28 Aug
|
i2b Technologies
|
Hyderabad
28 Aug
i2b Technologies
Hyderabad
Senior DevOps / DevSecOps Engineer (CI/CD, Kubernetes & Security)
Experience: 3–5 Years Location: [Hyderabad / Remote-India — edit as needed] Employment type: Full time
About the Role
We're hiring a Senior DevOps / DevSecOps Engineer to own CI/CD pipelines end-to-end — from golden-path pipeline design through security scanning to progressive production rollouts. You'll build the pipelines other engineers rely on, wire security scanning into every stage, and be the one on-call when a deploy needs to be rolled back at 2am.
Must-Have Experience: 3–5 Years
- CI/CD & pipeline-as-code: Jenkins, GitHub Actions / GitLab CI / AWS CodePipeline & CodeBuild; running CI/CD across many services (reusable workflows, templating, standardised "golden path" pipelines)
- Build automation: reproducible builds, automated test gates, artifact & container-image management (Amazon ECR / artifact registries)
- Deployment automation: dev/staging/prod environments, progressive delivery (blue-green / canary), automated rollbacks, multi-service release orchestration
- Containers & orchestration: Docker, Kubernetes (EKS), Helm
- Infrastructure as Code: Terraform
- Pipeline security (DevSecOps): SAST (SonarQube / Semgrep), SCA / dependency scanning (Snyk / Trivy / Dependabot),
container & IaC scanning (Trivy / tfsec / Checkov), secret scanning (gitleaks) — wired as automated stages in Jenkins/CI
- Production security: least-privilege IAM, KMS, WAF, GuardDuty, Security Hub, Inspector
- Secrets management: AWS Secrets Manager / HashiCorp Vault
- Vulnerability management: triage, remediation, patching cadence
- Incident & on-call: PagerDuty alert ownership, escalation policies, runbooks, RCA/postmortems
- Scripting & automation: Python and Bash
- Strong hands-on AWS across the above
Good-to-Have
- Kubernetes security: network policies, admission control, policy-as-code (OPA / Conftest), runtime security (Falco)
- GitOps: ArgoCD / Flux
- Mobile release automation: fastlane, App Store / Play Store pipelines, code signing
- DAST tooling (OWASP ZAP) in-pipeline
- Compliance exposure: India DPDP, SOC 2, or ISO 27001
- Observability: OpenTelemetry instrumentation, Prometheus + Grafana (metric & dashboard creation), Loki or ELK for logs, distributed tracing
- Knowledge of Object Store
Skills:- Jenkins, GitHub, Docker, Kubernetes, CI/CD, Terraform, Amazon Web Services (AWS), DevSecOps and DevOps
📌 DevSecOps Engineer (Hyderabad)
🏢 i2b Technologies
📍 Hyderabad