Cyber Security DevOps Manager

2 weeks ago


Bucharest, Bucureşti, Romania JTI Full time €90,000 - €120,000 per year

At JTI we celebrate differences, and everyone truly belongs.
46,000 people from all over the world
are continuously building their unique success story with us.
83% of employees feel happy
working at JTI.

To make a difference with us, all you need to do is bring your
human best.
What will your story be? Apply now

Learn more
Cyber Security DevOps Manager
What This Position Is About – Purpose
This position exists to ensure the consistent security of JTI's Digital Ecosystem (DES) and global applications, including e-commerce solutions. The role is responsible for defining and implementing technical security standards across these platforms, embedding secure DevOps practices into CI/CD environments (e.g., Azure DevOps, GitLab, GitHub), and protecting applications from internal and external threats while promoting shift-left security practices throughout the software development lifecycle.

As part of the Cyber Security Centre, this role contributes to the delivery of high-quality, cost-effective security services across JTI's global infrastructure and application landscape—including security architecture, design, innovation, assurance, service delivery, and SOC operations.

The position also drives the adoption of security tools and best practices, conducts threat assessments, and partners closely with engineering, product, and operations teams to ensure the secure design, development, and deployment of cloud-based and mobile solutions. It requires a strong foundation in cloud and container security, Secure SDLC, application security tooling (e.g., SAST, DAST, SCA), and secure coding principles, with a particular focus on Azure environments.

Ultimately, this role is critical to maintaining a secure, compliant, and resilient digital environment aligned with corporate and industry security standards.

What Will You Do – Responsibilities
Security Integration in CI/CD

  • Responsible for integrating and maintaining security tools in the CI/CD pipeline to ensure secure development and deployment
  • Assist in identifying, tracking, and prioritizing security vulnerabilities in the development environment
  • Support the remediation of vulnerabilities, collaborating with development and operations teams to address security issues

Security Tool Administration, Monitoring and Reporting

  • Assist in configuring, maintaining, and troubleshooting security tools used in the CI/CD pipeline, such as static and dynamic application security testing (SAST/DAST), and software composition analysis (SCA)
  • Ensure that tools are functioning properly, with regular updates and maintenance to keep them current
  • Monitor CI/CD environments for security threats, running regular security scans and audits
  • Assist in generating reports on security findings, tracking resolution progress, and ensuring transparency in security posture

Security Awareness & Training

  • Contribute to security awareness initiatives within development teams, promoting secure coding practices
  • Educate teams on common vulnerabilities and industry best practices to enhance overall security knowledge

Governance

  • Ensure adherence to security standards, frameworks (e.g. OWASP, NIST, ISO, PCI DSS), and JTI security policies
  • Support the development of security policies, ensuring that security best practices are consistently followed across the team

Who Are We Looking For – Requirements
Education
University degree in Computer Science, Computer Engineering, Information Systems, or related field or relevant experience

Work experience
working experience on the following new technology trends

  • 5+ years of solid knowledge in cloud and container security, including the specific characteristics of cloud-based security services and securing web/mobile applications
  • 5+ years of hands-on experience in operational Cybersecurity, DevOps, or DevSecOps, with strong knowledge of the Secure SDLC approach and the ability to articulate security goals, lifecycle stages, and related processes
  • Experience implementing Secure SDLC and integrating security into CI/CD pipelines with a shift-left approach
  • Proficient in Azure, Python, Bash, and using tools like SCA, SAST, DAST/IAST, and image scanning
  • Knowledge of security standards (OWASP, NIST, ISO, PCI DSS) and experience with tools like Blackduck, Coverity on Polaris, Advanced Security, WIZ etc.
  • Familiar with cloud-native security controls, secure coding practices, and threat modeling (e.g., OWASP Threat Dragon)
  • Strong knowledge of network security, including common protocols and the OSI model.
  • Hands-on experience with Infrastructure-as-Code (IaC) tools (e.g., Terraform), and CI/CD platforms such as GitLab, Azure DevOps, and GitHub, including integrating security tools into pipelines.
  • Good understanding of containerization and Kubernetes, especially from a security perspective.

Language
English professional working proficiency (spoken and written)

What Are The Next Steps

  • Interview with GBS Talent Attraction Expert
  • Online interview with the Hiring Manager and one of his Team
  • 2nd Line Interview for Finalists

All applications will be reviewed. Please be aware that you will receive the call from Poland (prefix +48), as our Global Business Services is based in Warsaw.

If you are interested in the above-mentioned position,
please apply by September, 12th
. For assistance in using SuccessFactors, please contact Kasia Graj at

This recruitment process is conducted both internally and externally. If you know an external candidate that might be suitable for this role, please send the CV to

If the recommended candidate is hired, you will be rewarded with a bonus according to the referral policy.
Are you ready to join us? Build your success story at JTI. Apply now

Next Steps

After applying, if selected, please anticipate the following within 1-3 weeks of the job posting closure Phone screening with Talent Advisor > Assessment tests > Interviews > Offer. Each step is eliminatory and may vary by role type.

At JTI, we strive to create a diverse and inclusive work environment. As an equal-opportunity employer, we welcome applicants from all backgrounds. If you need any specific support, alternative formats, or have other access requirements, please let us know.



  • Bucharest, Bucureşti, Romania JT International S.A. Full time €90,000 - €120,000 per year

    At JTI we celebrate differences, and everyone truly belongs. 46,000 people from all over the world are continuously building their unique success story with us. 83% of employees feel happy working at JTI.To make a difference with us, all you need to do is bring your human best.What will your story be? Apply now  Learn more: Cyber Security DevOps...


  • Bucharest, Bucureşti, Romania ManpowerGroup Full time €104,000 - €130,878 per year

    Manpower Romania, technical & engineering division is curently looking for aCyber Security Managerfor one of our clients located in Bucharest.In this role, you will drive the development and implementation of the cybersecurity strategy, manage key security resources, and ensure alignment with organizational objectives. You will act as a leader, mentor, and...


  • Bucharest, Bucureşti, Romania Worldline Full time €60,000 - €80,000 per year

    Job DescriptionCyber Security EngineerBucharest, RomaniaThis is Worldline.We are the innovators at the heart of the payments technology industry, shaping how the world pays and gets paid. The solutions our people build today power the growth of millions of businesses tomorrow. From your local coffee shop to unicorns and international banks. From San...


  • Bucharest, Bucureşti, Romania Innoviz Technologies Full time €90,000 - €120,000 per year

    Innoviz Technologies is shaping the future of autonomous driving with our cutting-edge LiDAR systems – among the most advanced sensors in the automotive industry. Our technology brings together expertise in hardware and software to deliver breakthrough solutions for safety and reliability. We're looking for a Cyber Security Architect to drive the security...


  • Bucharest, Bucureşti, Romania Innoviz Technologies Full time 60,000 - 80,000 per year

    DescriptionInnoviz Technologies is shaping the future of autonomous driving with our cutting-edge LiDAR systems – among the most advanced sensors in the automotive industry. Our technology brings together expertise in hardware and software to deliver breakthrough solutions for safety and reliability.We're looking for aCyber Security Architectto drive the...

  • Security Architect

    2 weeks ago


    Bucharest, Bucureşti, Romania Global-e Full time €104,000 - €130,878 per year

    We're looking for a security architect to join Global-e's cyber security department and participate in securing users, products and services.The security architect will be part of securing SSDLC, as well as securing IT and cloud services. In addition to securing new technologies and 3rd party integrations. Responsibilities:Develop and maintain the security...


  • Bucharest, Bucureşti, Romania Worldline Full time €104,000 - €130,878 per year

    This is Worldline.Worldline helps businesses of all shapes and sizes to accelerate their growth journey - quickly, simply, and securely. We are the innovators at the heart of the payments technology industry, shaping how the world pays and gets paid. Our technology powers the growth of millions of businesses across 5 continents. And just as we help our...

  • Security Researcher

    2 weeks ago


    Bucharest, Bucureşti, Romania Alcor 8 Full time €80,000 - €120,000 per year

    About the job Security Researcher About the job Were looking for a highly technical and creative Security Researcher to join our research group. This role is central to navigating complex security landscapes, advancing our continuous cyber defense offerings with pioneering cloud and on-prem security research. Working alongside a diverse team of...


  • Bucharest, Bucureşti, Romania Detack Group Full time €60,000 - €80,000 per year

    Company Overview:Detack Group is a German cybersecurity company dedicated to providing top-tier security services globally, with offices in Germany (Ludwigsburg), USA (Austin, TX), Singapore, and Australia (Brisbane). As part of our strategic expansion, we have opened an office in Bucharest, Romania, located in One Cotroceni Park. We are seeking talented...

  • Cyber Threat Hunter

    2 weeks ago


    Bucharest, Bucureşti, Romania Dell Technologies Full time $125,000 - $175,000 per year

    Cyber Threat Hunter ConsultantThe Dell Security & Resiliency organization manages the security risk across all aspects of Dell's business. You will have an excellent opportunity to influence the security culture at Dell and further develop your career. Join us as a senior Cyber Threat Hunter on our Cyber Threat Intelligence team in Bucharest to do the best...