Engineering & Technology
Senior
Poland

Senior DevOps Engineer (Vulnerability Management + Security)

About the role

This role supports and secures customer’s public cloud environments as the firm evolves from a predominantly Azure-based footprint into a multi-cloud operating model with increasing adoption of Google Cloud Platform (GCP) and Oracle Cloud Infrastructure (OCI).

The Public Cloud Security Engineer serves as a senior technical leader responsible for identifying, engineering, and operating cloud-native vulnerability and exposure management capabilities across public cloud platforms. The role focuses on reducing systemic risk by detecting control breaks, insecure configurations, and exploitable vulnerabilities before they result in incidents — while ensuring security tooling scales with cloud adoption rather than slowing it down.

This position sits at the intersection of cloud engineering, security engineering, and reliability, with accountability for designing, onboarding, and operating security platforms that protect cloud workloads in a highly regulated environment.

Responsibilities

  • Vulnerability management, including experience in remediating vulnerabilities and leading a team
  • Experience in prioritizing team tasks
  • Public cloud environments including Microsoft Azure (primary/incumbent platform), Google Cloud Platform (GCP) for emerging data, platform, and AI workloads, Oracle Cloud Infrastructure (OCI) for strategic and regulated workloads, Multi-region cloud architectures supporting production, pre-production, and development environments, shared responsibility security models across infrastructure, platform, and application layers
  • Cloud vulnerability management across compute, container, platform, and managed services
  • Detection of misconfigurations, control drift, and insecure cloud patterns
  • Exposure management spanning identity, network, data, and workload layers
  • Engineering control-break detection techniques for cloud environments
  • Reducing systemic risk through automation, standardization, and preventative controls
  • Cloud-native and enterprise security platforms, including: vulnerability scanning and posture management tools, SIEM and centralized logging platforms, endpoint and workload protection technologies (EDR/XDR), packet capture and network visibility tooling where required
  • Integration of security platforms via APIs into cloud and DevOps workflows
  • Configuration management and automation across large-scale security platforms
  • Infrastructure as Code (IaC) and configuration management for security controls
  • Terraform and cloud-native tooling to enforce secure-by-default patterns
  • CI/CD and DevSecOps integrations to shift vulnerability detection left
  • Python-based scripting and automation for control validation and respons
  • Lead the engineering, onboarding, and production support of cloud security and vulnerability management platforms
  • Design and operate security controls that support Azure today while scaling into GCP and OCI
  • Detect, analyze, and remediate cloud vulnerabilities, misconfigurations, and control gaps
  • Engineer control-break detection techniques to identify systemic security failures early
  • Own the architecture, deployment, and lifecycle management of cloud security platforms
  • Define and measure security-focused SLIs and SLOs in partnership with stakeholders
  • Contribute to incident response, mitigation, and post-incident reviews from a cloud security perspective
  • Partner with cloud engineering teams to embed security controls into platform design
  • Research, evaluate, and recommend cloud security technologies aligned to customer’s risk posture
  • Mentor and develop junior security engineers, promoting strong engineering discipline and operational excellence
  • Apply SRE principles to security platforms to reduce outages and operational friction
  • Participate in system design, platform management, and capacity planning
  • Ensure audit-ready documentation, operational hygiene, and clear escalation paths
  • Maintain a strong understanding of enterprise risk culture, control frameworks, and risk reduction techniques

Requirements

  • Bachelor’s degree in Computer Science, Information Systems, or equivalent engineering experience
  • Senior-level experience engineering and operating security platforms in public cloud environments
  • Strong hands-on experience with Azure, plus exposure to GCP and/or OCI
  • Deep experience in vulnerability management, configuration assessment, and exposure reduction
  • Proficiency in Python for security automation and tooling
  • Experience operating large-scale distributed systems in regulated environments
  • Strong understanding of UNIX/Linux internals, networking, and cloud infrastructure
  • Financial services or highly regulated industry experience
  • Experience integrating security platforms using APIs
  • Familiarity with SIEM query languages (e.g., Splunk SPL, SQL-based analytics)
  • Experience with DevSecOps and CI/CD security integrations
  • Exposure to containerized and Kubernetes-based environments
  • Experience applying AI/ML techniques to security analytics or detection

SoftServe is an equal opportunity employer. Qualified applicants will receive consideration regardless of race, color, ancestry, ethnicity, national origin, religion, sex, sexual orientation, gender identity or expression, age, citizenship, disability, health condition, marital or family status, veteran status, or any other characteristic protected by applicable law.

#LI-Remote

Role Summary

Location

Poland

Work type

Remote/Office

Direction

Engineering & Technology

Subdirection

Cybersecurity

Tech level

Senior

Personal recruiter:

Alina Shabratska

Personal recruiter

Apply Now

Fill out the form, and we'll be in touch shortly.

CV/Resume in English will speed up its processing time
Upload file

About us

We are a digital engineering and technology consulting company where expertise grows alongside people. For more than 30 years, we have been elevating technology: helping organizations navigate complex business challenges by combining deep engineering knowledge with thoughtful, research-backed innovation. Our teams work across key areas: digital engineering, data and analytics, Сloud, and AI/ML. In each, we deliver practical, scalable solutions rooted in real business needs and measurable human impact.

You bring your perspective and ambition. We create an environment where your work meets clarity, confidence, and purpose.

About us

We offer

Flexible work model

Work from home, from the office, or in a hybrid format that supports focus and collaboration.

Compensation & Benefits

Competitive, market-based pay, benchmarked by role and location — plus health coverage, paid time off, wellness support, and learning opportunities.

People-first Leadership

Approachable leaders who communicate openly, keep teams close to the strategy, and support long-term planning.

Advanced tech communities

Stay close to AI/ML, Cloud, Quantum Computing, IoT, and Robotics communities, with projects built on modern frameworks.

More opportunities available

Browse all open positions to find the best fit for your experience.

Browse all positions
102302