DevSecOps Engineer M/F
Must-have:PythonJavaGitAWSDockerKubernetesCloudFrontendBackendDevOpsCI/CDMicroservices
Nice-to-have:React
Machine translation — original language: French.Show original
RESPONSIBILITIES:
Reporting to the CIO and functionally attached to the CISO, you will join the IT team of our subsidiary Oreve, dedicated to sustainable mobility, to contribute to the design, automation, and securing of the IT infrastructure. Your main missions will be:
- Mastery of the IT environment: Develop and integrate inventory tools (assets, accounts, settings...). Make proposals and implement a log management architecture.
- Architecture review and contribution: Participate in the optimization of current and future architecture, by integrating security aspects from the design stage and implementing a resilient architecture.
- Secure deployment automation: Automate the deployment of the AWS infrastructure (Fargate, RDS, S3, IAM, etc.) for different environments (dev, test, prod), based on infrastructure as code technologies (Terraform on AWS).
- Secure delivery chain: Participate in securing the front-end and back-end delivery chains of internal Obornes applications and for clients (GitHub action, + tool to be completed by Patrick)
- Supervision and observability: Implement monitoring tools, logs, metrics, alerts, and secrets management to guarantee security and availability. Configure and deploy supervision tools in production (GuardDuty AWS, Cortex PaloAlto...), create security dashboards.
- Operational security management: Implement operational control tools to strengthen account security (AWS, OKTA, Entra...), firewall rules, network access, security logs, and security requirements.
- Testing and validation: Implement security scanners and functional tests to guarantee the robustness of the platform.
- Documentation writing: Create technical architecture documentation, operational procedures, exploitation documents... regarding the tools created and the technical means implemented.
- Operations: Implement tools and ensure the MCO/MCS of the entire IT environment.
- Backup: Analyze existing systems, make recommendations, and implement IT backup solutions.
- Incident management: Qualify and investigate security incidents reported by the external SOC or by internal supervision tools.
REQUIRED PROFILE:
- Engineering degree in computer science or equivalent (Master's degree)
- Minimum 8 years of experience in DevOps/DevSecOps
- Expertise in automation, secure deployment, and management of AWS cloud infrastructures (Fargate, RDS, S3, IAM)
- Proficiency in Python and Java (FastAPI, Spring Boot) for the development and implementation of models
- Knowledge of Docker, Kubernetes, and continuous integration tools (Jenkins, GitLab CI)
- Experience with cloud security, vulnerability scanners, secrets management, and compliance
- Knowledge of micro-services architectures, CI/CD, and automated testing
- Good command of English
- Mastery of Infra as Code architectures
- Knowledge of IT networks (switch, Firewall, VPN, IPSEC...)
- Knowledge of React, React Native, and electromobility (EV Charging) is a plus
More than just a job, are you looking for a company that shares strong values? We will be delighted to share with you our passion for our profession in service of the Ortec Group
WHY JOIN US
- Skill development, a performance accelerator:
- Training actions beyond legal obligations,
- An internal training center,
- An internal mobility program.
Our HR policy, implemented around a global solidarity approach: Housing Action, Social Action, Disability Action. Balance to succeed! A welcoming and flexible work environment:
- A teleworking agreement in effect: 2 days per week,
- If you come by public transport, the premises are very well served near metro stations and train stations.
- Team days and Group events,