<?xml version="1.0" encoding="UTF-8"?>
<source>
  <jobs>
    <job>
      <externalid>affa7659-e53</externalid>
      <Title>Senior AEM DevSecOps Engineer</Title>
      <Description><![CDATA[<p>Secure Every Identity, from AI to Human</p>
<p>Identity is the key to unlocking the potential of AI. As an AEM DevSecOps Engineer at Okta, you will oversee and automate our AEM infrastructure with a primary focus on security, reliability, and automated compliance.</p>
<p>Key Responsibilities:</p>
<ul>
<li>Identity &amp; Access Management: Configure and manage Auth0 integrations for AEM, including token validation, OIDC/SAML configurations, and custom login modules to ensure secure user authentication.</li>
</ul>
<ul>
<li>Headless Security: Oversee the security of AEM Headless deployments, including protecting GraphQL endpoints, managing CORS policies, and ensuring secure communication for decoupled front-end frameworks (React/Angular).</li>
</ul>
<ul>
<li>Edge &amp; CDN Protection: Manage and configure CDN (e.g., Cloudflare, Akamai, or Adobe-managed CDN) to optimize performance and implement DDoS mitigation strategies.</li>
</ul>
<ul>
<li>Traffic Filtering: Implement and maintain Traffic Filter Rules and Web Application Firewall (WAF) configurations at the CDN level to block malicious spikes and sophisticated application-layer attacks.</li>
</ul>
<ul>
<li>Automated Security Scanning: Integrate security tools (SAST/DAST) and secrets detection into CI/CD pipelines (Jenkins, GitLab) to identify vulnerabilities early in the development cycle.</li>
</ul>
<ul>
<li>Environment Hardening: Install and manage AEM author, publish, and dispatcher instances with a focus on Dispatcher security hardening, SSL certificate automation, and ModSecurity configurations.</li>
</ul>
<ul>
<li>Observability &amp; Incident Response: Monitor system performance and security logs using tools like Splunk or New Relic to proactively address threats and performance bottlenecks.</li>
</ul>
<ul>
<li>Compliance Auditing: Regularly audit the platform and its integrations (Adobe Analytics, Target) to ensure alignment with corporate security policies and industry standards.</li>
</ul>
<p>Required Skills &amp; Experience:</p>
<ul>
<li>Experience: 5+ years in administering and securing AEM environments.</li>
</ul>
<ul>
<li>Identity Services: Proven experience integrating Auth0 or similar Identity Providers (IdP) for enterprise-scale authentication.</li>
</ul>
<ul>
<li>Architectural Knowledge: Strong understanding of Headless CMS security best practices, including API key management and JWT authentication.</li>
</ul>
<ul>
<li>Network Security: Expertise in managing CDNs and implementing DDoS mitigation and WAF rules.</li>
</ul>
<ul>
<li>Technical Stack: Proficiency in Apache Sling, JCR, OSGi, and web servers like Nginx or Apache.</li>
</ul>
<ul>
<li>Automation: Hands-on experience with scripting (Python) and CI/CD tools (Jenkins, CircleCI) to automate security and deployment workflows.</li>
</ul>
<ul>
<li>Cloud Experience: Experience with cloud-based AEM implementations, such as AEM as a Cloud Service (AEMaaCS) or AWS/Azure.</li>
</ul>
<ul>
<li>Diagnostic Skills: Proficiency in analyzing log files, thread dumps, and heap dumps to resolve security incidents or performance outages.</li>
</ul>
<p>The Okta Experience</p>
<ul>
<li>Supporting Your Well-Being</li>
</ul>
<ul>
<li>Driving Social Impact</li>
</ul>
<ul>
<li>Developing Talent and Fostering Connection + Community</li>
</ul>
<p>We are intentional about connection. Our global community, spanning over 20 offices worldwide, is united by a drive to innovate. Your journey begins with an immersive, in-person onboarding experience designed to accelerate your impact and connect you to our mission and team from day one.</p>
<p style="margin-top:24px;font-size:13px;color:#666;">XML job scraping automation by <a href="https://yubhub.co">YubHub</a></p>]]></Description>
      <Jobtype>full-time</Jobtype>
      <Experiencelevel>senior</Experiencelevel>
      <Workarrangement>remote</Workarrangement>
      <Salaryrange></Salaryrange>
      <Skills>Experience in administering and securing AEM environments, Identity Services: Proven experience integrating Auth0 or similar Identity Providers (IdP) for enterprise-scale authentication, Architectural Knowledge: Strong understanding of Headless CMS security best practices, including API key management and JWT authentication, Network Security: Expertise in managing CDNs and implementing DDoS mitigation and WAF rules, Technical Stack: Proficiency in Apache Sling, JCR, OSGi, and web servers like Nginx or Apache</Skills>
      <Category>Engineering</Category>
      <Industry>Technology</Industry>
      <Employername>Okta</Employername>
      <Employerlogo>https://logos.yubhub.co/okta.com.png</Employerlogo>
      <Employerdescription>Okta is a technology company that provides identity and access management solutions.</Employerdescription>
      <Employerwebsite>https://www.okta.com/</Employerwebsite>
      <Compensationcurrency></Compensationcurrency>
      <Compensationmin></Compensationmin>
      <Compensationmax></Compensationmax>
      <Applyto>https://job-boards.greenhouse.io/okta/jobs/7688701</Applyto>
      <Location>Poland</Location>
      <Country></Country>
      <Postedate>2026-04-18</Postedate>
    </job>
    <job>
      <externalid>68e291fb-412</externalid>
      <Title>Senior Security Engineer</Title>
      <Description><![CDATA[<p>Talent Wanted. For hazardous journey. Small wages, bitter cold, long months of complete darkness, constant danger, safe return doubtful. Honour and recognition in case of success.</p>
<p>Fridtjof Nansen crossed the Arctic, going places no human had ever been. Together with our users, we&#39;re doing the same onchain , and someone needs to make sure we don&#39;t get killed on the way there.</p>
<p>We&#39;re building the single best platform for onchain investing , agentic trading, staking infrastructure, AI-powered analytics , and we&#39;re scaling fast. Fast enough that security can&#39;t be an afterthought bolted on later. It has to be built in, from the start, by someone who knows what they&#39;re doing.</p>
<p><strong>Our mission:</strong></p>
<p>Surface the signal and create winners.</p>
<p><strong>What you&#39;ll do at Nansen</strong></p>
<p>You&#39;ll be the person who makes sure we can move fast without breaking things that matter. That means embedding security into everything we build , cloud infrastructure, applications, CI/CD pipelines, AI systems, staking operations , across a generalist role that spans the full surface area.</p>
<ul>
<li>Run security assessments across systems, architectures, and code , find the vulnerabilities before someone else does</li>
<li>Advise engineering teams on secure design decisions. You&#39;re a partner, not a blocker</li>
<li>Deploy and maintain security infrastructure: SIEM, vulnerability scanning, endpoint protection, logging , the things that let us sleep at night</li>
<li>Secure our CI/CD pipelines and deployment workflows end-to-end</li>
<li>Own secrets management, key management, and access controls. No shortcuts</li>
<li>Address LLM security head-on: API key management, prompt injection prevention, and the risks that come with shipping AI-powered products at speed</li>
<li>Coordinate penetration tests and security audits with external vendors</li>
<li>Create and maintain secure coding guidelines and code review processes that engineers actually follow</li>
<li>Represent the Security Team in the incident response process</li>
<li>Drive compliance readiness , SOC 2, ISO 27001 , pragmatically, not bureaucratically</li>
</ul>
<p><strong>What we&#39;re looking for</strong></p>
<ul>
<li>You&#39;ve built and hardened production security at scale , you know the difference between a policy document and an actually secure system</li>
<li>Strong cloud security knowledge (AWS, GCP or equivalent). Container security and network security fundamentals</li>
<li>Hands-on experience implementing security tooling, not just evaluating it</li>
<li>Secrets and key management expertise , you&#39;ve managed this at a company where it actually mattered</li>
<li>You understand the security implications of AI/LLM and agent-based systems. This is new territory and we need someone thinking about it seriously</li>
<li>CI/CD pipeline security is second nature</li>
<li>Pragmatic about compliance , you can get us to SOC 2 without drowning the engineering team in process</li>
<li>You don&#39;t just use AI as a tool. You think with it. AI-first isn&#39;t a checkbox , it&#39;s how you work</li>
<li>Strong async communication skills , we&#39;re remote-first, Slack-and-docs-heavy, and EMEA hours are preferred for team overlap</li>
<li>Bonus: blockchain, smart contract, or staking infrastructure security experience. Kubernetes and Terraform security. Incident response or security operations background</li>
</ul>
<p><strong>What we offer our crew</strong></p>
<ul>
<li>Competitive salary. Meaningful equity. Real ownership in what you build</li>
<li>Fully remote with two no-meeting days a week , because deep work doesn&#39;t happen in a Google Meet</li>
<li>Annual company retreat and team off-sites in one of our offices: Singapore, Bangkok, London, and Oslo , flights and accommodation covered</li>
<li>Unlimited AI tokens , Claude, OpenAI, whatever helps you move fast</li>
<li>Your own OpenClaw for work</li>
<li>Nansen Pro account: giving you full access to the most detailed onchain data in the market</li>
<li>A team that started as data engineers and data scientists that has grown to over 80 builders. Your craft is respected here.</li>
<li>Speed, ownership, curiosity, courage. These aren&#39;t values on a wall , they&#39;re how we run.</li>
<li>A front-row seat (and a hand in building) the next chapter of finance</li>
</ul>
<p style="margin-top:24px;font-size:13px;color:#666;">XML job scraping automation by <a href="https://yubhub.co">YubHub</a></p>]]></Description>
      <Jobtype>full-time</Jobtype>
      <Experiencelevel>senior</Experiencelevel>
      <Workarrangement>remote</Workarrangement>
      <Salaryrange></Salaryrange>
      <Skills>cloud security, container security, network security, security tooling, secrets management, key management, access controls, API key management, prompt injection prevention, LLM security, CI/CD pipeline security, compliance, SOC 2, ISO 27001, blockchain security, smart contract security, staking infrastructure security, Kubernetes security, Terraform security, incident response, security operations</Skills>
      <Category>Engineering</Category>
      <Industry>Technology</Industry>
      <Employername>Nansen</Employername>
      <Employerlogo>https://logos.yubhub.co/nansen.ai.png</Employerlogo>
      <Employerdescription>Nansen is a company building a platform for onchain investing, agentic trading, staking infrastructure, and AI-powered analytics.</Employerdescription>
      <Employerwebsite>https://nansen.ai/</Employerwebsite>
      <Compensationcurrency></Compensationcurrency>
      <Compensationmin></Compensationmin>
      <Compensationmax></Compensationmax>
      <Applyto>https://job-boards.greenhouse.io/nansen/jobs/5811520004</Applyto>
      <Location>Remote Europe | Remote Asia</Location>
      <Country></Country>
      <Postedate>2026-04-17</Postedate>
    </job>
  </jobs>
</source>