3

DevSecOps Engineer Graduate Jobs in Bangalore

filter
  • Location
  • Experience
  • Role
  • Functional Area
  • Qualification
  • Employer Type
  • 8 - 10 yrs
  • 22.5 Lac/Yr
  • Bangalore
GCP Developer Cloud Computing TERRAFORM Devsecops Engineer
Work Locations: Bangalore Work Mode: Hybrid Experience: 8+ Years GCP Experience: 5+ Years - MandatoryWe are looking for an experienced Senior GCP Cloud Security Specialist to lead cloud security architecture, governance, compliance, cloud hardening, and secure infrastructure automation across Google Cloud environments. Mandatory Skills: GCP - Mandatory 5+ years hands-on GCP experience GCP Cloud Security Cloud Security Architecture Terraform DevSecOps Cloud Governance & Security Controls Compliance, Risk & Audit Support Key Responsibilities: Lead security architecture reviews, security assessments, and cloud hardening across GCP environments. Design and implement secure GCP landing zones, governance controls, and enterprise security guardrails. Strengthen identity security, access management, data protection, and cloud-native security controls. Implement and automate secure infrastructure deployments using Terraform. Integrate security controls into CI/CD pipelines and drive DevSecOps practices. Support cloud service certification, security control mapping, evidence collection, audit readiness, and security approvals. Collaborate with Architecture, Engineering, Security, Risk, and Compliance teams. Support cloud security governance, regulatory compliance, risk management, and audit activities. Industry Experience:Candidates with experience in Financial Services / Banking / Capital Markets / Insurance are highly preferred.Experience working within highly regulated environments and supporting regulatory-driven cloud programs is a strong advantage. Preferred Qualifications: Google Professional Cloud Security Engineer certification Experience supporting Tier-1 financial institutions Cloud service onboarding, certification, and security sign-off experience Experience with regulatory-driven cloud transformation programs
View all details
  • 5 - 7 yrs
  • Bangalore
Devops Engineer Cloud Cloud Security Standard CICD API Security Network Security
DevSecOps Experience: Minimum 5+ years of hands-on experience in DevSecOps, cloud engineering, or operations roles, with demonstrated expertise in integrating security into continuous integration and continuous deployment pipelines. Multi-Cloud Expertise: Strong proficiency in implementing security controls and managing compliance across AWS (preferred), Azure, and GCP platforms, including deep knowledge of identity services (IAM, Workload Identity), network security, and data protection offerings. Infrastructure as Code and Automation: Expertise with infrastructure-as-code tools such as Terraform, CloudFormation, or Ansible, with ability to implement automated security compliance checking and remediation across cloud platforms. CI/CD and DevOps Tools: Extensive experience with CI/CD platforms (Jenkins, AWS CodePipeline, GitHub Actions, Azure DevOps) and container orchestration tools (Docker, Kubernetes), including implementation of security scanning and policy enforcement. Programming and Scripting: Proficiency in scripting and programming languages commonly used in automation and security tooling, such as Python, Bash, or Go, with ability to develop custom solutions and automation frameworks. Security Testing and Scanning: Expertise in security testing methodologies, including static application security testing (SAST), dynamic application security testing (DAST), software composition analysis (SCA), and container scanning tools. Cloud Security Standards: Deep knowledge of security best practices, compliance frameworks (SOC 2, ISO 27001, CIS Benchmarks, OWASP), and regulatory requirements relevant to financial services and data protection (GDPR, data residency requirements). API and Application Security: Understanding of secure API design principles, authentication protocols (OAuth, SAML, mTLS), encryption standards, secrets management solutions, and application security testing frameworks. Networking and Infrastructure Security: Strong understanding of network security principles, including VPCs, firewalls, network segmentation, DDoS protection, SSL/TLS, VPN, and network monitoring solutions. Incident Response and Forensics: Experience developing incident response procedures, conducting security investigations, analyzing logs, and implementing threat detection and monitoring capabilities. Container and Kubernetes Security: Knowledge of container security best practices, image scanning, runtime security, policy enforcement, and securing Kubernetes environments across cloud platforms.
View all details

Devsecops Engineer

Resourcetree Global Services

  • 3 - 6 yrs
  • 25.0 Lac/Yr
  • Bangalore
Cyber Security Engineer Cyber Security Application Security Testing Network Security Information Security Manual Testing Manual Tester Automation Testing
ESSENTIAL DUTIES AND RESPONSIBILITIES:1. Perform Application, API and Microservices Pentest2. Perform Network Pentest (Internal and External)3. Perform Mobile App Pentest, Mobile Assessments,4. Threat Modelling, Legal Reviews,5. Reporting and the PoCs of the vulnerabilities, and Documentation,6. Coordinate with various stakeholders,7. Perform R&Ds8. Other Security AnalysisMandatory Requirements:1. Relevant Experience in Security Domain: 3+ Years.2. Proven expertise & track record in Web Application Penetration testing (Web, Mobile.3. API/Web Services on JAVA & .Net) through DAST Manual approach.4. Proven expertise & track record in Mobile Application Penetration testing (Web, Mobile. API/Web Services on JAVA & .Net) through DAST Manual approach.5. Hands-on experience in DAST tools, API (SOAPUI, PostMan).6. Experience in DAST Manual Assessments, Threat Model and Penetration Testing.7. Good Network Pentest skills-sets for external and internal networks.8. Excellent written and verbal communication skills.Preferred Skillsets:1. Hands-on experience of DevSecOps.2. Good Knowledge of Java, .NET, SQL queries (Oracle, PostgreSQL etc).3. Experience in Automating Security tasks using Python or Java Frameworks and System/Network Exploitation is a bonus.4. Experience in Red Teaming.5. Handson experience, knowledge and understanding of Security Frameworks.6. Handson experience on MS Tools.
View all details