Fox IT is a Portuguese IT consulting company, which has been ranked for the 5th consecutive year among the top 5% of SMEs in
Portugal and, for the first time, in the national Top 10 of the sector. Our mission is to bring a fairer approach to the IT market, promoting a more balanced exchange between us, our consultants, and our clients. More recently, we received the �Happy at Work� certification, which reinforces our commitment to continuing to value our people
We�re seeking for a Sr. Cloud DevSecOps for a security-related project (linked to the Anycloud initiative) or to expand our capacity within the devops as service project.
Responsibilities:
� Someone who can act as the upper intermediate/senior DevSecOps engineer in the analysis and refinement of existing IAM policies to enforce 'Least Privilege on each target cloud (AWS, Azure, GCP);
� Someone able to partner closely with security, software engineering and other DevOps teams to strengthen the overall security posture regarding IAM policies.
� Someone able to work with development teams (the service owners) to execute comprehensive QA validation to confirm that IAM policies function as expected (both functionally and performance-wise).
� Someone able to stay current with security trends, vulnerabilities, compliance regulations, and emerging tools to push for other work and security improvements.
Requirements:
� 3+ years of proven experience with cloud platforms (Azure, AWS, or GCP), with deep knowledge of identity, access management, and container security (Kubernetes), cloud networking, IAM policies, etc.
� Proficient in English spoken and written;
� Strong understanding of secure SDLC practices, DevSecOps, IaC (Terraform or equivalent) and integrating security into CI/CD pipelines.
� Hands-on skills in scripting/automation (Python, PowerShell, or similar) for security tasks.
� Excellent communication skills to explain technical security risks and solutions to development, DevOps, and product teams.
� Strong problem-solving mindset and a collaborative approach to resolving security concerns.
Nice to Have:
� Hands-on experience with Cloud Security Posture Management (CSPM) tools such as Prisma Cloud, Wiz.
� Knowledge of Application Security and SCA/SAST/DAST solutions, particularly Snyk
� Solid experience with container technologies like Docker and expertise in managing and optimizing Kubernetes clusters.
Regime: Remote ( 9:00 � 18:00 (Portugal Time))
What we offer:
� 26 days of vacation
� health insurance
� 50� as a birthday bonus
� Training
� Opportunity to develop your career
Take the Leap, Join Us!
Apply to