> Markdown version of [/jobs/ext/2704998-devsecops-cloud-security](https://www.wearedevelopers.com/jobs/ext/2704998-devsecops-cloud-security). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # DevSecOps Cloud Security - **Company:** Checkmk GmbH - **Location:** München, Germany (Remote available) - **Experience:** Experienced - **Contract:** Permanent contract - **Skills:** Kubernetes Security, Amazon Web Services, Software as a Service, Cloud Computing Security, Computer Networks, DevOps, Identity and Access Management, Software Deployment, Software Vulnerability Management, Kubernetes, Terraform, Devsecops - **Published:** September 4, 2026 - **Apply:** https://www.adzuna.de/details/5851018299 ## About the Role * The Experience: 4+ years in DevOps/SRE, with a clear specialization in Cloud Security for high-availability SaaS products. * AWS Power User: You have a proven track record of securing complex AWS environments. You know how to leverage AWS-native security tools to their full potential without creating friction for developers. * Infrastructure-as-Code: You are an expert in Terraform, believing that if a security policy isn't in code, it doesn't exist. * Container & K8s Depth: Deep knowledge of the CNCF security landscape - you know how to protect the cluster, the pod, and the code. * Collaborative Leadership: You are a "Security Builder and Enabler," not a "Security Blocker." You enjoy teaching others and building consensus on technical standards. * Analytical Mindset: You enjoy the "chess game" of security - anticipating risks before they manifest and building systems that fail safely. * Language: Business fluent English; German is a plus. ## Description * Lead the Security Evolution: Take ownership of our security roadmap, moving from a developer-led security model to a specialized, automated DevSecOps practice. * Advanced AWS Hardening: Deepen our infrastructure security by implementing advanced AWS configurations (e.g., Service Control Policies, refined IAM boundaries, and specialized GuardDuty/Macie integration). * Automate the "Shift-Left": Integrate sophisticated security gates into our existing CI/CD pipelines, ensuring that hardening is a silent, automated partner to our deployment process. * Kubernetes Security Experience: Enhance our EKS security posture, implementing advanced network policies, runtime security, and automated vulnerability remediation. * Bridge the Gap: Act as the primary consultant for the engineering team, helping to balance rapid feature development with high-assurance security standards. ## Related Videos - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [DevSecOps: Injecting Security into Mobile CI/CD Pipelines](https://www.wearedevelopers.com/videos/273-devsecops-injecting-security-into-mobile-ci-cd-pipelines) - [Infrastructure as Code: The Developer's Secret Weapon](https://www.wearedevelopers.com/videos/1221-infrastructure-as-code-the-developer-s-secret-weapon) - [From DevOps to Scaled DevOps: How We’re Rebuilding Continuous Delivery as a Platform](https://www.wearedevelopers.com/videos/100018-from-devops-to-scaled-devops-how-we-re-rebuilding-continuous-delivery-as-a-platform) - [DevSecOps: Security in DevOps](https://www.wearedevelopers.com/videos/36-devsecops-security-in-devops) - [DevSecOps culture](https://www.wearedevelopers.com/videos/783-devsecops-culture) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Dev Digest 121 - AI goes offline](https://www.wearedevelopers.com/magazine/456-dev-digest-121-ai-goes-offline) - [Dev Digest 120 - Apple and peers](https://www.wearedevelopers.com/magazine/455-dev-digest-120-apple-and-peers) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [The Biggest German Tech Companies](https://www.wearedevelopers.com/magazine/424-the-biggest-german-tech-companies)