DevSecOps Engineer, KRAKÓW

For one of our Clients operating in the global financial services sector, we are seeking talented professionals to join long-term strategic initiatives.

Ideal candidate should have:

  • 7+ years engineering; 3+ in CI/CD platform or DevSecOps.
  • Strong Jenkins + Groovy shared library expertise.
  • Advanced Python automation (JSON/YAML processing, tooling scripts).
  • Deep Maven/NPM/Python packaging knowledge; exposure to Helm/Terraform and container image metadata.
  • Supply-chain security (SLSA, CycloneDX SBOM, digests).
  • Experience with SonarQube, Sonatype IQ, container and SAST scanning.
  • Proven performance tuning (caching, parallelization, dependency pruning).
  • Compliance Awareness.

ABOUT SYNECHRON

At Synechron, we believe in the power of digital to transform businesses for the better. Our global consulting firm combines creativity and innovative technology to deliver industry-leading digital solutions. Synechron’s progressive technologies and optimization strategies span end-to-end Artificial Intelligence, Consulting, Digital, Cloud & DevOps, Data, and Software Engineering, servicing an array of noteworthy financial services and technology firms. Through research and development initiatives in our Synechron Labs we develop solutions for modernization, from Artificial Intelligence and Blockchain to Data Science models, Digital Underwriting, mobile-first applications and more. Over the last 20+ years, our company has been honored with multiple employer awards, recognizing our commitment to our talented teams. With top clients to boast about, Synechron has a global workforce of 14,000+, and has 55 offices in 20 countries within key global markets. ,[Design and maintain Groovy pipeline steps (build, test, package, scan, deploy)., Extend Python tooling for SLSA provenance, SBOM generation, hash/digest accuracy, and security scan aggregation (SonarQube, Sonatype IQ,, SAST/Container)., Optimize performance (parallel builds, caching, scope-reduced BOMs, dependency prefetch)., Ensure artifact integrity (correct SHA1/SHA256 mapping, reproducible inputs, evidence modeling)., Refactor legacy scripts (remove global state, consolidate hashing, standardize templates)., Document ci-config.yaml standards and usage patterns., Mentor engineers on secure pipeline development and supply-chain practices., Troubleshoot and prevent pipeline incidents.] Requirements: Python, Jenkins, Groovy, CI/CD, Maven, SonarQube, Cosing, OCI, Terraform, Helm, GitOps, GCP, AWS
Data publikacji: 2026-07-15
APLIKUJ