monday.com is the AI work platform powering the most ambitious teams. 250,000+ customers across departments use us to bring people, workflows, and AI agents together on one flexible platform where AI doesn't just assist, it executes. We move fast, build things that matter, and foster an ownership-driven culture where you're empowered to shape how organizations work and outpace their competition.
We fully embrace the AI revolution and we equip you with AI-powered IDEs, customizable agent rules, prompt engineering tools to streamline your workflow and AI-infused CI/CD pipelines designed to boost speed and reliability. You'll also tap into AI-driven insights, helping you make smarter decisions, faster.
We’re looking for a Senior DevSecOps Engineer to join our team, where you’ll have the chance to grow your career while solving impactful, high-scale problems. This role is centered on securing our cloud infrastructure, with a strong focus on Kubernetes, in close collaboration with the broader Security department. The ideal candidate will play a crucial role in managing our Cloud Security Posture using CNAPP/CSPM tools such as Wiz, and in hardening our cloud-native environments, while also supporting our AppSec team in securing CI/CD pipelines. The role also involves managing Web Application Firewalls in collaboration with our Advanced Threat Detection team, participating in security incident response, conducting infrastructure audits, and managing our Just-In-Time (JIT) access system. A person in this role will be part of the team serving as a key point of communication and synchronization between the several groups of stakeholders (Infrastructure, Development, Security), fostering a culture of security awareness and collaboration across all teams.
The role is based in our Warsaw office - established in 2022, it is a growing hub for engineers who love solving impactful problems. Teams here work on a broad range of challenges that push the boundaries of our products and infrastructure. Dive into these blog posts to discover the kind of work that could be waiting for you:
- Detecting traffic anomalies at scale
- Managing Trace Volume at monday.com
- How we mastered Content Security Policy
- Guarding the herd – managing database servers at scale
About The Role
Cloud & Kubernetes Security:
- Manage our Cloud Security Posture using CNAPP/CSPM tools such as Wiz, AWS GuardDuty, and DataDog.
- Harden and continuously monitor our cloud-native environments, with particular focus on Kubernetes.
- Manage security cloud configuration with tools like Terraform and CDK.
- Collaborate with cloud operations teams to identify and remediate security risks.
Web Application Firewalls:
- Configure and manage WAFs (such as Cloudflare) in collaboration with our Advanced Threat Detection team.
- Monitor and update WAF rules to respond to new vulnerabilities and attack vectors.
- Conduct regular security assessments and audits of WAF configurations.
Incident Response & Infrastructure Audits:
- Participate in security incident response.
- Conduct regular infrastructure security audits.
- Identify and remediate security threats, collaborating with other teams to mitigate risks.
Access Management:
- Manage our Just-In-Time (JIT) access system.
- Manage dozens of cloud accounts and design access roles (IAM) across the organization.
- Ensure secure access to resources such as Kubernetes clusters, databases, cloud resources, and virtual machines.
Security Self Service & Tooling:
- Develop security tools within the organization's internal developer platform (IDP).
- Test and run PoCs of new security tools to increase efficiency and foster a Secure by Design culture.
- Provide support to our AppSec team in securing CI/CD pipelines.
Your Experience & Skills
- At least 5 years of experience as a Software Engineer and a minimum of 3 years as a DevOps Engineer.
- Passion for keeping systems secure.
- Proficiency in any of languages Python/Go/Typescript.
- Experience with Kubernetes.
- Strong understanding of operating systems and networking.
- Understanding of IAM and access management concepts (e.g. Just-In-Time access, role design).
- Excellent problem-solving and communication skills.
Nice to have:
- Experience with cloud security tools such as Wiz, AWS GuardDuty, DataDog, or similar CNAPP/CSPM platforms.
- Experience with configuring and managing Web Application Firewalls (WAFs) such as AWS WAF, Cloudflare, or similar.
Salary & Compensation
At monday.com, our total compensation package includes:
- Base salary
- Bonus target
- Restricted Stock Units (RSUs)
The total target monthly compensation for this role ranges from 44,000 PLN to 54,000 PLN.
The total compensation package shown here reflects the current monday.com stock price and may change over time as the stock price varies.The target bonus and RSU grant are discretionary, depend on individual and company performance, and are subject to Board approval and the company’s equity plan, in line with monday.com’s bonus policy as updated from time to time. The benefits listed reflect programs currently offered in Poland; availability and terms may vary depending on the role, contract type, and company policy. These details do not constitute an employment offer or guarantee and may be modified at the company’s discretion, in accordance with applicable law.
What to expect next?
- First up, you'll have a quick 15-20 minute chat with our Talent Acquisition Partner.
- If that goes well, we'll move forward to technical stages that might include: design brainstorm (90 minutes), system design interview (1 hour), and stakeholder management (45 minutes).
- If successful, we'd love to meet you in person too! So, the final stages will be in our Warsaw office, where you'll have a Management Interview and an HR Interview, each lasting about an hour.
- If everything clicks, we'll be thrilled to offer you a spot on our team!
**What** monday.com can offer you:
- Opportunity to join an innovative, proven company with big ambitions, competitive salary and benefits, bonus potential, and some roles are eligible to take part in the company equity incentive program.
- A team that values transparency and collaboration while having fun while we work.
- From Monday to Wednesday, we'll fuel your day with free breakfast and lunch in the office.
- Comprehensive private medical care, life insurance, and a Multisport card to keep you active and healthy.
- We care of employee's mental health as well - you will get access to Calm Mindfulness App.
- Get awesome discounts on our partners' products and services.
- Regular team get-togethers and fun events, plus special gifts to mark your birthday and work anniversaries.
- Fully dedicated learning and development team that provides opportunities for employees to grow, gain new skills, master AI tools, and participate in workshops
- Award winning work environment - named a "Best Place to Work" by Built In as well as "Great Place To Work" certified.
- We foster diversity, inclusion, and belonging through our Employee Resource Groups in addition to providing access to resources and education to support our team, facilitate conversations, and encourage understanding.
- A global work environment with employees in New York, Tel Aviv, London, Sydney, São Paulo, Tokyo, and more.