At Mindbox we connect top IT talents with technology projects for leading enterprises across Europe.
We are looking for a DevSecOps Engineer to design, build, and operate a Jenkins-based, developer-focused pipeline platform that enables thousands of builds per day across Java, Node.js, Python, and cloud-native workloads. Our mission is to make secure delivery the default and great developer experience the norm.
You will own and evolve our Jenkins Shared Library, powering multi-language builds (Java/Maven, Node/NPM, Python, Helm, Terraform, containers). Your work will deliver fast, secure, provenance-rich pipelines (SLSA, SBOM, digests) and strengthen supply chain integrity across teams.
Sounds like your kind of challenge?
What you get in return
Note: Detailed project information will be shared during the recruitment process.
Nice to have:
Joining this project you’ll become part of Mindbox – a tech-driven company where consulting, engineering, and talent meet to build meaningful digital solutions. We’ll back you up every step of the way, accelerate your development, and ensure your skills make a difference.
At Mindbox we connect top IT talents with technology projects for leading enterprises across Europe.
We are looking for a DevSecOps Engineer to design, build, and operate a Jenkins-based, developer-focused pipeline platform that enables thousands of builds per day across Java, Node.js, Python, and cloud-native workloads. Our mission is to make secure delivery the default and great developer experience the norm.
You will own and evolve our Jenkins Shared Library, powering multi-language builds (Java/Maven, Node/NPM, Python, Helm, Terraform, containers). Your work will deliver fast, secure, provenance-rich pipelines (SLSA, SBOM, digests) and strengthen supply chain integrity across teams.
Sounds like your kind of challenge?
What you get in return
Note: Detailed project information will be shared during the recruitment process.
,[Design and maintain Groovy pipeline steps (build, test, package, scan, deploy), Extend Python tooling for SLSA provenance, SBOM generation, hash/digest accuracy, and security scan aggregation, Optimize performance (parallel builds, caching, scope-reduced BOMs, dependency prefetch), Ensure artifact integrity (correct SHA1/SHA256 mapping, reproducible inputs, evidence modeling), Refactor legacy scripts (remove global state, consolidate hashing, standardize templates), Document ci-config.yaml standards and usage patterns, Mentor engineers on secure pipeline development and supply-chain practices, Troubleshoot and prevent pipeline incidents Requirements: Jenkins, Groovy, Python, JSON, YAML, Maven, npm, Security, SonarQube, SAST, Performance tuning, Helm, Terraform, GCP, AWS Cloud Additionally: Sport Subscription, Private healthcare, Life insurance, Training budget, Small teams, Free coffee, Free snacks, In-house trainings, Modern office, No dress code.