DevSecOps Lead

Quento Ict โ€” Greece ยท Posted ~1 day ago

Lead Full-time

Skills

CI/CD Cloud security DevOps Security automation Infrastructure operations Cloud Kubernetes

๐Ÿ”“ Log in to save this job, tailor your resume & track your apply process โ€” 7 days free, no card needed.

Log in to add to target list

Summary

A technology organization is seeking a DevSecOps leader to own secure delivery pipelines, operational standards, cloud security practices, and automation strategies for regulated digital platforms.

Highlights

Lead secure engineering practices and modern cloud delivery processes for critical digital platforms.

Description

Description At Quento Technologies S.A., the ICT arm of the Qualco Group, we deliver comprehensive and innovative solutions across AI, Digital Engineering, Cloud, and Cybersecurity, helping businesses accelerate digital transformation. With a presence in Greece, Luxembourg, and Belgium, and backed by the expertise of the Qualco Group, we combine deep technical knowledge with strategic partnerships to support business growth. At Quento Technologies S.A. we empower our people to innovate and lead in delivering transformative ICT solutions to our clients worldwide. Quento Technologies S.A. seeks a highly motivated and experienced DevSecOps Lead to own CI/CD, security, operational standards, and secure cloud-native delivery practices across a regulated digital payments platform. In this role, you will drive secure engineering pipelines, release automation, environment hardening, monitoring integration, vulnerability management, and operational controls. Your Responsibilities Will Entail Own and enforce DevSecOps standards across CI/CD pipelines, infrastructure, environments, deployments, and operational controls;Design, maintain, and improve CI/CD flows across Azure DevOps, container builds, artifact management, image scanning, Kubernetes deployments, Helm, and GitOps/ArgoCD where applicable;Ensure secure AKS operations, including identity integration, RBAC, private cluster principles, node pool separation, network policies, Key Vault integration, and container security controls;Embed security into the SDLC through code scanning, dependency scanning, container image scanning, secrets management, vulnerability remediation, and secure configuration management;Govern controls related to TLS, mTLS, SSL pinning, OAuth2, HTTP signatures, encryption, certificates, Key Vault, WAF, and firewall/network controls;Own observability standards including logging, metrics, alerting, health checks, incident routing, SIEM integration, and audit log forwarding;Work with security teams to integrate cloud security posture management, SIEM, WAF logs, AKS audit logs, API Management logs, Azure Activity logs, database logs, and firewall logs;Support production readiness, disaster recovery, high availability, rollback, environment consistency, and incident response preparation;Collaborate with Architects, Technical Leads, QA, Service Manager, and delivery teams to ensure secure, repeatable, and auditable releases;Ensuring that all activities and duties are carried out in full compliance with regulatory requirements and supporting the continued implementation of the Group Anti-Bribery and Corruption Policy.