DevOps Engineer (SentinelOps, DevEx & Cloud Enablement Team)

eMAG · Bucharest, Bucharest, Romania · Engineering

Posted 2026-09-10

Apply for this role →

DevSecOps Engineer (SentinelOps, DevEx & Cloud Enablement Team)

What you’ll have to do

Manage identity and access across AWS, GCP, TencentCloud and on-prem — permission models, cross-account trust and federation, integration with our existing IAM solutions and Keycloak, and secrets management.

Define and enforce cloud governance: guardrails and organization policies, account and project structure, and preventive controls that keep environments compliant as they grow.

Provision and manage cloud and on-prem infrastructure using Terraform.

Design, develop and maintain reusable GitLab CI/CD pipelines and templates for automated, secure and scalable delivery.

Operate and maintain Kubernetes clusters deployed both on-premises and in AWS (EKS), ensuring high availability, scalability, and security.

Implement disaster recovery and high availability strategies across environments.

Automate operational workflows and infrastructure management via scripting (Bash, Python, Go or similar).

Implement observability: monitoring, alerting and logging (Prometheus, Grafana, AWS CloudWatch) to support proactive incident response.

Administer the Linux systems underlying our container and cloud environments.

Document infrastructure configurations, deployment procedures, and operational runbooks.

What makes you a good fit

3+ years of experience in DevOps or similar roles.Relevant certifications such as CISA, CRISC, CISSP, or equivalent are preferred.

Proficiency with Terraform for infrastructure as code, hands-on with at least one cloud provider.

Solid understanding of networking concepts and security best practices.

Proficiency in Linux system administration and scripting (Bash, Python, Go or similar).

Hands-on experience with at least one cloud provider (AWS/GCP/TencentCloud), having built and operated the core building blocks (VPCs, subnets, object storage, virtual machines).

Hands-on experience running workloads on Kubernetes in production.

Experience building CI/CD pipelines.

Working knowledge of AWS/GCP/TencentCloud IAM and multi-cloud IAM concepts: roles and policies, cross-account trust, and federation.

Familiarity with cloud governance primitives - service control policies, organization policies or equivalent guardrails.

Practical experience with monitoring and logging in production - Prometheus and Grafana or equivalents: writing queries and building alerts people act on.

What makes you stand out

Experience with multi-cloud environments including GCP and TencentCloud.

Deep experience with cloud IAM and identity management at scale.

Experience with cloud security tools (AWS GuardDuty, Security Hub, GCP Security Command Center).

Experience implementing cloud governance at scale.

Familiarity with IAM solutions, particularly Keycloak.

Experience managing clusters.

Secure-by-design architecture - you can walk us through a system where you made the secure option the easiest one for the teams using it.

What we’ve prepared for you

Medical subscription: Medicover or Regina Maria.

A flexible budget that you can invest in yourself as you wish: meal tickets, holiday tickets, cultural vouchers, private pension, foreign language classes, eMAG, Fashion Days, Therme & Genius, membership to different gyms or even professional development classes.

Different discounts from our partners: banking, mobile, dental medicine or wellness.

Access to the Bookster library and free credits on the Hilio psycho-emotional health platform.

An accelerated learning environment, with access to over 100.000 curated online resources and platforms, learning academies and development programs.

New headquarters, where sleek design, natural light, and versatile spaces create an energizing and comfortable environment for hybrid work.

#LI-remote #midsenior

Apply for this role →

← Back to all jobs