DevSecOps Lead
Overview
Join to apply for the Dev
Sec
Ops Lead role at emagine - Portugal.
Boost IT is a Portuguese technology consultancy company, integrated into one of the most entrepreneurial groups in Portugal, with investment in more than 30 companies. We want to be known for being the most dynamic, energetic and reliable company to operate in the market, and we want to count on you. If you're passionate about technology and want to work on the most relevant technology projects, this ad could be for you! Boost IT. Doing IT. Better.
Responsibilities
- Design and implement security architectures for software applications.
- Interact with the security champions guild to gather feedback and improve App
Sec processes. - Develop and enforce secure coding practices for the different development teams.
- Collaborate with development teams to ensure secure software development lifecycle (SDLC) practices are followed.
- Provide guidance on security assessments and code reviews to identify vulnerabilities.
- Conduct threat modelling exercises.
- Provide guidance and training to developers on application security best practices.
- Stay
-
- date with the latest security trends and technologies. - Validate App
Sec pipeline adoption and remove blockers for widespread adoption. - Review application lifecycle and validate its security posture.
Requirements
- Developer at heart, not just a sec person.
- Need to speak and breathe Dev
Sec. - Think Sec, Dev and Ops at scale and automated.
- Able to manage a team of hackers and, at the same time, be a team player and a great communicator.
- Must be able to help teams identify and manage a guild of security champions (developer advocates).
- Responsible and accountable to evangelize and promote App
Sec best practices within the different teams. - Strong knowledge of application security principles and practices in software development, including OWASP.
- Familiarity with common security libraries, security controls, and common software vulnerabilities.
- Familiarity with SDLC and CI/CD best practices.
- Experience with security testing tools and methodologies.
- Familiarity with cloud environments (AWS, Azure, GCP) and
- trust architecture. - Tools and tech stack: Terraform/Ia
C, Git
Hub/Git
Lab, Docker,
- trust, pipelining, Trivy/Anchore,
- native architectures, Python, Node. - Familiarity with industry compliance and security standards including NIST CSF, NIST SP800-53, NIS 2. 0, OWASP, CIS Controls, MITRE ATT&CK and ISO 27000 series.
- Excellent
- solving skills and attention to detail; strong communication and interpersonal skills. - Shift-left ambassador.
- Pivotal between Cloud & Dev
Ops, So
C, GRC and delivery areas. - Foster App
Sec culture and awareness.
Seniorities and employment
- Seniority level: Director
- Employment type: Full-time
- Job function: Other
- Industries: Software Development
Boost IT. Doing IT. Better
- Informações detalhadas sobre a oferta de emprego
Empresa: emagine - Portugal Localização: Lisboa
Lisboa, Lisboa, PortugalPublicado: 25. 9. 2025
Vaga de emprego atual
Seja o primeiro a candidar-se à vaga de emprego oferecida!