About Company:
ZEEQ Tech Hub is a forward-thinking software solutions company committed to empowering businesses with innovative digital products. We build world-class custom software, mobile applications, digital platforms, and automation tools that help organizations scale effortlessly.
Job Description:
At ZEEQ Tech, we believe security shouldn't be a bottleneck—it should be a fundamental part of our engine. We are seeking a DevSecOps Engineer to weave security into the very fabric of our development and operations processes. You will be responsible for building "Security by Design" into our CI/CD pipelines, ensuring that our software is not only scalable and reliable but inherently resilient to threats. If you are an automation enthusiast who lives for infrastructure-as-code and can bridge the gap between "Move Fast" and "Stay Secure," we want you to lead our DevSecOps evolution.
Requirements:
1. Pipeline Security & CI/CD Orchestration
Automated Guardrails: Design and manage secure CI/CD pipelines that automatically trigger vulnerability scans and compliance checks at every commit.
Tooling Integration: Embed industry-leading security tools (e.g., Snyk, SonarQube, Trivy) directly into the developer workflow.
Vulnerability Governance: Conduct regular security assessments and monitor system vulnerabilities to ensure a low-risk production environment.
2. Cloud Infrastructure & Security Automation
Infrastructure as Code (IaC): Use Terraform or Ansible to perform infrastructure hardening and security configuration management, ensuring "drift" is detected and remediated.
Orchestration Security: Implement security best practices for Kubernetes and Docker, including container image signing and runtime security.
Identity & Secrets Management: Oversee access controls (IAM) and implement robust secrets management (e.g., HashiCorp Vault) to protect sensitive credentials.
3. Shift-Left Culture & Incident Response
Cross-Functional Collaboration: Partner with Engineering and QA teams to "Shift-Left"—embedding security considerations in the earliest stages of the SDLC.
Incident Response: Serve as a primary technical responder during security incidents, driving remediation efforts and post-mortem analysis.
Compliance & Monitoring: Automate compliance validations and utilize Prometheus/Grafana to maintain visibility into the security posture of our live systems.
Qualifications and Skills:
The Ideal Profile
Education: B.Sc/HND in Computer Science, Engineering, or a related discipline.
Experience: 3–6 years in DevOps, DevSecOps, or Cloud Security roles.
Cloud Mastery: Deep understanding of AWS, Azure, or GCP security services.
Containerization: Expert hands-on experience with Docker and Kubernetes.
Security Stack: Proficiency with tools such as OWASP ZAP, Trivy, and SonarQube.
Core Competencies
Automation Mindset: A drive to automate repetitive security checks and compliance tasks.
Problem Solving: Ability to troubleshoot complex infrastructure issues under pressure.
Communication: Skill in explaining security risks to non-technical stakeholders in a clear, actionable manner.
Salary
Very attractiveApplication Closing Date: Not specified
Application Instructions:
Interested and qualified candidates should send their CV/Portfolio to: Clinikhr@gmail.com using the Job Position as the subject of the email.
Job Information
Deadline
Not specified
Job Type
Full-time
Industry
Engineering
Work Level
Experienced
State
Not specified
Country
Nigeria