01 Zakres zadań
Do you want to work for one of the world’s largest global banks? Want to be part its exciting digital transformation? Do you want to engineer incredible products for millions of customers?
Well, our Client offers just that ☺︎
Overview:
Own and evolve our Jenkins Shared Library powering multi-language builds (Java/Maven, Node/NPM, Python, Helm, Terraform, containers). Deliver fast, secure, provenance-rich pipelines (SLSA, SBOM, digests) and strengthen supply-chain integrity across teams.
What you will do:
- Design and maintain Groovy pipeline steps (build, test, package, scan, deploy)
- Extend Python tooling for SLSA provenance, SBOM generation, hash/digest accuracy, and security scan aggregation (SonarQube, Sonatype IQ, SAST/Container)
- Optimize performance (parallel builds, caching, scope-reduced BOMs, dependency prefetch)
- Ensure artifact integrity (correct SHA1/SHA256 mapping, reproducible inputs, evidence modeling)
- Refactor legacy scripts (remove global state, consolidate hashing, standardize templates)
- Document ci-config.yaml standards and usage patterns
- Mentor engineers on secure pipeline development and supply-chain practices
- Troubleshoot and prevent pipeline incidents
