At a Glance
- Tasks: Design and manage security solutions for software development, focusing on automation and CI/CD.
- Company: Join Airalo, the world's first eSIM store revolutionising global connectivity.
- Benefits: Enjoy health insurance, remote work perks, wellness credits, and an all-expenses-paid company retreat.
- Why this job: Make a real impact in a diverse team while enhancing global communication.
- Qualifications: 5+ years in DevSecOps with strong cloud security expertise and programming skills.
- Other info: Work remotely with flexible hours and excellent career growth opportunities.
The predicted salary is between 48000 - 72000 £ per year.
About Airalo
Alo! Airalo is the world’s first eSIM store that helps people connect in over 200+ countries and regions across the globe. We are building the next digital service that revolutionises the telecom industry. We are a travel-tech company and an equal-opportunity environment that values and executes diversity, inclusion, and equity. Our team is spread across 50+ countries and six continents. What glues us together is our commitment to changing the way you connect.
About you
We hope that you care deeply about the quality of your work, the intrinsic worth of tasks, and the success of your team. You are self-disciplined and do not require micromanagement in terms of your skillset and work ethic. You do your best to flourish as an individual every day while working hard to foster a collaborative team environment. You believe in the importance of being — and staying — authentic, honest, positive, and kind. You are a good interlocutor with clear and concise communication. You are able to manage multiple projects, have an analytical mind, pay keen attention to detail, and love to get your hands dirty. You are cognizant, tolerant, and welcoming of vulnerabilities and cultural differences.
About the Role
Position: Full-time / Employee
Location: Remote-first
Benefits: Health Insurance, work-from-anywhere stipend, annual wellness & learning credits, annual all-expenses-paid company retreat in a gorgeous destination & other benefits.
On-Call
- Participating in our on-call rotation is a core expectation of this role. It’s essential for maintaining 24/7 service reliability across our global operations, ensuring our systems remain resilient and our customers experience uninterrupted service, regardless of time zone or geography.
- Paid Rotation: We offer standby fees + overtime pay.
- Delayed Start: No on-call duties for your first 6 months.
- Rest & Recovery: Guaranteed rest periods and flexible hours following night incidents.
- Shared Load: Rotations are split (Weekdays vs. Weekends) to minimise fatigue.
Please refer to the On-Call Policy in the Airalo Handbook for full details.
Responsibilities include, but are not limited to:
- Design, implement, and manage security solutions across the entire software development lifecycle (SDLC), with a focus on automation and continuous integration/continuous delivery (CI/CD) pipelines, including robust API security measures and authentication protocols.
- Champion security best practices within engineering, DevOps, SRE, and IT teams, fostering a culture of shared responsibility for security.
- Proactively identify and remediate security vulnerabilities in applications, mitigating OWASP Top 10 vulnerabilities, infrastructure, and cloud services through threat modeling, vulnerability assessments, and penetration testing.
- Develop and maintain security monitoring and alerting solutions to detect and respond to potential security incidents in real-time and prevent common cyber attacks such as DDoS, injection attacks, and credential stuffing.
- Define and enforce secure coding standards and provide training and mentorship to development teams on DevSecOps principles.
- Lead compliance initiatives by contributing to security policies, controls, and audit readiness for SOC 2, ISO 27001, GDPR, and other relevant regulations.
Must-haves
- Bachelor's degree in Computer Science, Cybersecurity, or a related field.
- 5+ years of experience in DevSecOps, Security Engineering, or a similar role with a strong focus on cloud security.
- 3+ years of hands-on experience with AWS services, including expertise in container orchestration, IAM, and security best practices.
- 2+ years of experience with Kubernetes, including securing Kubernetes clusters and deployments.
- Deep understanding of SAST, DAST, and container security solutions, API security testing tools, with experience implementing and managing these tools.
- Proven experience in vulnerability assessment, threat modeling, and remediation techniques.
- Experience with security incident response, including developing incident response plans and conducting post-mortems.
- Proficiency in at least one programming language (Python, Go, Java, etc.) for automation and tooling.
- Proficiency in infrastructure-as-code tools (e.g., Terraform) and CI/CD platforms (e.g., GitHub Actions, Jenkins).
- Excellent communication and collaboration skills with the ability to work effectively in a fast-paced environment.
Good to have
- Relevant certifications (AWS Security Specialty, CISSP, CEH, Security+).
- Experience with AI-driven security tools for anomaly detection.
- Experience with Zero Trust principles and implementations.
- Experience in securing PHP - Laravel/Symfony, JS - NuxtJS applications.
- Proficiency in network security, firewall management, VPNs, and network segmentation.
- Contributions to open-source security projects or communities.
- Experience in the telecommunications industry with knowledge of eSIM and GSMA technologies.
If you are interested in this position, please apply via the link. Please note that our Platform team works in the CET timezone, so candidates will need to reside in countries with the same time zone or similar to it and will need to already have permit to work in the country where they are based.
By applying, you acknowledge and agree that, in case of successful application, Airalo may request to run background checks as a condition for entering into an agreement with you. Rest assured that these checks will only occur upon your prior consent and at the end of the selection process, and will be strictly limited to what is allowed under the laws that are applicable to you. All data that you share or that we collect in connection with such checks will be processed in accordance with our Privacy Policy.
We sincerely thank all applicants in advance for submitting their interest in this opportunity. Airalo is an equal-opportunity employer and values diversity, equity & inclusion. We do not discriminate on the basis of race, religion, national origin, gender, sexual orientation, age, marital status, veteran status, or disability status. We are committed to providing reasonable accommodations upon request for individuals with disabilities throughout our job interview process.
Senior DevSecOps Engineer employer: Airalo
Contact Detail:
Airalo Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Senior DevSecOps Engineer
✨Tip Number 1
Network like a pro! Reach out to folks in the industry, attend meetups, and connect with current employees at Airalo. A friendly chat can sometimes lead to opportunities that aren’t even advertised!
✨Tip Number 2
Show off your skills! If you’ve got a portfolio or GitHub repo, make sure it’s up to date. Share projects that highlight your DevSecOps expertise, especially those involving cloud security and automation.
✨Tip Number 3
Prepare for the interview by brushing up on your technical knowledge and soft skills. Be ready to discuss your experience with AWS, Kubernetes, and security best practices. Remember, they want to see how you think and solve problems!
✨Tip Number 4
Apply through our website! It’s the best way to ensure your application gets seen. Plus, it shows you’re genuinely interested in joining the Airalo team. Don’t miss out on this chance!
We think you need these skills to ace Senior DevSecOps Engineer
Some tips for your application 🫡
Tailor Your CV: Make sure your CV is tailored to the Senior DevSecOps Engineer role. Highlight your experience with cloud security, CI/CD pipelines, and any relevant programming languages. We want to see how your skills align with what we're looking for!
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Share your passion for security and how you can contribute to our mission at Airalo. Be authentic and let us know why you're excited about this opportunity.
Showcase Your Projects: If you've worked on any relevant projects, especially those involving security solutions or automation, make sure to mention them. We love seeing real-world applications of your skills, so don’t hold back!
Apply Through Our Website: We encourage you to apply directly through our website. It’s the best way to ensure your application gets into the right hands. Plus, it shows us that you’re keen on joining our team!
How to prepare for a job interview at Airalo
✨Know Your Stuff
Make sure you brush up on your technical skills, especially around DevSecOps practices and cloud security. Be ready to discuss your hands-on experience with AWS, Kubernetes, and security tools. They’ll likely ask you about specific scenarios where you’ve implemented security measures, so have some examples ready!
✨Show Your Team Spirit
Airalo values collaboration, so be prepared to talk about how you’ve worked in teams before. Share examples of how you’ve fostered a culture of shared responsibility for security within your previous roles. Highlight your communication skills and how you’ve mentored others in DevSecOps principles.
✨Be Ready for Real-World Scenarios
Expect questions that test your problem-solving skills. They might present you with a hypothetical security incident and ask how you would respond. Think through your approach to threat modelling and vulnerability assessments, and be ready to explain your thought process clearly.
✨Cultural Fit Matters
Airalo is all about authenticity and kindness, so let your personality shine through! Be honest about your experiences and show that you’re not just a tech whiz but also someone who values diversity and inclusion. Share how you’ve embraced cultural differences in your work environment.