Madrid
ppThetaRay provides AI-driven anti-financial crime technology used by global banks and fintechs to detect money laundering and financial crimes. /p pOur Madrid office is a key RD hub with 50+ team members across engineering, data, and customer delivery, working closely with strategic customers across the region. /p pWe are looking for a bDevSecOps Engineer /b to join our global engineering team and help strengthen the security, reliability, and compliance posture of our cloud-native AML platform. /p pThe ideal candidate has hands‑on experience with Kubernetes‑based environments, vulnerability management, secure CI/CD practices, Linux systems, and security tooling. This role requires strong technical ownership, a proactive security mindset, and the ability to collaborate effectively with engineering, DevOps, security, and global teams. /p h3Key Responsibilities /h3 ul liIdentify, analyze, prioritize, and remediate security vulnerabilities, including CVEs in containers, application dependencies, and infrastructure components. /li liWork closely with engineering and DevOps teams to fix vulnerabilities across CI/CD pipelines, container images, Kubernetes workloads, and cloud infrastructure. /li liSupport and secure Kubernetes environments, preferably Azure Kubernetes Service (AKS), with experience in OpenShift Container Platform (OCP) considered an advantage. /li liImplement and maintain security controls across cloud‑native platforms, including container security, image scanning, runtime security, and Kubernetes hardening. /li liWork with Static Code Analysis / SAST tools to identify code‑level security risks and help development teams remediate findings. /li liWork with CSPM tools to detect and resolve cloud security misconfigurations. /li liAutomate security, compliance, and operational tasks using Bash and other scripting tools. /li liSupport secure software delivery processes, including CI/CD security gates, vulnerability scans, policy enforcement, and compliance checks. /li liCollaborate with global teams across different time zones to support security initiatives, incident response, and platform improvements. /li liPromote DevSecOps best practices and help embed security into the software development lifecycle. /li /ul h3Requirements /h3 ul liProven experience as a DevSecOps Engineer, DevOps Engineer with security focus, Cloud Security Engineer, or similar role. /li liHands‑on experience handling CVEs, vulnerability remediation, patching, dependency upgrades, and risk prioritization. /li liStrong experience with Kubernetes, preferably AKS; experience with OCP / OpenShift is a strong advantage. /li liStrong hands‑on experience with Linux systems, including troubleshooting, hardening, package management, permissions, services, networking, and logs. /li liSolid experience writing and maintaining Bash scripts. /li liExperience with Static Code Analysis tools such as SonarQube, Checkmarx, Veracode, Snyk Code, Semgrep, or similar. /li liExperience with CSPM tools such as Prisma Cloud, Wiz, Microsoft Defender for Cloud, Orca, Lacework, or similar. /li liFamiliarity with container security tools and practices, including image scanning, base image management, secrets handling, and Kubernetes security policies. /li /ul h3Preferred Qualifications /h3 ul liExperience working in a financial services, fintech, AML, compliance, or regulated SaaS environment. /li liFamiliarity with security standards and frameworks such as CIS Benchmarks, OWASP, NIST, ISO. /li liExperience with Infrastructure as Code tools such as Terraform, Helm, Helmfile, Kustomize, or ArgoCD. /li liKnowledge of SIEM, audit logging, and security monitoring platforms. /li /ul h3Personal Skills /h3 ul liStrong team player with excellent collaboration skills. /li liAble to work effectively with global and cross‑functional teams. /li liProactive, responsible, and detail‑oriented. /li liStrong problem‑solving skills and ability to drive issues to resolution. /li liGood communication skills in English, both written and verbal. /li liSecurity‑minded approach with a willingness to learn and continuously improve. /li /ul /p #J-18808-Ljbffr