DevSecOps Security Consultant

At Mindbox we connect top IT talents with technology projects for leading enterprises across Europe. 

Join our client’s team as a DevSecOps Security Consultant!

Are you passionate about cybersecurity, engineering excellence, and DevSecOps practices? We are looking for an experienced DevSecOps Security Consultant to shape the security posture of engineering platforms at one of the world’s leading financial institutions. This is your opportunity to define scalable security frameworks, uplift maturity across CI/CD platforms, and enable secure digital delivery at enterprise scale.

Sounds like your kind of challenge? 

#LI- Hybrid – 6 days a month from the office in Kraków

What you’ll be doing

  • Framework & Assessment:
    • Develop an Engineering-Platform Cybersecurity Maturity Framework for standardized assessments.
    • Conduct security assessments of CI/CD pipelines, runtime environments, build infrastructures, and developer tools against the framework.
    • Perform threat modeling, gap analysis, and identify systemic vulnerabilities impacting code integrity and workload security.
  • Engineering Platform Security Enablement:
    • Define and enforce secure architecture patterns, policy-as-code, and automated security controls.
    • Partner with platform owners to remediate critical gaps and implement scalable solutions for secure artifact integrity, access management, and configuration hardening.
    • Integrate vulnerability management, SBOM generation, provenance, and code-signing into DevOps workflows.
  • Strategic Roadmap:
    • Build security roadmaps balancing quick wins and long-term improvements.
    • Prioritize initiatives based on business risk and compliance requirements.
  • Governance & Stakeholder Management:
    • Serve as a trusted cybersecurity advisor to platform owners, engineering teams, and senior leadership.
    • Influence adoption of secure engineering practices across federated teams.
  • Continuous Improvement:
    • Track maturity metrics and drive measurable security improvements.
    • Evolve frameworks based on emerging threats, technology shifts, and regulatory changes.

Note: Detailed project information will be shared during the recruitment process. 

What you get in return

  • Flexible cooperation model – choose the form that suits you best
    (B2B, employment contract, etc.)
  • Hybrid work setup6 days a month from the office in Kraków
  • Collaborative team culture – work alongside experienced professionals eager to share knowledge 
  • Continuous development – access to training platforms and growth opportunities 
  • Comprehensive benefits – including Interpolska Health Care, Multisport card, Warta Insurance, and more 
  • High quality equipment – laptop and essential software provided 

Who we’re looking for

  • Core Expertise:
    • Proven experience in Cybersecurity within large, regulated organizations.
    • Deep understanding of CI/CD systems, build tools, artifact repositories, runtime environments, and developer tools.
    • Advanced knowledge of DevSecOps practices, including pipeline security and automation of security controls.
    • Experience in threat modeling, platform-level security assessments, and security gap remediation.
    • Familiarity with cryptography, vulnerability management, and application/network security.
  • Leadership & Influence:
    • Strong skills in stakeholder management and driving alignment across distributed technology teams.
    • Ability to articulate technical risk in business language.
  • Preferred:
    • Certifications such as CISSP, CISM, CCSP, CCSK.
    • Knowledge of Cloud Security (AWS, GCP, Azure) and container orchestration (Kubernetes).
    • Experience with supply chain security frameworks (SLSA, SBOM) and secure developer tooling.

Joining this project you’ll become part of Mindbox – a tech-driven company where consulting, engineering, and talent meet to build meaningful digital solutions. We’ll back you up every step of the way, accelerate your development, and ensure your skills make a difference. 

DevSecOps Security Consultant

Kraków

B2B

1500-1800 PLN/MD netto + VAT

I will handle your recruitment

Jolanta Gmurczyk

SUPPORT & BENEFITS

Private healthcare

Fast access to doctors and medical tests. 

Mindbox fully covers the individual package. You can extend the coverage to your partner and family on preferential terms. A wide network of medical providers and clear rules for everyday use.

Multisport

Energy that pays off.

We cover 50% of the card cost. You get access to thousands of sports facilities across Poland, plus a convenient mobile app. Additional cards for family members are available.

Training & development

Practical support for your career growth.

We co‑fund courses, certifications and conferences under a clear Training Policy. You also get access to a library of recorded webinars and trainings – available whenever you need them.

Eyewear or contact lenses co‑funding

Clear vision means comfortable work.

Up to PLN 500 every two years, with an additional PLN 300 available in justified cases. Simple reimbursement, regardless of your form of cooperation.

Group life insurance

Real protection from day one.

Option I is fully funded by Mindbox, Option II is co‑funded. You can include your partner and adult children, with coverage that also applies to treatment and hospitalisation abroad.

Ongoing support from the Talent Network Development

You’re not on your own in a project.

Regular contact, quick response and a partnership‑based approach. You focus on your work — we help take care of the rest.

Regular integration meet‑ups

Relationships that work beyond the project.

Cyclical meet‑ups for contractors in major cities across Poland. A space to talk, exchange experience and stay in real contact with the Mindbox team.

Annual company‑wide integration

One event. The whole community.

A two‑day company gathering with accommodation, transport and a full activity programme. Time to connect teams from across Poland and build shared experiences.

New baby gift

Important moments matter to us.

When a child is born, we prepare a personalised gift. All it takes is a short message to the Talent Network Development team.

do you like
like our offer?

the recruitment process

We take care of every stage of process

Submit your CV

The supplier takes full responsibility for the applications, their performance and load, and monitors and fixes any problems and failures.

Contact with
a Recruiter

The supplier takes full responsibility for the applications, their performance and load, and monitors and fixes any problems and failures.

Sending your CV
to the client

The supplier takes full responsibility for the applications, their performance and load, and monitors and fixes any problems and failures.

Lorem ipsum

Lorem ipsum

Referral Program

Refer a friend & get up to 6,000 PLN

Do you know an IT specialist who could be a good fit for one of our projects? Share their contact details with us and we’ll take care of the rest.

You can receive up to 6,000 PLN for a successful referral.