04 Aug
|
HuntingCube
|
Gurugram
04 Aug
HuntingCube
Gurugram
Senior DevSecOps Engineer (C15) Position Overview Name of position: Senior DevSecOps Engineer (Grade C15) Number of Positions: Multiple Location of Position: Gurgaon / Remote / Hybrid (As per policy) Sourcing Location: Local NCR candidates OR outstation candidates open for Relocation Mode of work: Hybrid (3 Days Office / 2 Days WFH) Background of position (Pitch for recruiters): Expanding the enterprise cloud engineering and security operations team to identify top talent with strong DevSecOps expertise, cloud security experience, and a security-first engineering mindset to secure modern CI/CD pipelines and cloud-native infrastructure.
Required Experience level: 5 – 10 Years Required Key Skills: Microsoft Azure, Kubernetes, Docker, Infrastructure as Code (Terraform), Azure DevOps, Azure Key Vault, Application Security, SAST/DAST Security Scanning, Container Security, Vulnerability Management.
Required Qualifications: B.Tech / B.E. / MCA
- Relevant Cloud or Security Certifications (e.g., Azure Security Engineer AZ-500, Certified Kubernetes Administrator CKA, or DevSecOps certifications) are preferred.
CTC being offered: ₹20 – 28 LPA Fixed ₹2 – 3 LPA Variable Notice Period: Open / Immediate joiners preferred Recruitment process: 2–3 Technical Rounds HR Discussion (Online / Virtual) Company Profile: Leading global technology capability hub delivering enterprise-grade cloud platforms, security-first engineering solutions, and digital transformation.
Good to have: Strong preference for Software Engineers with DevSecOps expertise over traditional Infrastructure/Operations Engineers.
Job Purpose Working within the Cloud &
- DevSecOps team, the Senior DevSecOps Engineer is a strong Individual Contributor and hands-on technical expert. The engineer covers a wide range of technical accountabilities including designing, automating, and delivering secure, scalable cloud engineering solutions. The role requires a security-first approach across the software development lifecycle, driving automation, and implementing robust container and cloud security frameworks. Accountabilities and Responsibilities Hands-on Secure Engineering: Deliver secure and scalable engineering solutions independently as a strong technical Individual Contributor.
Secure Pipeline Automation: Build, maintain, and manage secure CI/CD pipelines using Azure DevOps, integrating automated security scanning, vulnerability management, and SAST/DAST tooling. Infrastructure as Code (IaC): Provision, manage, and harden cloud infrastructure on Microsoft Azure using Terraform. Container &
- Cloud-Native Security: Deploy, manage, and secure Docker containers and Kubernetes clusters, driving container security standards.
Secrets Management: Secure applications, API keys, and operational credentials using Azure Key Vault and cloud-native access protocols. Automation &
- Process Improvement:
Continuously identify opportunities for automation, replacing manual tasks with automated scripts and security workflows. End-to-End Ownership: Demonstrate complete ownership of deliverables, taking initiative beyond assigned responsibilities to proactively suggest and implement new ideas. Application &
- SDLC Security: Implement secure software development practices, secure coding guidelines, and application architecture checks across the entire software development lifecycle. Qualifications, Skills &
Experience Technical Must-Have Skills: Hands-on Experience: 5–10 years of strong hands-on experience in DevSecOps, Cloud Security, and Software Engineering. Cloud &
- Secrets Management: In-depth expertise in Microsoft Azure and Azure Key Vault. Containers &
- Orchestration: Strong, hands-on experience with Kubernetes and Docker.
Infrastructure as Code: High proficiency in writing and maintaining Terraform scripts for cloud infrastructure. CI/CD &
- Security Tools: Deep hands-on experience with Azure DevOps, automated security scanning, and vulnerability management tools. AppSec &
- SDLC: Solid understanding of application architecture, secure software development, and Application Security principles.
Technical
Preferred (Nice to Have) Skills: Strong preference for former Software Engineers who have transitioned into DevSecOps over pure Infrastructure/Operations Engineers. Hands-on experience with container runtime security tools and cloud compliance automation.
Other
Skills &
Experience: Strong ownership, accountability, and proactive problem-solving mindset. Ability to work independently and drive technical security initiatives without close supervision. Excellent technical documentation and cross-functional communication skills.
Judgement
Skills &
- Autonomy Logical and analytical approach to cloud-native security and software solutions. Proactive mindset to continuously identify opportunities for process improvement, security enhancements, and automation. High degree of technical autonomy as an Individual Contributor, taking full accountability for assigned features and engineering outcomes.
Core Competencies
Collaboration &
- Influence: Partner effectively with cross-functional engineering teams to embed security-first practices across pipelines. Development &
- Capability: Take ownership of personal technical learning, mastering emerging DevSecOps, cloud-native, and container technologies. Ownership &
- Performance: Demonstrate end-to-end ownership,
taking initiative beyond assigned tasks to deliver high-quality, secure solutions. Risk Management &
- Compliance: Maintain a security-first approach, ensuring all cloud solutions comply with organizational security benchmarks. Agility &
- Change: Proactively drive automation and process improvements, staying adaptable to evolving cloud technologies.
Required Skills
[Azure Boards, Azure Key Vault, IaC, PaaS, Kubernetes, Docker, Azure DevOps, CI/CD, Flux CD, Helm, PowerShell, Python, SDLC/STLC, GitOps]
Additional Information
Technical Must-Have Skills: Hands-on Experience: 5–10 years of strong hands-on experience in DevSecOps, Cloud Security, and Software Engineering. Cloud &
- Secrets Management: In-depth expertise in Microsoft Azure and Azure Key Vault. Containers &
- Orchestration: Strong, hands-on experience with Kubernetes and Docker.
Infrastructure as Code: High proficiency in writing and maintaining Terraform scripts for cloud infrastructure. CI/CD &
- Security Tools: Deep hands-on experience with Azure DevOps, automated security scanning, and vulnerability management tools. AppSec &
- SDLC: Solid understanding of application architecture, secure software development, and Application Security principles.
Technical
Preferred (Nice to Have) Skills: Strong preference for former Software Engineers who have transitioned into DevSecOps over pure Infrastructure/Operations Engineers. Hands-on experience with container runtime security tools and cloud compliance automation.
Other
Skills &
Experience: Solid ownership, accountability, and proactive problem-solving mindset. Ability to work independently and drive technical security initiatives without close supervision. Excellent technical documentation and cross-functional communication skills.
Judgement
Skills &
- Autonomy Logical and analytical approach to cloud-native security and software solutions. Proactive mindset to continuously identify opportunities for process improvement, security enhancements, and automation. High degree of technical autonomy as an Individual Contributor, taking full accountability for assigned features and engineering outcomes.
Core Competencies
Collaboration &
- Influence: Partner effectively with cross-functional engineering teams to embed security-first practices across pipelines. Development &
- Capability: Take ownership of personal technical learning, mastering emerging DevSecOps, cloud-native, and container technologies. Ownership &
- Performance: Demonstrate end-to-end ownership, taking initiative beyond assigned tasks to deliver high-quality, secure solutions. Risk Management &
- Compliance: Maintain a security-first approach, ensuring all cloud solutions comply with organizational security benchmarks. Agility &
- Change: Proactively drive automation and process improvements, staying adaptable to evolving cloud technologies.
📌 Senior Devsecops Engineer (Gurugram)
🏢 HuntingCube
📍 Gurugram