this role is
optimal for Senior candidates.

The Brief

“DevSecOps Engineer at Yotpo. Skills: Cloud Security Engineering, DevSecOps, AWS, Kubernetes, Python, Terraform, CI/CD. Designing, maturing, and automating cloud security controls. Contributing to other security domains and initiatives such as Incident Response, Security Monitoring and Risk Management”

What You'll Achieve.

Increase conversion; Strengthen customer relationships; Drive profitable, long-term growth

Industry & Context.

eCommerce
Problems you'll solve

Excellent problem-solving skills for high-complexity environments

What They're Looking For.

Must Have

5+ years of hands-on experience as Cloud Security Engineer, DevSecOps, or similar roles within an AWS environment, Expertise in managing cloud security controls (IAM, Security Groups/ACLs, WAF, IDS/IPS, load balancing, proxies, VMs, serverless), Experience securing Kubernetes and containerized workloads, Proficiency with Pythonash scripting and automation, Experience with Infrastructure-as-Code (IaC), preferably Terraform, and CI/CD tooling (e. g. , GitHub Actions), communication skills to influence and guide teams as a cloud security SME, Excellent problem-solving skills for high-complexity environments, Excellent written and verbal English

Nice to Have

AWS certifications (AWS Certified Solutions Architect, AWS Certified DevOps Engineer, AWS Certified Security - Specialty), Experience with CSPM, CNAPP, CWPP, and EDR solutions, Familiarity with security standards and frameworks (ISO, TSC, NIST) and their application to cloud environments

What You'll Do.

and automating cloud security controls

Contributing to other security domains and initiatives such as Incident Response

Security Monitoring and Risk Management

Working in close partnership with DevOps

Communicating vulnerabilities and mitigation strategies to stakeholders

Owning the full lifecycle of security initiatives from proof of concept (POC) and design to deployment and operation

Promoting a security-first mindset

Maintaining and developing the team knowledge base

Staying curious and working with modern security tools and technologies

How You'll Work.

Team & Collaboration

Work in close partnership with our DevOps, R; Communicate vulnerabilities and mitigation strategies to stakeholders; Balancing business agility and security; Collaboration; Share expertise

Communication Scope

Communicate vulnerabilities and mitigation strategies to stakeholders; Balancing business agility and security; Communication skills to influence and guide teams as a cloud security SME; Excellent written and verbal English

Process & Methodology

Own the full lifecycle of security initiatives from proof of concept (POC) and design to deployment and operation

Full Job Description

Yotpo is leading the next era of trust and loyalty in eCommerce. With AI-powered Reviews and Loyalty solutions, we help brands turn browsers into customers and customers into advocates. Through deep integrations across the eCommerce ecosystem and the trust of over 30,000 global brands, Yotpo delivers seamless omnichannel experiences that increase conversion, strengthen customer relationships, and drive profitable, long-term growth. At Yotpo, we are committed to creating secure, reliable, and innovative solutions for our customers. The Security Team is a core part of every aspect of Yotpo’s business - from customers to backend systems and everything in between. As a Senior Cloud Security Engineer, you will play an integral role in designing, maturing, and automating our cloud security controls. You will also contribute to other security domains and initiatives such as Incident Response, Security Monitoring and Risk Management. You will work in close partnership with our DevOps, R communicate vulnerabilities and mitigation strategies to stakeholders, balancing business agility and security. Own the full lifecycle of security initiatives from proof of concept (POC) and design to deployment and operation while promoting a security-first mindset. Maintain and develop the team knowledge base. Stay curious and enjoy working with modern security tools and technologies. Requirements 5+ years of hands-on experience as Cloud Security Engineer, DevSecOps, or similar roles within an AWS environment. Expertise in managing cloud security controls (IAM, Security Groups/ACLs, WAF, IDS/IPS, load balancing, proxies, VMs, serverless). Experience securing Kubernetes and containerized workloads. Proficiency with Python/Bash scripting and automation. Experience with Infrastructure-as-Code (IaC), preferably Terraform, and CI/CD tooling (e.g., GitHub Actions). Strong communication skills to influence and guide teams as a cloud security SME. Excellent problem-solving skills for high-complexi

Free ATS check

Applying for this DevSecOps Engineer role?

Most applicants get filtered before a human reads their resume. See if yours makes the cut.

ANONYMOUS · UNFILTERED

What do employees actually say about Yotpo?

Real rants from real employees. Read before you apply.

Read Company Rants →