Role Description
Job Summary
We are looking for a DevSecOps Engineer to build and manage secure CI/CD pipelines, automate DevOps processes, and integrate security across the SDLC. The role requires hands-on experience with Jenkins, security tools, Infrastructure as Code, containers, and AWS, Azure, or GCP.
Key Responsibilities
- Build and manage Jenkins-based CI/CD pipelines.
- Integrate SAST, SCA, DAST, container, and IaC security scanning into CI/CD.
- Implement security gates, vulnerability management, and remediation processes.
- Manage cloud infrastructure and security on AWS, Azure, or GCP.
- Automate deployments using Terraform and other IaC tools.
- Manage Docker/Kubernetes environments and container security.
- Implement IAM, secrets management, encryption, logging, and monitoring.
- Collaborate with development and operations teams to implement secure SDLC practices.
Required Skills
- Strong experience with Jenkins, CI/CD, Git, Groovy, Linux, and scripting.
- Hands-on experience with security tools such as SonarQube, Checkmarx, Snyk, Trivy, OWASP ZAP, Checkov, or equivalent.
- Solid knowledge of AWS/Azure/GCP and cloud security.
- Experience with Terraform, Docker, and Kubernetes.
- Knowledge of OWASP Top 10, vulnerability management, IAM, secrets management, and secure SDLC.
- Experience with Python, Bash, or PowerShell is preferred.
- Familiarity with ISO 27001, SOC 2, PCI DSS, or CIS Benchmarks is an advantage.
Preferred Certifications AWS/Azure/GCP Security or DevOps, CKA/CKS, CISSP, or Terraform Associate.
Skills
Azure DevOps, CI/CD, DevSecOps, Docker
📌 Senior DevSecOps Engineer (CI/CD & Jenkins) (Bengaluru)
🏢 UST
📍 Bengaluru