Lead Engineer - Cloud IND (Bengaluru)

Lead Engineer - Cloud IND (Bengaluru)

06 Aug
|
OSB Group
|
Bengaluru

06 Aug

OSB Group

Bengaluru

About us:
OsbIndia (OSBI) is an offshore subsidiary of OSB Group. OSBI was incorporated in 2004 as a key part of the OSB Group’s business strategy to provide operational service support. OSBI works with the Group’s trading brands in the UK, providing exceptional customer support and service delivery to new and existing customers.

OSBI also prides itself on offering operational excellence by devising and utilizing process improvements and functional efficiencies.

1. Job Purpose
The DevSecOps Engineer is a hands-on, delivery-focused individual with 5–8 years of experience responsible for implementing and maintaining DevSecOps processes, tools, and security measures in Azure and multi-Cloud environments. The DevSecOps Engineer will bring their experience to a talented group to further evolve the technical capabilities of OSB, drive improvements across processes and unlock new cloud capabilities for the group.

The DevSecOps Engineer will be a part of the Cloud Centre of Excellence and will work closely with multiple teams within OSB, such as the architecture review board, Engineering Teams, Cloud security team, IT operations, etc., to ensure comprehensive coverage of requirements for the Cloud platform across the Group.

2. Core Responsibilities

- Implement, maintain, and optimize DevSecOps processes, tools, and security measures in Azure and multi-Cloud environments to support engineering teams in delivering secure, reliable and efficient products.
- Collaborate with the Cloud Security Architect, SecOps and other teams to define and achieve security objectives for projects and programmes, in alignment with business and functional requirements.
- Integrate security best practices, regulations, policies, standards, and procedures into the development lifecycle, managing business and security risks.
- Develop, test, and deploy security-as-code for various Public Cloud compute services, Container platforms, and CI/CD pipelines, leveraging native services and the technologies provided.
- Ensure compliance with industry-standard controls such as CIS/NIST/GDPR/ISO/CSA CCM, and provide support with their implementation.
- Support architects in making design choices that consider security, scalability, and maintainability within Cloud services and CI/CD pipelines.




- Collaborate with application development teams to integrate SAST, SCA, and DAST tools into product feature pipelines and promote secure coding practices.
- Foster a culture of teamwork, collaboration, and continuous improvement among technical and business teams.
- Support with remediating security vulnerabilities in applications and infrastructure.
- Research and utilise up-to-date technologies to meet product requirements, compliance, and controls to enhance OSB’s Cloud security posture.
- Integrate Cloud-based Key Management services with various tools and applications.
- Utilize DevSecOps practices to automate security and compliance policies throughout the development lifecycle.
- Continuously monitor and improve OSB's Cloud security posture using Cloud-native tools and guardrails.

3. Experience Requirements

- Strong hands-on expertise in Azure DevOps or any other cloud, Primarily on Azure.
- Strong experience with Helm, Terraform, and Kubernetes.
- Build and enhance CI/CD pipelines (Azure DevOps/GitHub Actions/GitLab) with integrated security tools (e.g., SAST, DAST, SCA)
- Experience working with Azure Repos/ Git repository, Azure Pipelines, Azure Artefact Feeds, Azure Key Vault, Azure Kubernetes Service (AKS), and Azure Container Registry.
- Automate security scanning and compliance checks into pipelines (e.g., using tools like SonarQube, OWASP ZAP, Checkov, Jib, Trivy, Snyk etc.)
- Develop and enforce Infrastructure as Code (IaC) security policies using Terraform, Bicep, or ARM templates.
- Enable Secrets management and key rotation using Azure Key Vault and related tooling.
- Collaborate with Security teams to align security posture with enterprise guidelines.
- Integrate identity and access management (IAM) into CI/CD workflows using Azure AD, RBAC, and Conditional Access Policies
- Monitor and respond to security alerts, perform vulnerability assessments.
- Maintain logging, monitoring,



and threat detection systems (e.g., Microsoft Defender for Cloud, Sentinel, Log Analytics)
- Advocate for shift-left security and support development teams with secure coding and DevSecOps training.
- Own the entire lifecycle of AKS clusters: provisioning, upgrading, scaling, monitoring, and patching (control plane & node pools).
- Manage, monitor, and secure Azure Kubernetes Service (AKS) clusters including node pools, scaling, network policies, and pod security standards.
- Enable RBAC, network policies, and service mesh configurations to enforce zero-trust architecture within AKS.
- Perform regular AKS upgrades, patching, and version compatibility checks.
- Implement and manage container security controls within AKS and enforce policies via tools such as OPA/Gatekeeper or Azure Policy.
- Implement Istio service mesh for traffic routing, security policies (mTLS, ingress/egress), and observability across AKS workloads.
- Integrate Terraform-based security-as-code modules to provision secure infrastructure and services.
- Configure and manage Azure security services, including Azure Key Vault, Defender for Cloud, Azure Sentinel, App Gateway, APIM, and Azure AD PIM.
- Basic understanding of Apache Kafka, including topic-level security, brokers, and integration patterns in a microservices environment
- Ability to create threat models (STRIDE/MITRE ATT&CK;) and define application controls/mitigations.

Why join OSBI?

We understand your career and how you progress is as unique as your individual personality. We've created a culture and an environment that encourages personal growth and offers our people opportunities to learn and succeed. Whether you're in the early stages of your career or already have an established profession, we're constantly seeking to hire talented individuals who want to make a difference and grow with us. We're a connected company working together to create a business in which we can all take pride and prosper.
If you want to know more about OSBI, please click on the website link: www.osb-india.com

To know more about OSBI culture please find us on Instagram @OSBINDIA

To find out more about the roles & updates please follow our LinkedIn Page www.linkedin.com/company/osbi.

📌 Lead Engineer - Cloud IND (Bengaluru)
🏢 OSB Group
📍 Bengaluru

Reply to this offer

Impress this employer describing Your skills and abilities, fill out the form below and leave Your personal touch in the presentation letter.

Subscribe to this job alert:

Get the latest job offers by email for: lead engineer - cloud ind (bengaluru) / bengaluru

Subscribe to this job alert:

Get the latest job offers by email for: lead engineer - cloud ind (bengaluru) / bengaluru