Senior DevSecOps Engineer

Sports Careers โ€” Poland ยท Posted ~1 day ago

๐Ÿ”“ Log in to save this job, tailor your resume & track your apply process โ€” 7 days free, no card needed.

Log in to add to target list

Description

About Sportradar Sportradar is the world's leading sports technology company, creating immersive experiences for sports fans and bettors through innovation and technology. Our solutions power hundreds of sports organizations, media companies, betting operators and sports federations worldwide. At Sportradar, security is a critical enabler of our products, infrastructure and business operations. As our engineering landscape continues to evolve, we are strengthening our DevSecOps capabilities to ensure security is embedded into every stage of software delivery. The Challenge We are looking for a Senior DevSecOps Engineer to join our Information Security organisation in Warsaw. This role sits at the intersection of Security, Platform Engineering and Software Development. You will be responsible for integrating security controls into engineering workflows, enabling developers to build securely, improving cloud and Kubernetes security posture, and driving risk-based vulnerability management across our technology landscape. You will work closely with Platform Engineering, Central Engineering and development teams to ensure security becomes a seamless part of the Software Development Lifecycle rather than a gate at the end of the process. This is not a traditional operational security position. We are looking for someone who can combine security expertise with engineering thinking and help us scale secure development practices across the organisation. What You'll Be Part Of You will join a multidisciplinary Information Security team that partners closely with Engineering, Platform and Product teams to help Sportradar build secure-by-design solutions at scale. Our team collectively owns a broad range of security capabilities spanning DevSecOps, cloud security, application security, security tooling and vulnerability management. No individual is expected to lead every area. You will contribute your expertise, collaborate across disciplines and help drive improvements where your strengths and interests can have the greatest impact. Depending on your experience and the team's priorities, you will contribute to initiatives across the following areas: Secure SDLC & DevSecOps Contribute to the implementation of Secure Software Development Lifecycle practices across engineering teams.Help embed security controls and automated security testing into CI/CD pipelines.Help ensure security requirements are integrated into development processes from design through deployment.Partner with engineering teams to enable secure-by-design application development.Support security automation and continuous improvement across software delivery pipelines. Cloud & Kubernetes Security Support the development and enhancement of cloud security posture management capabilities.Work with engineering teams to secure AWS-based environments and cloud-native platforms.Contribute to improving Kubernetes security posture through the implementation of security controls, monitoring and best practices.Assess cloud security risks and provide practical remediation guidance. Vulnerability Management Support risk-based vulnerability management activities across applications and infrastructure.Analyse vulnerability findings, determine business risk and establish remediation priorities.Partner with engineering teams to ensure vulnerabilities are remediated effectively and within agreed timelines.Contribute to scalable processes for vulnerability identification, triage and reporting. Application Security Contribute application security guidance throughout the development lifecycle.Support engineering teams with secure coding practices and remediation recommendations.Work as a trusted security partner on security design decisions and implementation approaches.Contribute to security awareness and developer enablement initiatives. Security Engineering & Tooling Contribute to the management and enhancement of security tooling integrated within development and operational environments.Evaluate existing and future security platforms and identify opportunities for optimisation.Work with tools and technologies such as GitLab, SonarQube, Mend, Tenable, Sysdig and related solutions.Support proof-of-concept activities, platform integrations and security automation initiatives. About You You have a strong engineering mindset combined with practical security expertise and the ability to influence stakeholders across a complex technology organisation. You bring: