devsecops experience: minimum 5+ years of hands-on experience in devsecops, cloud
engineering, or operations roles, with demonstrated expertise in integrating security into
continuous integration and continuous deployment pipelines.
multi-cloud expertise: strong proficiency in implementing security controls and managing
compliance across aws (preferred), azure, and gcp platforms, including deep knowledge of
identity services (iam, workload identity), network security, and data protection offerings.
infrastructure as code and automation: expertise with infrastructure-as-code tools such as
terraform, cloudformation, or ansible, with ability to implement automated security
compliance checking and remediation across cloud platforms.
ci/cd and devops tools: extensive experience with ci/cd platforms (jenkins, aws
codepipeline, github actions, azure devops) and container orchestration tools (docker,
kubernetes), including implementation of security scanning and policy enforcement.
programming and scripting: proficiency in scripting and programming languages commonly used
in automation and security tooling, such as python, bash, or go, with ability to develop custom
solutions and automation frameworks.
security testing and scanning: expertise in security testing methodologies, including static
application security testing (sast), dynamic application security testing (dast), software
composition analysis (sca), and container scanning tools.
cloud security standards: deep knowledge of security best practices, compliance frameworks
(soc 2, iso , cis benchmarks, owasp), and regulatory requirements relevant to financial
services and data protection (gdpr, data residency requirements).
api and application security: understanding of secure api design principles, authentication
protocols (oauth, saml, mtls), encryption standards, secrets management solutions, and
application security testing frameworks.
networking and infrastructure security: strong understanding of network security principles,
including vpcs, firewalls, network segmentation, ddos protection, ssl/tls, vpn, and network
monitoring solutions.
incident response and forensics: experience developing incident response procedures,
conducting security investigations, analyzing logs, and implementing threat detection and
monitoring capabilities.
container and kubernetes security: knowledge of container security best practices, image
scanning, runtime security, policy enforcement, and securing kubernetes environments across
cloud platforms.
Experience
5 - 7 Years
No. of Openings
1
Education
B.E, B.Tech [Information Technology], Any Bachelor Degree
Role
Devsecops Engineer
Industry Type
IT-Hardware & Networking / IT-Software / Software Services
Gender
[ Male / Female ]
Job Country
India
Type of Job
Full Time
Work Location Type
Work from Home
Face interview location
bengaluru/remote