Role Description
Job Summary
We are looking for a DevSecOps Engineer to build and manage secure CI/CD pipelines, automate DevOps processes, and integrate security across the SDLC. The role requires hands-on experience with Jenkins, security tools, Infrastructure as Code, containers, and AWS, Azure, or GCP.
Key Responsibilities
Build and manage Jenkins-based CI/CD pipelines.
Integrate SAST, SCA, DAST, container, and IaC security scanning into CI/CD.
Implement security gates, vulnerability management, and remediation processes.
Manage cloud infrastructure and security on AWS, Azure, or GCP.
Automate deployments using Terraform and other IaC tools.
Manage Docker/Kubernetes environments and container security.
Implement IAM, secrets management, encryption, logging, and monitoring.
Collaborate with development and operations teams to implement secure SDLC practices.
Required Skills
Solid experience with Jenkins, CI/CD, Git, Groovy, Linux, and scripting.
Hands-on experience with security tools such as SonarQube, Checkmarx, Snyk, Trivy, OWASP ZAP, Checkov, or equivalent.
Strong knowledge of AWS/Azure/GCP and cloud security.
Experience with Terraform, Docker, and Kubernetes.
Knowledge of OWASP Top 10, vulnerability management, IAM, secrets management, and secure SDLC.
Experience with Python, Bash, or PowerShell is preferred.
Familiarity with ISO 27001, SOC 2, PCI DSS, or CIS Benchmarks is an advantage.
Preferred Certifications
AWS/Azure/GCP Security or DevOps, CKA/CKS, CISSP, or Terraform Associate.
Skills
Azure DevOps, CI/CD, DevSecOps, Docker
📌 Senior DevSecOps Engineer (Bengaluru)
🏢 UST
📍 Bengaluru