DevOps & Security Engineer (100% Remote)
Role details
Job location
Tech stack
Job description
We're looking for a DevOps - part infrastructure wizard, part visionary. The successful candidate, who will have some years of experience in the field, will have the opportunity to define and drive the DevOps strategy of a future market leader in the BIM space. Tasks Execute DevOps strategy Execute neoBIM's DevOps strategy, combining strategic foresight with hands-on implementation. Integrate security by design Embed DevSecOps principles into every stage of development - from secure code scanning and dependency management to vulnerability assessment and threat modeling. Own the full infrastructure stack Oversee the end-to-end build and operation of neoBIM's infrastructure: from Linux servers, containers and cloud environments to databases and monitoring. Enable developer velocity Design CI/CD pipelines, automate workflows with GitHub Actions and ensure the engineering team can deliver quickly and safely. Drive Infrastructure as Code Use Terraform to manage and evolve scalable cloud infrastructure. Ensure reliability and performance Implement monitoring, alerting and incident response to keep our services resilient. Collaborate across teams Work closely with engineering, product and leadership to align DevOps with business goals.
Requirements
Linux - Solid understanding of Linux systems administration, shell scripting and performance tuning. Docker / Container Runtime - Expertise in building, running and maintaining containerized applications. AWS - Hands-on experience with core AWS services (EC2, S3, RDS, IAM, Lambda, etc.) to design scalable infrastructures. Postgres - Strong knowledge of PostgreSQL, including optimization, backup/restore and high availability setups. Vercel - Experience deploying modern web applications via Vercel, including CI/CD integration. Terraform - Advanced use of Infrastructure as Code to manage and scale cloud infrastructure reproducibly. GitHub (GIT + GitHub Actions) - Proven ability to set up and maintain repositories, branching strategies and automated workflows. Monitoring - Familiarity with tools such as Prometheus, Grafana or Datadog for metrics, alerting and observability. Jira / Atlassian - Experience in agile project tracking and integration with developer workflows. Monorepo build tools - turborepo - Understanding of monorepo management and build acceleration using turborepo or similar. AM & Access Control - Deep understanding of Identity and Access Management, enforcing least-privilege principles and secure role-based access across AWS and CI/CD systems. Vulnerability Scanning & Hardening - Experience integrating automated code and container scans (e.g. Trivy, Snyk, Dependabot) and applying system hardening best practices. Nice to have TypeScript - Ability to read and understand TypeScript code to better support developer teams. WebSockets - Knowledge of implementing real-time communication channels between client and server. Slack - Experience integrating infrastructure monitoring and automation alerts into Slack for team collaboration. Secrets Management - Hands-on use of tools like HashiCorp Vault, AWS Secrets Manager, or GitHub Encrypted Secrets for secure credentials handling.
Benefits & conditions
Attractive Compensation & Growth Path Strategic Ownership of High-Impact AI Initiatives Access to World-Class Infrastructure A Culture of Deep Tech and Real-World Application Flexibility with remote first work enviroment and a great team that shapes the future For any questions regarding this position, feel free to contact Felix directly via phone or messenger at +49 1769 54222094. neoBIM GmbH