Details of the offer

We're searching for a proactive and experiencedDevSecOps Engineerwho thrives on solving complex information security issues and building innovative security processes from the ground up. At Xsolla, you'll have the chance to implement secure practices, enhance CI/CD pipelines, and collaborate closely with DevOps and Developer teams to ensure our infrastructure and development processes are secure and scalable. You'll be responsible for automating security measures, driving process improvements, and staying ahead of infrastructure vulnerabilities. If you're passionate about Linux administration, cloud infrastructure, and implementing cutting-edge security solutions, this is your opportunity to leave your mark in the dynamic world of gaming. Join us and be a key player in securing the future of our digital infrastructure!RESPONSIBILITIESImplement and maintain secure software development lifecycle (S-SDLC) processes.
Conduct internal audits of the company's infrastructure and perimeter security.
Develop and automate Infrastructure as Code (IaC) and Policy as Code practices.
Enhance CI/CD pipelines with robust security measures and tools, including SAST and DAST.
Collaborate with product development, DevOps, and IT teams to identify vulnerabilities and implement process improvements.
Research, introduce, and integrate new tools tailored to our infrastructure needs.
Present and drive process improvement plans for the development teams, influencing secure coding practices.
Participate in security architecture assessments for new services and support teams in containerizing applications.
Conduct and develop training events to educate developers on security best practices.
REQUIREMENTSStrong expertise inLinux administrationandGitlab CI/CD .
Hands-on experience with popularCI/CD security tools(SAST, DAST, etc.).
Familiarity withcontainerization technologieslike Docker and Kubernetes (k8s), with an understanding of concepts such as ingress, pods, and services.
Knowledge ofcloud infrastructure providers(GCP, AWS, Azure) and experience securing cloud environments.
Ability to configure and debugNginx —understanding of the difference between proxy_pass and upstream, and how HTTP protocols andTLS/SSLwork.
Knowledge ofPHPand its integration within secure pipelines is a plus.
Ability to collaborate and influence cross-functional teams, particularly DevOps and Developers.
Familiarity with typicalinfrastructure attacksand a solid understanding of threats vs. risks.
Self-starter with strong initiative, ready to experiment with and explore new tools and technologies.
Excellent communication skills to advocate for security improvements across teams.
Upper-intermediate oral communication in English or higher.
BENEFITS:Convenient work tools:
Latest Mac workplaces + additional hardware to make you more effective at work
Google Chat, Gmail, Google Drive, Confluence, Jira, GitLab
Professional growth:
Free training and participation in specialized conferences
Rich knowledge exchange within the company
More perks:
Health insurance
Flexible hours: organize your day according to your needs and sprint & teamwork demands
No dress code
Comfortable and new office environment
ABOUT XSOLLAXsolla is a video game commerce company powered by Transaction Engine and Business Engine that helps developers and publishers market, sell, connect, and optimize their games globally. The engines work seamlessly together to solve the complexities of distribution, marketing, and monetization so partners can increase their audience, sales, and revenue. For more information, please visitwww.xsolla.com .PHYSICAL DEMANDSThe physical demands for this position are sitting, standing, bending, lifting, and moving intermittently during working hours. These physical requirements may be accomplished with or without reasonable accommodations.
The duties of this position may change from time to time so the individual and organization can achieve their results. This job description is intended to describe the general level of work being performed. It is not intended to be all-inclusive. Xsolla KL Sdn Bhd takes your privacy very seriously, and will not sell or externally distribute any data received during the hiring process. Pursuant to the Personal Data Protection Act 2010 ("PDPA"), Xsolla KL Sdn Bhd is mindful and committed to the protection of your personal information and your privacy. Please direct any inquiries regarding your data privacy to ******.#J-18808-Ljbffr


Nominal Salary: To be agreed

Requirements

My - System Support Specialist (Risk Management)

Key Responsibilities: Liaise with various departments on all aspects of client trading Performing settings in MT4 Administrator and relevant systems Preparin...


Zeal Group - Kuala Lumpur

Published a month ago

Filenet Developer

Job Description: Job Title: FileNet Developer Job Mode: Contract Key Responsibilities: Design, develop, and implement custom FileNet applications and soluti...


Vdart Software Services Pvt. Ltd. - Kuala Lumpur

Published a month ago

Master Data Management Specialist

We never ask for payment as part of our selection process, and we always contact candidates via our corporate accounts and platforms. If you are approached f...


Tmf Group - Kuala Lumpur

Published a month ago

Ai Filmmaker (100% Remote - Apac)

Join Tether and Shape the Future of Digital FinanceAt Tether, we're not just building products, we're pioneering a global financial revolution. Our cutting-e...


Tether Operations Limited - Kuala Lumpur

Published a month ago

Built at: 2024-12-29T01:02:38.268Z