DevSecOps Engineer
Richemont seeks a DevSecOps Engineer in Moscavide, Portugal — responsible for cloud security, CI/CD hardening and security automation across luxury maisons.
Overview
Richemont is a leading international luxury goods group housing specialist maisons across jewellery, watches, leather goods and writing instruments. As part of a global luxury holding, the company combines heritage craftsmanship with strategic investment in digital transformation and IT resilience to support its portfolio of iconic brands.
Role & Responsibilities
- Embed security controls and best practices into CI/CD pipelines and platform automation to enable secure, repeatable delivery.
- Design and operate security tooling for build-time and runtime scanning (SCA, SAST, DAST, container and infrastructure scanning).
- Implement and maintain secure cloud infrastructure using IaC (Terraform, CloudFormation) and enforce policy-as-code.
- Manage secrets and key lifecycle using vault solutions and integrate secret management with platform tooling.
- Hardening and configuration management for containers, Kubernetes clusters and host infrastructure.
- Collaborate with application and platform teams to operationalize threat modelling, vulnerability remediation and security incident response.
- Define and automate compliance checks, security telemetry and alerting (logging, monitoring, SIEM integration).
- Continuously improve security maturity through automation, runbooks, training and cross-functional knowledge transfer.
Qualifications
- Proven hands-on experience integrating security into CI/CD and platform automation.
- Strong operational knowledge of container orchestration (Kubernetes) and container security practices.
- Demonstrable experience with infrastructure as code (Terraform) and cloud platform security (AWS/Azure/GCP).
- Familiarity with secrets management (HashiCorp Vault or equivalent) and secure runtime configurations.
- Experience with security scanning tools and processes (SAST, DAST, SCA, container/image scanning).
- Excellent collaboration skills to partner with developers, SREs and security teams across multiple brands.
Skills
Experience
Approximately 4+ years of practical experience in DevSecOps, cloud security engineering, SRE or a closely related role, with a track record of delivering security automation at scale.
Education
Bachelor's degree in Computer Science, Engineering, Cybersecurity or equivalent practical experience.
Culture
Richemont fosters a culture that balances heritage craftsmanship with modern innovation; teams are globally distributed and collaborate across maisons to deliver exceptional customer experiences. The organisation values technical excellence, discretion and cross-disciplinary partnership, providing opportunities to work on secure, high-impact digital platforms for luxury brands.