Skip to content

Open nowPosted 25 days ago

DevSecOps & Infrastructure Security Engineer

Workable (global search)108,016 open roles

Where
Mecidiyeköy, İstanbul, Turkey
Get the CV for this job

From $25 per CV, paid once. No subscription.

Your applicationOpen nowDevSecOps & Infrastructure Security EngineerWorkable (global search) · Mecidiyeköy, İstanbul, Turkey
  1. YouYes, apply to this one.

  2. CV RocketCV written for this posting.

  3. 25 readersRecruiter, hiring manager, skeptic. Round after round.

  4. CV RocketApplied on Workable (global search)'s own form.

The reply lands in your private mailbox

3×more interviews than doing it yourself with ChatGPT.

The clock on this job

Early applications get read.

7.9% of postings close within 7 days. Measured by our own scanner across the market. Workable (global search) postings stay open a median of 7 days.

Share of postings closed within
  1. 1.6%1 day
  2. 3.6%3 days
  3. 7.9%7 days
  4. 14.9%14 days
  5. 34.0%30 days
This job: posted 25 days ago

Workable (global search) median: 7 days open

The posting

I - Who We Are? New Mind AI is an innovative and pioneering company specializing in leveraging big data through a comprehensive and holistic approach. From data digitization and classification to deriving meaningful insights and extracting actionable outputs, we employ advanced taxonomies and ontologies to organize data in a structured and insightful manner, creating a semantic layer to better understand corporate data. Our mission extends beyond mere data structuring; we empower companies to transform their data into actionable insights, facilitating dynamic corporate governance. With over 300 task-oriented and domain-specific AI models, built using an orchestration of experts framework, we provide robust solutions for dynamic corporate governance. By implementing dynamic knowledge network structures, we develop advanced AI models that ensure effective management of corporate data in the business world. Our expertise spans AI-driven business solutions, including AI legal tech products, excelling in natural language processing, deep learning, machine learning, data analysis, and data visualization. Headquartered in YTÜ Teknopark, Maslak, Istanbul, and operating four specialized laboratories—Data Visualization Lab in India, Data Taxonomy Lab in Bomonti, and Big Data and Legal Tech Labs in Maslak—we are leaders in big data analysis in Türkiye and beyond. Our flagship dynamic knowledge management platforms, Mecellem, Malumat, and Mahfuz, empower professionals across various industries by streamlining complex tasks, optimizing decision-making, and managing business risks with precision. Through our cutting-edge AI tools, including Generative AI, LLMs, text-to-speech and speech-to-text, image recognition, voice recognition, function call, graphRAG, OCR, blockchain and RAG, we set new standards in business technology. We deliver smarter, more dynamic solutions for the business world, both in Türkiye and internationally.

II - Who We Are Looking For? We are looking for an experienced DevSecOps & Infrastructure Security Engineer to strengthen the security of our SaaS platforms, enterprise customer on-premises deployments, Kubernetes/OpenShift environments, CI/CD pipelines, and production infrastructure. The ideal candidate will have 5+ years of experience and go beyond operating security tools or merely forwarding vulnerability reports. We expect someone who can assess systems from a security perspective, proactively identify risks, propose practical solutions, and take end-to-end ownership of security initiatives. You must be comfortable challenging existing architectures when necessary, evaluating potential attack scenarios, and providing technically sound security guidance to engineering teams.

III - What Will Be Your Responsibilities? (i) DevSecOps & Secure SDLC: Integrate and continuously improve security controls across CI/CD pipelines, implement SAST, SCA, secret scanning, container/IaC scanning, and SBOM processes, and build automated security gates to prevent risks from reaching production. (ii) Kubernetes & OpenShift Security: Perform security assessments of Kubernetes/OpenShift environments, improve RBAC, Pod Security Standards, NetworkPolicy, and namespace isolation controls, and implement Policy-as-Code using tools like Kyverno or OPA Gatekeeper. (iii) Infrastructure & Network Security: Perform security hardening of Linux production systems, assess network segmentation, implement TLS/mTLS, PKI, and certificate lifecycle processes, and contribute to Zero Trust and Least Privilege architectures. (iv) IAM, PAM & Secrets: Review authentication and authorization mechanisms, integrate and operate secrets-management solutions (e.g., CyberArk, HashiCorp Vault), and implement secure secret distribution and rotation processes to prevent credential exposure. (v) SaaS & On-Premises Security: Assess SaaS environments for tenant isolation and data-access risks, evaluate blast radius and lateral-movement scenarios, and define security requirements for enterprise customer on-premises deployments. (vi) Vulnerability Management & Incident Response: Prioritize vulnerabilities based on exploitability, business impact, and compensating controls rather than just CVSS scores, investigate suspicious events, and actively participate in technical incident analysis and root-cause analysis. (vii) Security Architecture: Review new services and infrastructure designs, analyze attack surfaces and trust boundaries, participate in threat-modeling activities, and validate the actual effectiveness of implemented security controls.

IV - What Is Required from You? (i) Experience: 5+ years of professional experience in DevSecOps, Infrastructure Security, Platform Security, Cloud Security, or related fields. (ii) Technical Expertise: Strong Linux and network-security knowledge, accompanied by production experience with Kubernetes and/or OpenShift, as well as hands-on experience with CI/CD security and Secure SDLC practices. (iii) Security Knowledge: Practical experience with SAST, SCA, secret scanning, vulnerability-management processes, IAM, PAM, RBAC, TLS/mTLS, PKI, and a strong understanding of OWASP Top 10, CIS Controls, and CIS Benchmarks. (iv) Relevant Technologies: Proficiency with platforms (Kubernetes, OpenShift, Helm), DevSecOps tools (Trivy, SonarQube, Semgrep), Policy & Supply Chain (Kyverno, OPA Gatekeeper, Cosign), Runtime Security (Falco, Tetragon), IAM & Secrets (CyberArk, Vault), Automation (Ansible, Terraform), and Monitoring (Splunk/SIEM). (v) Skills: Ability to assess systems from both defensive and attacker perspectives, strong troubleshooting skills, and the capability to independently identify security risks, explain their potential impact (e.g., attack paths, affected systems), and recommend practical technical mitigations. (vi) Nice to Have: CISSP, CKS, CCSP, SSCP, Security+, or equivalent security certifications; experience with enterprise IAM/PAM, penetration-test remediation, Service Mesh / mTLS, multi-cluster Kubernetes security, or AI/ML and GPU infrastructure security.

V - Why Work at New Mind AI? New Mind AI offers a unique opportunity for ambitious young professionals seeking to make a real impact in the rapidly growing field of AI. As a company at the forefront of AI innovation, we are driven by a strong mission to empower businesses with actionable insights derived from data. This translates to a dynamic and stimulating work environment where you will be challenged to think critically, develop your skills, and contribute to groundbreaking projects. Here are some key reasons why New Mind is an ideal place for young talent: (i) be a part of something bigger: Our work goes beyond simply developing AI models. We are shaping the future of business and helping organizations navigate the complex world of data-driven decision-making; (ii) work with leading experts: You will be surrounded by a team of passionate and knowledgeable individuals who are experts in their fields. This collaborative environment fosters continuous learning and growth; (iii) gain valuable experience: You will have the opportunity to work on diverse projects, utilizing cutting-edge AI tools and technologies, including Generative AI, LLMs, and more; (iv) make a real difference: Your contributions will directly impact our company's growth and success, contributing to the advancement of AI technology and its positive impact on the world; (v) global reach: As a company with a global presence, you will be exposed to a diverse range of perspectives and opportunities to work with clients and partners from around the world; (vi) invest in your future: New Mind is committed to supporting its employees' professional development and offers opportunities for growth within the company.

From $25, paid onceGet the CV for this job

What happens when you press

One press. We do the rest.

  1. A CV for this posting

    Written against Workable (global search)'s own wording, from every piece of relevant proof in your profile.

  2. 25 readers review it

    Recruiter, hiring manager, skeptic and more read every draft, round after round. You get the best round.

    The review screen in CV Rocket: how each CV was read, round by round.
  3. We apply on Workable (global search)'s form

    Our application engine gets through the hardest forms there are. Where a question needs you, AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

    An application in CV Rocket: every answer filled in on the employer's form.
  4. Every reply, sorted

    Workable (global search)'s answer lands in your private mailbox, and we classify it on arrival: interview, question, rejection.

    The CV Rocket inbox: each employer reply classified as an interview, an action or a rejection.
  5. Reply with AI

    AI helps you write the email, checks it and sends it. We show you whether the recruiter read it.

  6. The interview in your calendar

    Full integration with your calendar. The invitation goes straight in.

    An interview invitation in the CV Rocket inbox, added to the candidate's calendar.
Get the CV for this job

From $25 per CV, paid once. No subscription.

Why it works

3×

more interviews than doing it yourself with ChatGPT.

ChatGPT writes a CV and never learns what happened to it. We see every reply. For each CV we know:

  • How it was written, and how the review scored it
  • When we applied, and how long after the posting went up
  • Which posting, which company, which city
  • Who got the interview, and who heard nothing

That is how we know which CVs get called.

Get the CV for this job

From $25 per CV, paid once. No subscription.

The numbers game

More applications. More interviews.

Every application goes out with its own CV, written for that posting and paid once. Send enough of them and the law of large numbers finds you the job.

By hand5–10
With CV Rocket100
applications a day

Nearby

Live postings like this one

Same employer first, then the same role elsewhere.

Before you press

Straight answers

Get the CV for this job

From $25 per CV, paid once. No subscription.

What if my background isn't good enough?

We make the most of the background you have. The CV uses every piece of relevant proof your profile holds, and one of the 25 readers reads your whole profile and flags what the CV left out.

Do you really apply for me?

Yes, on the employer's own form, the hardest ones included. Where a question needs you, you answer it right there and AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

Is it a subscription?

No. You pay once per CV, from $25. Every application goes out with its own CV, written for that posting.

One job. One CV.
Paid once.

Pick the posting you want. We write for it, apply for you and catch the reply.

Get the CV for this job

From $25 per CV, paid once. No subscription.