DevSecOps Engineer

Type Other
Seniority Mid-Level
Posted Mar 16, 2026

Richemont seeks a DevSecOps Engineer in Moscavide, Portugal — responsible for cloud security, CI/CD hardening and security automation across luxury maisons.

Overview

Richemont is a leading international luxury goods group housing specialist maisons across jewellery, watches, leather goods and writing instruments. As part of a global luxury holding, the company combines heritage craftsmanship with strategic investment in digital transformation and IT resilience to support its portfolio of iconic brands.

Role & Responsibilities

  • Embed security controls and best practices into CI/CD pipelines and platform automation to enable secure, repeatable delivery.
  • Design and operate security tooling for build-time and runtime scanning (SCA, SAST, DAST, container and infrastructure scanning).
  • Implement and maintain secure cloud infrastructure using IaC (Terraform, CloudFormation) and enforce policy-as-code.
  • Manage secrets and key lifecycle using vault solutions and integrate secret management with platform tooling.
  • Hardening and configuration management for containers, Kubernetes clusters and host infrastructure.
  • Collaborate with application and platform teams to operationalize threat modelling, vulnerability remediation and security incident response.
  • Define and automate compliance checks, security telemetry and alerting (logging, monitoring, SIEM integration).
  • Continuously improve security maturity through automation, runbooks, training and cross-functional knowledge transfer.

Qualifications

  • Proven hands-on experience integrating security into CI/CD and platform automation.
  • Strong operational knowledge of container orchestration (Kubernetes) and container security practices.
  • Demonstrable experience with infrastructure as code (Terraform) and cloud platform security (AWS/Azure/GCP).
  • Familiarity with secrets management (HashiCorp Vault or equivalent) and secure runtime configurations.
  • Experience with security scanning tools and processes (SAST, DAST, SCA, container/image scanning).
  • Excellent collaboration skills to partner with developers, SREs and security teams across multiple brands.

Skills

Kubernetes Docker Terraform HashiCorp Vault AWS Azure GitLab CI / Jenkins Snyk SonarQube Prometheus Grafana Linux Python Bash

Experience

Approximately 4+ years of practical experience in DevSecOps, cloud security engineering, SRE or a closely related role, with a track record of delivering security automation at scale.

Education

Bachelor's degree in Computer Science, Engineering, Cybersecurity or equivalent practical experience.

Culture

Richemont fosters a culture that balances heritage craftsmanship with modern innovation; teams are globally distributed and collaborate across maisons to deliver exceptional customer experiences. The organisation values technical excellence, discretion and cross-disciplinary partnership, providing opportunities to work on secure, high-impact digital platforms for luxury brands.