Hybrid job
HybridDevSecOps, Automation & Innovation Engineer | IT CIB
Natixis in Portugal
Key points from the posting
- Tech stack
- CI/CDInfrastructure-as-CodeGitOpsDockerKubernetesOpenShiftservice meshpolicy-as-codeobservabilityPlatform-as-a-Service (PaaS)AI agentsLLMs
- Seniority:
- Senior
Automatically extracted
Our assessment
- 54 more open roles from this employer in our index.
Automated assessment by nomado24, not an employer statement.
Job description
We are seeking an Automation & Innovation Engineer to join the IT Transversal (IT TRV) Innovation & Development team — a forward-looking role driving automation transformation and continuous innovation of CIB's development and deployment ecosystem.
Key Responsibility Areas:
1. Automation Transformation Leadership
Primary: Eliminate manual development and operational toil
- Design and implement comprehensive CI/CD pipeline automation across CIB
- Automate infrastructure provisioning through Infrastructure-as-Code principles and tooling
- Establish GitOps principles for configuration management and deployment
- Automate security validation, compliance checks, and dependency scanning
- Drive adoption of containerization (Docker) and orchestration (Kubernetes/OpenShift)
- Create self-healing infrastructure that requires minimal human intervention
- Eliminate manual security reviews through automated security gates
2. Innovation Leadership & Technology Prototyping
Primary: Drive continuous innovation in automation practices
- Lead innovation lab activities — prototype and validate emerging automation technologies (service mesh, policy-as-code, advanced observability, GitOps tools)
- Conduct technology watch on DevOps, security automation, and AI4DevOps trends
- Create proof-of-concept implementations for cutting-edge tools/frameworks
- De-risk adoption of emerging technologies before enterprise-wide rollout
- Transfer innovations and c ompetencies to Development Squad and Business IT teams (IT TRV, IT GMT, IT GBCR)
- Establish automation excellence center standards and best practices
- Present findings and recommendations to CIB CIO community
3. Self-Service Platform Engineering
Primary: Build automation platform enabling team independence
- Design and maintain internal platform (CI/CD, IaC, observability, security scanning)
- Create Platform-as-a-Service (PaaS) abstractions hiding infrastructure complexity
- Enable developers to deploy code securely without manual security reviews
- Establish platform as reusable asset available to IT Transversal, GMT, and GBCR teams
- Build self-service capabilities (provisioning, deployments, rollbacks)
- Document and evangelize platform usage through training and community building
4. Developer Experience & Productivity Innovation
Primary: Reduce friction and enable developer happiness
- Measure "developer toil" — manual, repetitive work slowing down delivery
- Enable fast feedback loops — deployment feedback in seconds, not hours
- Design frictionless onboarding — new team members productive in days
- Build tools that feel like "magic" — developers don't need to understand infrastructure
- Conduct regular feedback sessions with development teams to identify pain points
5. Velocity Metrics & Continuous Improvement
Primary: Drive measurable improvements in team performance
DORA Metrics Targets:
Metric Target
Deployment frequency Daily or multiple-times-daily
Lead time for changes Reduce from weeks to days/hours
Time-to-recovery (MTTR) Reduce by 50%+
Change failure rate Reduce failed deployments
Automation Coverage Targets:
Area Target
Infrastructure-as-Code coverage 100%
Security validation automation 90%+
Testing automation 95%+
Self-service deployment adoption 90%+
6. AI4DevOps Innovation & Intelligent Automation
Primary: Pioneer AI-driven automation in CIB's DevOps ecosystem
- Design and deploy AI agents for infrastructure provisioning, deployment automation, and incident remediation
- Establish AI Agent Governance frameworks :
- Define permission systems and privilege boundaries for AI agents
- Implement containment strategies ensuring safe agent operation in production
- Establish audit trails and decision logging for agent actions
- Implement AI-driven threat modeling and proactive security:
- Leverage LLMs for threat modeling and adversary behavior anticipation
- Move from reactive compliance to proactive security hardening
- Build observability and tracing for AI agents (causal graph tracing, confidence metrics)
- Design data governance policies for AI agents (prevent data exfiltration, implement redaction)
- Develop "agent-ready" infrastructure code (idempotent, predictable, safe for AI consumption)
- Establish hybrid human-AI workflows with clear escalation paths
Experience & Education
- Bachelor's degree in Computer Science, Engineering, or equivalent experience
- 5+ years in DevOps, Infrastructure Engineering, SRE, or related roles
- 3+ years driving innovation, prototyping technologies, or leading architectural improvements
- Proven track record of reducing manual toil and improving team velocity
- Familiarity with financial services or …
This role is provided by an external source. Applications are handled on the source website.
