TRCI-26-05294
DevSecOps Security Expert (Azure, CI/CD, SAST/SCA/DAST, Containers)
Contract Security Expert to join a DSO team in Gothenburg, responsible for defining and documenting security processes, hardening guides and policies, and integrating/configuring/managing security tools to enable DevSecOps ways of working. The role focuses on embedding security testing (SAST/SCA/DAST and container security) into CI/CD pipelines, automating security processes via scripting, and supporting agile teams with secure engineering best practices. Strong Azure/Azure DevOps/GitHub experience and container security (Docker/Kubernetes) are key; familiarity with tools like Fortify/WebInspect, Sonatype Nexus IQ, and Prisma Cloud is preferred.
Position summary
- Location
- Sweden
- Workplace
- Hybrid
- Employment
- Contract
- Experience
- Minimum 3 years and Maximum 5 years
Role overview
Why This Role Matters.
Contract Security Expert to join a DSO team in Gothenburg, responsible for defining and documenting security processes, hardening guides and policies, and integrating/configuring/managing security tools to enable DevSecOps ways of working. The role focuses on embedding security testing (SAST/SCA/DAST and container security) into CI/CD pipelines, automating security processes via scripting, and supporting agile teams with secure engineering best practices. Strong Azure/Azure DevOps/GitHub experience and container security (Docker/Kubernetes) are key; familiarity with tools like Fortify/WebInspect, Sonatype Nexus IQ, and Prisma Cloud is preferred.
Your Impact
Deliver Enterprise Value
Help organisations solve complex business problems through modern technology, consulting expertise and measurable outcomes.
Collaboration
Work Across Teams
Collaborate with consultants, architects, engineers and client stakeholders throughout the project lifecycle.
Growth
Learn Continuously
Gain exposure to enterprise technologies, certifications, mentoring and real-world project experience.
Career Path
Grow With Ubique
Build a long-term consulting career with opportunities to take on greater responsibility and leadership over time.
Responsibilities
What You'll Be Doing.
Every role at Ubique contributes directly to solving meaningful business challenges for our clients.
Provide security expertise and guidance to the DSO teams and Enablement teams.
Document and drive the adoption of secure engineering best practices.
Develop and evolve policies around information security.
Develop scripts to automate security processes.
Document the use of security tools and processes.
Establish mechanisms and tools for the security automatization within the SDLC
§3-5+ years of experience in the information security field
§3-4+ years of experience performing security testing (SAST, SCA, DAST and security on containers). Preferably experience on Microfocus products as Fortify, WebInspect or Fortify SSC. As well as Sonatype Nexus IQ and Prisma Cloud
§3-4+ years of experience with embedding security into CI/CD pipelines
§3+ years experience with agile methodologies
§2-3+ years of experience with securing containerized environments (Docker, Kubernetes) and virtual machines.
Technology stack
Tools & Technologies.
The platforms and technologies you'll use to build modern, enterprise-grade solutions.
DevSecOps
CI/CD
SDLC
SAST
SCA
DAST
container security
Docker
Kubernetes
virtual machines
Azure
Azure DevOps
GitHub
Micro Focus Fortify
Fortify SSC
WebInspect
Sonatype
Nexus IQ
Prisma Cloud
security automation
Requirements
Skills & Experience.
We value curiosity, collaboration and continuous learning. If you don't meet every requirement but believe you can make an impact, we'd still love to hear from you.
Essential
Required Qualifications
Information security experience (3-5+ years)
Security testing: SAST, SCA, DAST, container security (3-4+ years)
Micro Focus Fortify (Fortify, Fortify SSC) and/or WebInspect (preferred)
Sonatype Nexus IQ (preferred)
Prisma Cloud (preferred)
Embedding security into CI/CD pipelines (3-4+ years)
DevSecOps experience (3+ years)
Agile methodologies experience (3+ years)
Securing containerized environments: Docker, Kubernetes (2-3+ years)
Securing virtual machines (2-3+ years)
Azure (2-3+ years)
Azure DevOps (2+ years)
GitHub (2+ years)
Scripting skills (security automation)
Good communication skills
Preferred
Nice to Have
Securing infrastructure in Azure via automation (2-3+ years)
Securing infrastructure in AWS via automation (2-3+ years)
Vulnerability management experience (2+ years)
Risk management experience (2+ years)
Software development background (3+ years as developer)
Security monitoring, logging and alerting implementation experience
Terraform
Ansible
What you'll gain
More Than Just A Job.
We're committed to helping every team member grow professionally, personally and technically while working on meaningful projects.
Global Exposure
Collaborate with international clients and multicultural teams on enterprise programmes.
Continuous Learning
Expand your expertise through mentoring, certifications and hands-on project experience.
Career Growth
Take ownership, develop leadership skills and grow your consulting career over time.
Flexible Working
Hybrid and remote collaboration designed around trust and delivering exceptional outcomes.
People First
Join a supportive culture where collaboration, respect and long-term relationships come first.
Enterprise Projects
Work on meaningful technology initiatives for leading organisations across industries.
Apply
Apply for DevSecOps Security Expert (Azure, CI/CD, SAST/SCA/DAST, Containers)
One page, about two minutes. We only ask for what we actually need to have a first conversation.