Job description
DevSecOps Engineer – Brussels (Freelance)
Hybrid | 3 days onsite, 2 days remote
Overview
We are looking for an experienced DevSecOps Engineer to strengthen a high-performance engineering environment in Brussels. The role focuses on maintaining and evolving a secure, automated, and reliable software delivery ecosystem. You will work at the crossroads of operations, development tooling, and security, ensuring smooth CI/CD workflows, secure pipelines, and stable platform performance.
This assignment is ideal for someone who enjoys combining automation, security practices, and cloud-native tooling within modern engineering platforms.
Key Responsibilities
Platform & Tooling Ownership
-
Manage and support CI/CD platforms, ensuring stability and effective usage across the organisation.
-
Administer and enhance environments built around GitHub, Bitbucket, Bamboo, Jenkins, and related tools.
-
Oversee configuration and lifecycle management of Nexus, Harbor, Keycloak, and SonarQube instances.
DevSecOps Pipeline Development
-
Design, refine, and optimise CI/CD pipelines with a strong focus on quality gates and automated security checks.
-
Integrate code scanning, dependency analysis, and container vulnerability scanning into workflows using SonarQube, OWASP Dependency Check, and Trivy.
-
Ensure pipelines cover all steps from source code management through build, test, and deployment.
Automation & Scripting
-
Build scripts and automation utilities (Python, Bash) to streamline operations, enforce compliance rules, and support system maintenance.
-
Support teams in adopting consistent automation practices across the CI/CD stack.
Containerisation & Orchestration
-
Maintain and support container tooling built around Docker and Kubernetes, ensuring secure and consistent usage patterns.
-
Oversee artifact and container image storage, tagging, cleanup, and secure distribution via Nexus and Harbor.
Security, IAM & Governance
-
Maintain secure authentication and authorisation configurations within Keycloak and other OIDC/SSO mechanisms.
-
Apply DevSecOps principles across all tooling, ensuring secure defaults, secrets management, and least-privilege access.
-
Contribute to continuous improvements in security posture and platform governance.
Troubleshooting & User Support
-
Act as a knowledgeable escalation point for CI/CD-related issues.
-
Diagnose and resolve problems across the full development lifecycle—from code commit to deployment.
-
Collaborate closely with engineering and security teams to ensure tool reliability and user satisfaction.
Required Technical Skills
-
Strong background as a DevOps or DevSecOps Engineer, with hands-on experience using modern CI/CD platforms (GitHub Actions, Bitbucket, Bamboo, Jenkins).
-
Proficiency with Docker and Kubernetes for container lifecycle management and orchestration.
-
Solid experience managing artifacts and container images with Nexus and Harbor.
-
Working knowledge of code quality and security scanning tools (SonarQube, OWASP Dependency Check, Trivy).
-
Strong scripting abilities in Python and Bash.
-
Practical expertise in identity and access management, including Keycloak, SSO, and OIDC-based authentication.
-
Ability to troubleshoot end-to-end CI/CD processes, from SCM interaction to build, test, and deployment phases.
-
Experience with Infrastructure as Code tools (Terraform, Ansible) and AWS environments is considered an advantage.