DevSecOps & Infrastructure Security Engineer
Bu işi kaydedin ve aramanızı düzenli tutun
İşleri kaydetmek, uyarılar oluşturmak ve kontrol panelinizden bu listeye geri dönmek için ücretsiz bir hesap oluşturun.
I
- Who We Are?
New Mind AI is an innovative and pioneering company specializing in leveraging big data through a comprehensive and holistic approach. From data digitization and classification to deriving meaningful insights and extracting actionable outputs, we employ advanced taxonomies and ontologies to organize data in a structured and insightful manner, creating a semantic layer to better understand corporate data. Our mission extends beyond mere data structuring; we empower companies to transform their data into actionable insights, facilitating dynamic corporate governance. With over 300 task-oriented and domain-specific AI models, built using an orchestration of experts framework, we provide robust solutions for dynamic corporate governance. By implementing dynamic knowledge network structures, we develop advanced AI models that ensure effective management of corporate data in a business world. Our expertise spans AI-driven business solutions, including AI legal tech products, excelling in natural language processing, deep learning, machine learning, data analysis, and data visualization. Headquartered in YTÜ Teknopark, Maslak, Istanbul, and operating four specialized laboratories—Data Visualization Lab in India, Data Taxonomy Lab in Bomonti, and Big Data and Legal Tech Labs in Maslak—we are leaders in big data analysis in Türkiye and beyond. Our flagship dynamic knowledge management platforms, Mecellem, Malumat, and Mahfuz, empower professionals across various industries by streamlining complex tasks, optimizing decision-making, and managing business risks with precision. Through our cutting-edge AI tools, including Generative AI, LLMs, text-to-speech and speech-to-text, image recognition, voice recognition, function call, graphRAG, OCR, blockchain and RAG, we set new standards in business technology. We deliver smarter, more dynamic solutions for the business world, both in Türkiye and internationally.
II
- Who We Are Looking For?
We are looking for an experienced DevSecOps & Infrastructure Security Engineer to strengthen the security of our SaaS platforms, enterprise customer on-premises deployments, Kubernetes/OpenShift environments, CI/CD pipelines, and production infrastructure. The ideal candidate will have 5+ years of experience and go beyond operating security tools or merely forwarding vulnerability reports. We expect someone who can assess systems from a security perspective, proactively identify risks, propose practical solutions, and take end-to-end ownership of security initiatives. You must be comfortable challenging existing architectures when necessary, evaluating potential attack scenarios, and providing technically sound security guidance to engineering teams.
III
- What Will Be Your Responsibilities?
(i) DevSecOps & Secure SDLC: Integrate and continuously improve security controls across CI/CD pipelines, implement SAST, SCA, secret scanning, container/IaC scanning, and SBOM processes, and build automated security gates to prevent risks from reaching production. (ii) Kubernetes & OpenShift Security: Perform security assessments of Kubernetes/OpenShift environments, improve RBAC, Pod Security Standards, NetworkPolicy, and namespace isolation controls, and implement Policy-as-Code using tools like Kyverno or OPA Gatekeeper. (iii) Infrastructure & Network Security: Perform security hardening of Linux production systems, assess network segmentation, implement TLS/mTLS, PKI, and certificate lifecycle processes, and contribute to Zero Trust and Least Privilege architectures. (iv) IAM, PAM & Secrets: Review authentication and authorization mechanisms, integrate and operate secrets-management solutions (e.g., CyberArk, HashiCorp Vault), and implement secure secret distribution and rotation processes to prevent credential exposure. (v) SaaS & On-Premises Security: Assess SaaS environments for tenant isolation and data-access risks, evaluate blast radius and lateral-movement scenarios, and define security requirements for enterprise customer on-premises deployments. (vi) Vulnerability Management & Incident Response: Prioritize vulnerabilities based on exploitability, business impact, and compensating controls rather than just CVSS scores, investigate suspicious events, and actively participate in technical incident analysis and root-cause analysis. (vii) Security Architecture: Review new services and infrastructure designs, analyze attack surfaces and trust boundaries, participate in threat-modeling activities, and validate the actual effectiveness of implemented security controls.
IV
- What Is Required from You?
(i)
Experience:
5+ years of professional experience in DevSecOps, Infrastructure Security, Platform Security, Cloud Security, or related fields. (ii) Technical Expertise: Strong Linux and network-security knowledge, accompanied by production experience with Kubernetes and/or OpenShift, as well as hands-on experience w