Job Description:
Advanced Technical Skills
DevOps & CI/CD Tools Mastery:
o Expertise in Jenkins, GitLab CI, CircleCI, Travis CI, or similar tools for
automating build and deployment pipelines.
o Advanced knowledge of Docker, Kubernetes, Helm, and ECS for
containerization, orchestration, and managing microservices.
o Proficiency in Infrastructure as Code (IaC) tools like Terraform,
CloudFormation, Pulumi, and Ansible for automating infrastructure
provisioning and configuration management.
Security Automation Tools:
o Hands-on experience with advanced security tools such as Mend.io
(White Source), SonarQube, Aqua Security, Snyk, OWASP ZAP,
Qualys, and Tenable for vulnerability scanning and code security.
Cloud Security Expertise:
o Solid experience securing cloud infrastructure using AWS, Google
Cloud Platform (GCP), Huawei and Azure, with a focus on identity and
access management (IAM), encryption, and network security.
o Familiarity with cloud-native security services such as AWS Security Hub,
Google Cloud Security Command Center, or Azure Security Center.
Advanced Programming/Scripting Skills:
o Proficiency in programming and scripting languages such as Python, Go,
Ruby, Bash, or Java to automate security tasks, write custom scripts, and
build security tools.
Container Security:
o Expertise in securing containerized applications and platforms (e.g.,
Docker, Kubernetes, OpenShift), including image scanning, runtime
security, and secure orchestration.
Compliance and Risk Management:
o Deep understanding of regulatory requirements and frameworks like
GDPR, HIPAA, PCI-DSS, SOC 2, ISO 27001, and how to integrate
compliance automation in the DevOps pipeline.
o Experience implementing security and compliance controls across
infrastructure and applications.
2. Advanced Security Expertise
Threat Modeling & Risk Assessment:
o Ability to lead threat modeling sessions and risk assessments for
applications, infrastructure, and cloud environments.
o Skilled
📌 Architect DevSecOps (Kolkata)
🏢 RECEX
📍 Kolkata