> Markdown version of [/jobs/ext/1371685-devsecops-cloud-security](https://www.wearedevelopers.com/jobs/ext/1371685-devsecops-cloud-security). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # DevSecOps Cloud Security - **Company:** Checkmk GmbH - **Location:** München, Germany (Remote available) - **Experience:** Experienced - **Contract:** Permanent contract - **Skills:** Kubernetes Security, Amazon Web Services, Software as a Service, Cloud Computing Security, Computer Networks, DevOps, Identity and Access Management, Software Deployment, Software Vulnerability Management, Kubernetes, Terraform, Devsecops - **Published:** July 22, 2026 - **Apply:** https://www.adzuna.de/details/5727271331 ## About the Role * The Experience: 4+ years in DevOps/SRE, with a clear specialization in Cloud Security for high-availability SaaS products. * AWS Power User: You have a proven track record of securing complex AWS environments. You know how to leverage AWS-native security tools to their full potential without creating friction for developers. * Infrastructure-as-Code: You are an expert in Terraform, believing that if a security policy isn't in code, it doesn't exist. * Container & K8s Depth: Deep knowledge of the CNCF security landscape - you know how to protect the cluster, the pod, and the code. * Collaborative Leadership: You are a "Security Builder and Enabler," not a "Security Blocker." You enjoy teaching others and building consensus on technical standards. * Analytical Mindset: You enjoy the "chess game" of security - anticipating risks before they manifest and building systems that fail safely. * Language: Business fluent English; German is a plus. ## Description Checkmk is bringing its industry-leading monitoring solution to the cloud. We have built a robust, cloud-native foundation on AWS, and we are now looking for a DevSecOps specialist to lead the next phase of our security evolution. In this role, you won't be building from a blank slate. Instead, you will partner with our senior software and operations engineers to harden, automate, and scale our existing security frameworks. You are the expert who will move us to "world-class resilience." * Lead the Security Evolution: Take ownership of our security roadmap, moving from a developer-led security model to a specialized, automated DevSecOps practice. * Advanced AWS Hardening: Deepen our infrastructure security by implementing advanced AWS configurations (e.g., Service Control Policies, refined IAM boundaries, and specialized GuardDuty/Macie integration). * Automate the "Shift-Left": Integrate sophisticated security gates into our existing CI/CD pipelines, ensuring that hardening is a silent, automated partner to our deployment process. * Kubernetes Security Specialist: Enhance our EKS security posture, implementing advanced network policies, runtime security, and automated vulnerability remediation. * Bridge the Gap: Act as the primary consultant for the engineering team, helping to balance rapid feature development with high-assurance security standards. ## Related Videos - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [DevSecOps: Injecting Security into Mobile CI/CD Pipelines](https://www.wearedevelopers.com/videos/273-devsecops-injecting-security-into-mobile-ci-cd-pipelines) - [Infrastructure as Code: The Developer's Secret Weapon](https://www.wearedevelopers.com/videos/1221-infrastructure-as-code-the-developer-s-secret-weapon) - [From DevOps to Scaled DevOps: How We’re Rebuilding Continuous Delivery as a Platform](https://www.wearedevelopers.com/videos/100018-from-devops-to-scaled-devops-how-we-re-rebuilding-continuous-delivery-as-a-platform) - [DevSecOps: Security in DevOps](https://www.wearedevelopers.com/videos/36-devsecops-security-in-devops) - [DevSecOps culture](https://www.wearedevelopers.com/videos/783-devsecops-culture) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Dev Digest 121 - AI goes offline](https://www.wearedevelopers.com/magazine/456-dev-digest-121-ai-goes-offline) - [Dev Digest 120 - Apple and peers](https://www.wearedevelopers.com/magazine/455-dev-digest-120-apple-and-peers) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [The Biggest German Tech Companies](https://www.wearedevelopers.com/magazine/424-the-biggest-german-tech-companies) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated)