Sr. DevSecOps Engineer

Posted 7 Days Ago
Be an Early Applicant
Dublin
In-Office
Senior level
Information Technology • Software
The Role
The role involves enhancing security across Kaseya’s infrastructure by conducting security testing, ensuring compliance, automating processes, and collaborating with development teams to improve security practices throughout the software delivery lifecycle.
Summary Generated by Built In

Kaseya® is the leading provider of complete IT infrastructure and security management solutions for Managed Service Providers (MSPs) and internal IT organizations worldwide powered by AI. Kaseya’s best-in-breed technologies allow organizations to efficiently manage and secure IT to drive sustained business success. Kaseya has achieved sustained, strong double-digit growth over the past several years and is backed by Insight Venture Partners www.insightpartners.com), a leading global private equity firm investing in high-growth technology and software companies that drive transformative change in the industries they serve.

Founded in 2000, Kaseya currently serves customers in over 20 countries across a wide variety of industries and manages over 15 million endpoints worldwide. To learn more about our company and our award-winning solutions, go to www.Kaseya.com and for more information on Kaseya’s culture.

Kaseya is not your typical company. We are not afraid to tell you exactly who we are and our expectations. The thousands of people that succeed at Kaseya are prepared to go above and beyond for the betterment of our customers.

DevSecOps Engineer Job Description

Kaseya is seeking a DevSecOps engineer to execute security initiatives across the enterprise. This person is a technical contributor who will build and maintain infrastructure focused security solutions. This individual will be responsible for planning, coordinating, and executing initiatives that improve the security posture of Kaseya. To fulfil the job requirements, maintaining relationships between other departments is a must, including Information Security and Software Engineering.

An ideal candidate for this role is a DevSecOps Engineer with a passion for security. This person must have effective communication and project management skills. An ideal candidate would also need the ability to work autonomously and have a mind and motivation for continuous improvement.

The individual will work on a wide variety of interesting technical problems, operate at scale in an environment with over an exabyte of data, have opportunities to green field solutions, and operate with both autonomy and empowerment from senior leadership.

Roles and Responsibilities

  • Security Testing and Analysis: performs regular security testing and analysis to identify vulnerabilities in the software development process. This includes conducting code reviews, penetration testing, and vulnerability scanning.
  • Secure Infrastructure: ensures that the infrastructure used by the development team is secure. This includes configuring secure servers, monitoring security logs, and ensuring that security protocols are followed.
  • Security Compliance: ensures that the development process adheres to security compliance standards, such as PCI-DSS, HIPAA, and GDPR.
  • Security Automation: automates security processes, such as vulnerability scanning and code analysis, to ensure that security is integrated into the development process from the beginning.
  • Security Education and Training: provides education and training to the development team to ensure that they are aware of security best practices and can implement them in their work.
  • Incident Response: responds to security incidents, such as data breaches or cyber-attacks, by investigating and remedying the issue.
  • Risk Assessment: performs risk assessments to identify potential security threats and develops mitigation strategies to reduce the risk of security breaches.
  • Collaboration: works closely with the development team, operations team, and security team to ensure that security is integrated throughout the deployment process.

Knowledge & Experience

  • Familiar with cloud platforms such as AWS, Azure DevOps, OpenStack and GCP. Understand how to secure cloud resources and how to integrate security into cloud-based applications.
  • Experience with provisioning and automation using tools like Terraform, CloudFormation, Ansible, Puppet and OpenStack.
  • Familiar with Continuous Integration/Continuous Deployment (CI/CD) Tools like AzureDevOps, Jenkins, CircleCI, GitLab, Travis CI.
  • Experience with Security tools and concepts used in all processes from SDLC to pipeline deployment. Technologies include SAST, DAST, Linting, Secret Scanning, Pipeline job templating, repo management.
  • Familiar with Source Code Management (SCM) tools like AzureDevOps, Bitbucket, GitHub, GitLab. Understand how to configure these tools to automate the testing and deployment of code while integrating security measures.
  • Familiar with containerization technologies including Docker, PodMan, OpenShift and Kubernetes.
  • Experience with infrastructure vulnerability scanners such as Nessus, Qualys, or OpenVAS. Understand how to use these tools to identify and remediate vulnerabilities in applications and infrastructure.
  • Familiar with logging, SIEM and metrics tools such as Splunk, ELK Stack, Prometheus, Grafana, Kubernetes Logging,etc.
  • Experience with programming languages such as Bash, Python3, Ruby, Golang and PHP. They should be able to write code to automate security processes and integrate security into the overall development process.
  • Familiar with encryption and key management tools: AWS KMS, Azure Key Vault, Google Cloud KMS, Hashicorp Vault, Kubernetes Secret Management
  • Experience Identity and Access Management (IAM): Okta, AWS IAM, Azure Active Directory, SAML
  • Familiar with code analysis tools like Linters, SonarQube, Snyk, Checkmarx, StackRox, etc.
  • Experience with web application firewall (WAF) tools on prem and in cloud, and assisting in tuning them on a per application basis.

General Qualifications and Experience

  • Experience with driving cross-organizational changes.
  • Default security-focused mindset.
  • Ability to work effectively under pressure in a fast-paced environment.
  • Good troubleshooting instincts and the ability to quickly triage / perform root-cause analysis.
  • The desire and capability to see a problem through to completion.
  • Ability to quickly acquire new skills and thrive in a team-based environment.
  • Agility in an environment that requires rapid iteration and pivoting.
  • Professional, courteous, and positive attitude.
  • Great Project management skills with the capability to manage concurrent initiatives.
  • Five plus years of experience with CI/CD platforms.
  • Three plus years of experience securing applications via CI/CD pipelines leveraging static code analysis, unit and integration testing, dependency analysis, etc.
  • Three plus years of experience performing threat and security design reviews.
  • Three plus years of experience with containers.
  • Three plus years of experience as a Software Engineer developing and maintaining an application.
  • Five plus years of experience with Linux administration (full stack or DevOps experience counts).

Expectations

  • Strong written and verbal communication skills, with a passion for documentation.
  • Works effectively under pressure in a fast-paced, dynamic environment.
  • Strong work ethic and an insatiable desire to learn.
  • It thrives in a team-based environment leaving ego at the door.
  • Performs other related duties as assigned.
  • Off hours/on-call support required.
  • Continuously strive for the betterment of engineering at Kaseya.
  • Ensure that security concerns are accounted for in every step of the build chain.
  • Work with Kaseya engineers to identify workflow pain points and develop their solutions.
  • Engineer continuous delivery pipelines that are secure, stable, maintainable, and scalable.
  • Develop and enforce security standard methodologies, processes, and tools.
  • Be the bridge between security, software and systems engineering.
  • Identify trends in need of a larger solution, beyond the scope of the immediate problem.
  • Design and champion best security practices within the organization.
  • Solve complex and challenging problems with simple, maintainable, and scalable solutions.

Join the Kaseya growth rocket ship and see how we are #ChangingLives !

Additional information
Kaseya provides equal employment opportunity to all employees and applicants without regard to race, religion, age, ancestry, gender, sex, sexual orientation, national origin, citizenship status, physical or mental disability, veteran status, marital status, or any other characteristic protected by applicable law.

Top Skills

Ansible
AWS
Aws Iam
Aws Kms
Azure
Azure Active Directory
Azure Key Vault
Azuredevops
Bash
Checkmarx
CircleCI
CloudFormation
Dast
Docker
Elk Stack
GCP
Gitlab
Go
Google Cloud Kms
Grafana
Hashicorp Vault
Jenkins
Kubernetes
Nessus
Okta
Openshift
Openstack
Openvas
PHP
Podman
Prometheus
Puppet
Python3
Qualys
Ruby
SAML
Sast
Snyk
Sonarqube
Splunk
Stackrox
Terraform
Travis Ci
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Miami, FL
5,000 Employees
Year Founded: 2000

What We Do

Kaseya is a premier provider of unified IT management and security software for managed service providers (MSPs) and small to medium-sized businesses (SMBS). Through its customer-centric approach, Kaseya delivers best-in-breed technologies that allow organizations to efficiently manage, secure and backup IT. Kaseya offers a broad array of IT management solutions, including well-known names: Kaseya, IT Glue, RapidFire Tools, Spanning Cloud Apps, ID Agent, Graphus, RocketCyber, TruMethods and Unitrends. These solutions empower businesses to command all of IT centrally, easily manage remote and distributed environments, simplify backup and disaster recovery, safeguard against cybersecurity attacks, effectively manage compliance and network assets, streamline IT documentation and automate across IT management functions. Headquartered in Miami, Florida, Kaseya is privately held with a presence in over 20 countries.

Gallery

Gallery

Similar Jobs

Pfizer Logo Pfizer

Operations Specialist

Artificial Intelligence • Healthtech • Machine Learning • Natural Language Processing • Biotech • Pharmaceutical
Hybrid
Grange, Ballyboughal, Dublin, IRL

Coupa Logo Coupa

Manager, Sales Commissions, EMEA/APAC - 10718

Artificial Intelligence • Fintech • Information Technology • Logistics • Payments • Business Intelligence • Generative AI
Hybrid
Dublin, IRL

Square Logo Square

Customer Success Advocate - English, Catalan & Spanish Trilingual

eCommerce • Fintech • Hardware • Payments • Software • Financial Services
Hybrid
Dublin, IRL
41K-41K

Toast Logo Toast

Business Development Representative

Cloud • Fintech • Food • Information Technology • Software • Hospitality
In-Office
Dublin, IRL

Similar Companies Hiring

Axle Health Thumbnail
Logistics • Information Technology • Healthtech • Artificial Intelligence
Santa Monica, CA
15 Employees
Compa Thumbnail
Software • Other • HR Tech • Business Intelligence • Artificial Intelligence
Irvine, CA
48 Employees
Scrunch AI Thumbnail
Software • SEO • Marketing Tech • Information Technology • Artificial Intelligence
Salt Lake City, Utah

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account