DevSecOps Engineer
Fairmind · Roma, Milano ·
- Work mode
- Onsite
- Category
- Security
- Experience
- 3+ years
Fairmind · Roma, Milano ·
FairMind is seeking a DevSecOps-focused engineer to design, implement, and secure CI/CD pipelines for our AI-driven platform. You will apply shift-left security across the SDLC, manage IaC with Terraform/CloudFormation, and ensure container security for Docker and Kubernetes in cloud environments.
You will develop monitoring and testing workflows, automate vulnerability scans, and help define disaster recovery and data protection strategies.
Design, implement, and maintain secure CI/CD pipelines that support our AI-driven platform. Integrate security practices throughout the software development lifecycle following shift-left principles. Implement Infrastructure-as-Code (IaC) using Terraform or CloudFormation with security best practices. Manage containerization technologies including Docker and Kubernetes deployments with security considerations. Develop and maintain monitoring, alerting, and observability solutions for production environments. Implement automated vulnerability scanning, security testing, and compliance monitoring. Establish disaster recovery procedures and ensure data security compliance. Collaborate with development teams to optimize security and performance of cloud infrastructure. Create and maintain documentation for infrastructure, security practices, and incident response procedures. Apply Generative AI tools to automate and enhance DevSecOps workflows and documentation. Contribute to the development of AI agents for infrastructure management and security automation within the FairMind platform. 3-6 years of DevOps experience focused on security. Strong knowledge of AWS and security best practices. Experience with Docker and Kubernetes and their security considerations. Proficiency with IaC tools like Terraform and CloudFormation. Scripting skills in Python, Bash, or PowerShell for automation. Knowledge of network security, identity management, and security compliance frameworks. Experience building CI/CD pipelines with integrated security testing. Familiarity with monitoring, logging, and observability best practices. Excellent communication and cross-functional collaboration. Interest in applying Generative AI to DevSecOps workflows.