DevSecOps Engineer

  • Pruszków
  • Oviva
Why Oviva ? To build a healthier future for all, our mission is to provide the most accessible and effective care to people living with weight-related conditions. By blending behaviour change therapy with our unique technology and an incredible team of passionate employees, we are creating affordable and accessible app-based healthcare programs to tackle conditions such as obesity and type 2 Diabetes. We are an award-winning and largest digital health provider in Europe. We are rapidly expanding across the UK, Switzerland, Germany, France and now Poland. Our Engineering team is made up of full stack developers, software engineers and data engineers. We all have one thing in common: we love finding solutions to complex problems. We develop new features for our patient-facing app or our internal web application. To support our growing business, we are looking for a Senior DevSecOps Engineer based in Poland. The role As a DevSecOps engineer, you will work in accomplishing the integration of security practices into the development process, to ensure that security is not an afterthought, but is instead an integral part of the software development and deployment process. A secure development process is essential to provide our patients a reliable and confidential service. Key responsibilities: ● Develop and implement security architecture and design for software systems ● Conduct regular vulnerability assessments and penetration testing ● Implement security automation tools and processes ● Ensure compliance with regulatory and industry best security practices and frameworks ● Develop and implement incident response plans and procedures ● Identifies and communicate potential risks with appropriate mitigations What are we looking for you to bring: ● Degree in computer science or related field, preferably with focus on security ● Strong security expertise, including vulnerability management, static and dynamic security testing and security compliance frameworks ● Proficiency in automation and tooling, including scripting and CI/CD tools ● Good communication and collaboration skills to work with diverse teams and stakeholders ● Understanding of common classes of vulnerabilities and how to mitigate the risks in our applications and infrastructure Nice to have: ● Experience with penetration testing, threat modeling, static code analysis,web and mobile application security ● Knowledge of Kubernetes and its security model ● Acquaintance with a Secrets Management ● Knowledge of Google Cloud Platform, capable to write and manage policies ● Relevant certifications in Cyber Security (eg: OSCP or similar) What we offer: ● The opportunity to make a meaningful impact in revolutionizing healthcare ● Exciting and rewarding role in the high-growth environment ● An interesting and varied area of responsibility with targeted training in an innovative business environment (digital health) ● A trusting, appreciative and modern culture ● Flat hierarchies in a motivated, dynamic and ambitious team ● Flexible working hours in the office or in the home office ● The freedom to implement, approach and shape your own ideas ● Competitive Salary & company pension Having a culture that people want to work in, is very important to us. We do this by keeping our values at the forefront of everything we do: We put the patient first, We measure & improve, We are build winning teams Oviva is passionate about creating an inclusive culture that encourages, supports, and celebrates the diverse voices of our employees. We are a truly inclusive place to work, where everyone can be themselves and everyone is welcome. We're Proud to be a Disability Confident Employer We're Proud to be a Disability Confident Employer