07 Aug
|
Mindsprint
|
Chennai
07 Aug
Mindsprint
Chennai
Role: DevSecOps Engineer
About the role
We are looking for a DevSecOps Engineer having 4+ years of exp to build and run secure, automated delivery pipelines across a multi-cloud environment. You will own CI/CD, Kubernetes deployments and cloud infrastructure across AWS and Azure, and embed security into every stage of the delivery process rather than treating it as a final check. This role suits someone who is equally comfortable writing pipelines, operating clusters, and improving application security posture.
What you will do
- Design, build and maintain CI/CD pipelines in GitHub Actions, including build, test, deployment and rollback stages with approval gates.
- Deploy and operate applications on Kubernetes (AWS EKS and Azure AKS), covering Helm charts, manifests, autoscaling, upgrades and cluster troubleshooting.
- Configure and manage Application Gateway and ingress/routing, including TLS, WAF and API gateway setups.
- Embed application security into the pipeline: SAST, SCA/dependency scanning, container image scanning, secret scanning and quality gates that block risky changes.
- Manage secrets and configuration across environments using tools such as Key Vault or AWS Secrets Manager, with rotation and least-privilege access.
- Work with development teams to remediate vulnerabilities, improve secure-coding practices and reduce the flow of security findings into production.
- Set up monitoring, alerting and basic SLOs so pipeline and release health is measurable, not guessed.
- Support incident response and root-cause analysis for pipeline and platform issues.
Required skills
- Solid hands-on experience with both AWS and Azure in a production setting.
- Strong experience building CI/CD pipelines in GitHub Actions (self-hosted runners a plus).
- Practical Kubernetes experience: deploying and operating workloads on EKS and/or AKS, with Helm and manifests.
- Experience configuring Application Gateway, load balancers, ingress and TLS/WAF.
- Hands-on experience integrating security into pipelines: SAST, SCA/dependency scanning, DAST and container image security.
- A good understanding of application security (AppSec): the OWASP Top 10 and secure SDLC.
- Scripting ability (Bash, PowerShell or Python) and comfort with Git-based workflows.
Positive to have
- Infrastructure-as-Code experience (Terraform or Bicep).
- Relevant certifications (AWS/Azure architect or security, CKA/CKAD, or a recognised security certification).
- Experience with secrets management, policy-as-code and cloud security posture tools (Defender for Cloud, GuardDuty, Security Hub).
- Exposure to observability tooling (Grafana, Prometheus, Azure Monitor) and DORA metrics.
📌 DevsecOps Engineer (Chennai)
🏢 Mindsprint
📍 Chennai