Posted today · Greenhouse · capco✓ Direct employer / ATS application
DevSecOps Engineer (AWS/Azure)
Capco
Role details
What you’ll be doing
CAPCO POLAND *We are looking for Poland based candidate. At Capco Poland, we’re not just another consultancy - we’re the spark behind digital transformation in the financial world. As a global leader in technology and management consulting, we thrive on helping clients tackle the toughest challenges across banking, payments, capital markets, wealth, and asset management. Role Overview We are looking for a DevSecOps Engineer to provide support for our client in the insurance sector, helping embed security into cloud infrastructure and delivery processes. You will work across AWS and Azure, combining Infrastructure as Code, automation, CI/CD security, and developer enablement to build secure-by-default, scalable cloud environments. Key Responsibilities Policy-as-Code & Guardrails: Write, test, and deploy automated policy guardrails using Infrastructure as Code (IaC) linting and scanning tools (e.g., Checkov, Tfsec, OPA/Rego) to catch misconfigurations before they reach production. Multi-Cloud Automation: Build and manage highly available infrastructure across AWS and Azure using Infrastructure as Code (Terraform). Security Product Deployment: Automate the baking of EDR agents, vulnerability scanners, and monitoring tools into base machine images (AMIs, Azure Golden Images) and containerized base environments reps. Develop software distribution solution with cloud native tooling (Azure extension, AWS SSM) Developer Enablement: Serve as a bridge between Security and Engineering, providing developer-friendly remediation guidance and creating reusable, secure-by-default code templates (Terraform modules, Helm charts). Required Skills & Qualifications Experience: 3+ years in a cloud operations or infrastructure role managing production environments in both AWS and Azure. Tools: Deep familiarity with Terraform and scripting languages (Python, Bash, or PowerShell). DevSecOps & CI/CD Pipelines: Deep, practical experience constructing and securing automated build/release pipelines at scale. Multi-Cloud Platforms: Hands-on engineering experience configuring native security services and access controls in both AWS and Azure. Infrastructure as Code (IaC): Advanced proficiency with Terraform or cloud-native tooling (Bicep, CloudFormation), focusing on modular design and immutable infrastructure) We offer a flexible collaboration model based on a B2B contract, with the opportunity to work on diverse projects. #LI-REMOTE