Skip to content

Open nowPosted 60 days ago

DevSecOps Engineer

leafspace10 open roles

Where
Lomazzo, Italy
Work mode
Hybrid
Get the CV for this job

From $25 per CV, paid once. No subscription.

Your applicationOpen nowDevSecOps Engineerleafspace · Lomazzo, Italy
  1. YouYes, apply to this one.

  2. CV RocketCV written for this posting.

  3. 25 readersRecruiter, hiring manager, skeptic. Round after round.

  4. CV RocketApplied on leafspace's own form.

The reply lands in your private mailbox

3×more interviews than doing it yourself with ChatGPT.

The clock on this job

Early applications get read.

7.8% of postings close within 7 days. Measured by our own scanner across the market.

Share of postings closed within
  1. 1.7%1 day
  2. 3.5%3 days
  3. 7.8%7 days
  4. 14.6%14 days
  5. 34.1%30 days
This job: posted 60 days ago

The posting

DevSecOps Engineer

About Leaf Space

Leaf Space is a rapidly growing scale-up company and a leading provider of ground segment as-a-service (GSaaS) solutions. Our innovative and proprietary concept is focused on providing satellite and launch vehicle connectivity as-a-service, enabling clients to efficiently manage their assets and fully exploit data. Our GSaaS solutions have been recognized by the market for their efficiency, security, and effectiveness in supporting different applications, from remote sensing to IoT communications.

JOB OVERVIEW

We're building a satellite-based mesh network, and the software and infrastructure behind it — ground segment services, network orchestration, telemetry pipelines, and embedded flight/payload software tooling — need to be shipped fast and run securely. As DevSecOps Engineer you will design, implement and continuously improve the CI/CD, cloud and infrastructure environment, contribute directly to software development across the stack, and build security into every stage rather than bolting it on at the end. This is a hands-on role spanning development, operations, and security for systems that are both mission-critical and subject to strict regulatory obligations.

RESPONSIBILITIES

  • Design, build, and maintain CI/CD pipelines for ground-segment, network, and embedded software, with automated testing, security scanning, and controlled release gates.
  • Contribute to automation tooling and software development supporting the platform and infrastructure.
  • Collaborate with embedded software teams to support build toolchains, cross-compilation and integration workflows.
  • Manage cloud and on-prem infrastructure as code (Terraform, Ansible, or equivalent) with reproducible, auditable deployments.
  • Operate and secure containerized and orchestrated workloads (Docker, Kubernetes), including image hardening, registry scanning, and runtime security.
  • Implement observability — logging, metrics, tracing, and alerting — for reliable, debuggable production systems.
  • Harden systems and enforce access control, network segmentation, and least-privilege principles across environments.
  • Support compliance and audit readiness against frameworks relevant to critical infrastructure (e.g., NIS2, ISO 27001), contributing to policies, controls, and evidence.
  • Contribute to incident response, patch management, and secure configuration baselines.
  • Partner with software, network, and mission teams

QUALIFICATIONS AND STUDIES

  • Degree in computer science, engineering, or equivalent practical experience.
  • Roughly 3–6 years in DevOps, SRE, platform, security, or software engineering roles.

REQUIREMENTS

  1. Tech skills
  • Strong Linux knowledge (required) — administration, networking, and development on Linux systems.
  • Solid software development skills, with experience writing production code (Python, Go, C/C++, Rust or similar).
  • Familiarity with embedded software development environments is considered a plus.
  • Strong hands-on skills with CI/CD tooling (GitLab CI, GitHub Actions, Jenkins, or similar) and infrastructure as code.
  • Solid networking and cloud fundamentals (AWS, GCP, or Azure).
  • Practical experience integrating security tooling into pipelines and a genuine security mindset.
  • Clear communicator who can work across development, operations, and security.
  1. Soft skills
  • Excellent cross-functional communication skills to interface effectively with engineering teams, suppliers and management.
  • Ability to translate ambiguous or evolving requirements into concrete, actionable specifications.
  • Rigorous, detail-oriented approach, with a preference for measured/verified data over assumptions, and transparency when prior estimates need correction.
  • Comfortable working in a fast-moving, still-maturing product environment, iterating on both architecture and hands-on implementation.
  • Fluent English (written and spoken) required, given interaction with external international partners.

WHAT WE OFFER

  • A flat and collaborative organizational structure
  • A fast‑paced and professional environment within a rapidly growing space scale‑up
  • Challenging projects with real impact on the global space ecosystem
  • An international and diverse workplace
  • Comprehensive benefits package, including a welfare platform, meal vouchers, a hybrid work policy supporting work-life balance, and training opportunities

COMPENSATION & TRANSPARENCY:

  • Reports to: Head of Engineering
  • Career level: P4 – Senior Professional
  • Job location: Lomazzo (Como), Italy | Hybrid work model
  • Salary range: 45-70K
  • Variable compensation: 10% of annual gross salary
  • Benefits: Competitive benefits package, including a welfare platform and meal vouchers in Italy, with equivalent local benefits provided where applicable
  • Expected start date: 1.12.2026
From $25, paid onceGet the CV for this job

What happens when you press

One press. We do the rest.

  1. A CV for this posting

    Written against leafspace's own wording, from every piece of relevant proof in your profile.

  2. 25 readers review it

    Recruiter, hiring manager, skeptic and more read every draft, round after round. You get the best round.

    The review screen in CV Rocket: how each CV was read, round by round.
  3. We apply on leafspace's form

    Our application engine gets through the hardest forms there are. Where a question needs you, AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

    An application in CV Rocket: every answer filled in on the employer's form.
  4. Every reply, sorted

    leafspace's answer lands in your private mailbox, and we classify it on arrival: interview, question, rejection.

    The CV Rocket inbox: each employer reply classified as an interview, an action or a rejection.
  5. Reply with AI

    AI helps you write the email, checks it and sends it. We show you whether the recruiter read it.

  6. The interview in your calendar

    Full integration with your calendar. The invitation goes straight in.

    An interview invitation in the CV Rocket inbox, added to the candidate's calendar.
Get the CV for this job

From $25 per CV, paid once. No subscription.

Why it works

3×

more interviews than doing it yourself with ChatGPT.

ChatGPT writes a CV and never learns what happened to it. We see every reply. For each CV we know:

  • How it was written, and how the review scored it
  • When we applied, and how long after the posting went up
  • Which posting, which company, which city
  • Who got the interview, and who heard nothing

That is how we know which CVs get called.

Get the CV for this job

From $25 per CV, paid once. No subscription.

The numbers game

More applications. More interviews.

Every application goes out with its own CV, written for that posting and paid once. Send enough of them and the law of large numbers finds you the job.

By hand5–10
With CV Rocket100
applications a day

Nearby

Live postings like this one

Same employer first, then the same role elsewhere.

Before you press

Straight answers

Get the CV for this job

From $25 per CV, paid once. No subscription.

What if my background isn't good enough?

We make the most of the background you have. The CV uses every piece of relevant proof your profile holds, and one of the 25 readers reads your whole profile and flags what the CV left out.

Do you really apply for me?

Yes, on the employer's own form, the hardest ones included. Where a question needs you, you answer it right there and AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

Is it a subscription?

No. You pay once per CV, from $25. Every application goes out with its own CV, written for that posting.

One job. One CV.
Paid once.

Pick the posting you want. We write for it, apply for you and catch the reply.

Get the CV for this job

From $25 per CV, paid once. No subscription.