Box is the market leader for Cloud Content Management. Our mission is to power how the world works together. Box is partnering with enterprise organizations to accelerate their digital transformation by creating a single platform for secure content management, collaboration and workflow. We have an amazing opportunity to further establish ourselves as leaders in the space, and we need strong advocates to help us achieve that goal. 
By joining Box, you will have the unique opportunity to help capture a majority of this developing market and define what content management looks like for the digital enterprise. Today, Box powers over 100,000 businesses, including 70% of the Fortune 500 who trust Box to manage their content in the cloud. 
The DevSecOps Engineer will integrate with cross-functional teams to help solve complex Security Engineering challenges, challenges that will only grow as Box hits exabyte scale. This role will directly impact the experience of Box’s 85 million users and Box’s ability to scale profitably as we grow. 
  • You will research, evaluate and implement new cloud technologies and tools

  • You will work closely with the DevOps teams and other engineering groups on designing and implementing new solutions and be a trusted advisor for security-related aspects

  • You will deliver designs, analysis, architecture and automation to improve risk posture and to secure Box infrastructure and processes

  • You will develop secure architecture patterns and provide prescriptive guidance on securing networks, operation systems, services, etc.

  • Support and grow a high performing organization that is building the services that stop attackers and help drive preventative measures throughout Box's systems and production environment

  • Will be a part of on-call rotation

  • Shifted hours occasionally needed for collaboration with the Global Security and Engineering Teams



  • At least 3-5 years in a DevOps role, Security experience a plus

  • Proven interest in the InfoSec field (Security+, SSCP, GCP Professional Cloud Security Engineer, AWS Certified Security Specialty, etc)

  • 3+ years of experience working with with Kubernetes and Compute instances with IaC in Puppet, Terragrunt and Packer

  • Expertise in at least one major cloud platform (AWS, GCP, Azure), GCP preferred

  • Familiarity with DevSecOps toolbox and technologies
  • Expertise in building cloud services and distributed systems

  • Working knowledge of data tagging and identification

  • Experience with high-availability operations management, including deployment automation, patching and rollback strategies

  • Demonstrated creative, critical and independent thinking capabilities and troubleshooting skills

  • Proficiency in developing and/or extending solutions in Python and Bash.

  • Hands-on experience in Linux

  • Can demonstrate knowledge of the security aspects of images, containers and Kubernetes

  • Previous experience in deploying hardening protections at the endpoint

  • Passionate about engineering perfection, performance, and quality

  • Enthusiasm for new technologies and growth

We are an equal opportunity employer and value diversity at our company. We do not discriminate on the basis of race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, or disability status.
For details on how we protect your information when you apply, please see our Personnel Privacy Notice.
For more details on how Box Poland protects your information, please see our Supplemental Personnel and Candidate Privacy Notice


Apply for this Job

* Required

resume chosen  
(File types: pdf, doc, docx, txt, rtf)
cover_letter chosen  
(File types: pdf, doc, docx, txt, rtf)

Please reach out to our support team via our help center.