DevSecOps Specialist (Chennai)

DevSecOps Specialist (Chennai)

29 Aug
|
Sutherland
|
Chennai

29 Aug

Sutherland

Chennai

Interested suitable candidates please be in touch with [email protected]

Job Title: Lead Security Engineer / DevSecOps Specialist

Department: Information Security & Engineering

Employment Type: Full time

Role Overview

We are seeking an experienced and hands-on Security Professional to bridge the gap between software development, cloud operations, and enterprise security governance. In this role, you will embed security into every stage of the Software Development Life Cycle (SDLC)from initial architectural design to deployment and hosting. You will drive our DevSecOps program while conducting rigorous security reviews, vulnerability assessments, and compliance audits against industry standards.

Key Responsibilities

- DevSecOps Implementation & CI/CD Security: Build, maintain, and integrate automated security testing tools (SAST, DAST, SCA, IAST, container scanning) directly into continuous integration and deployment pipelines.
- Architecture & Design Reviews: Conduct threat modeling, risk assessments, and architectural security reviews for new applications, microservices, and cloud deployments prior to development.
- Security Audits & Assessments: Perform regular code audits, vulnerability assessments, and end-to-end security evaluations across web, mobile, API, and cloud infrastructure platforms.
- Compliance & Governance: Ensure application and infrastructure configurations comply with key security standards (OWASP Top 10, ISO 27001, NIST SP 800-53, CIS Benchmarks, SOC 2, PCI-DSS).
- Secure Hosting & Cloud Security: Audit and harden cloud infrastructure (AWS/Azure/GCP), container environments (Docker, Kubernetes),



and hosting configurations.
- Remediation & Mentorship: Partner closely with engineering teams to provide clear remediation guidance for identified vulnerabilities and foster a security-first engineering culture.

Required Skills & Qualifications

- Hands-on DevSecOps: 3+ years of experience integrating security tools (e.g., Snyk, SonarQube, Checkmarx, Trivy, Zap, Semgrep) into CI/CD pipelines (GitHub Actions, GitLab CI, Jenkins).
- Application Security (AppSec): Deep understanding of common application vulnerabilities (OWASP), secure coding principles, and hands-on experience performing manual and automated source code reviews.
- General Security Breadth: Broad knowledge spanning network security, identity and access management (IAM), cryptography, endpoint security, and incident response fundamentals.
- Standards & Audit Expertise: Strong familiarity with frameworks such as ISO 27001, NIST, CIS, SOC 2, and PCI-DSS, with proven experience conducting formal gap analyses and compliance audits.
- Cloud & Container Infrastructure: Experience securing cloud-native workloads, Infrastructure as Code (Terraform, CloudFormation), and container orchestration technologies.
- Experience in fixes or recommending fixes for identified vulnerabilities
- Experience and usage on Cycode is added advantage.

Preferred Qualifications & Certifications

- Certifications: CISSP, CISA, CEH, GWAPT, OSWE, CSSLP, or AWS/Azure Security Specialty.
- Strong scripting/programming capabilities (Python, Bash, Go, or JavaScript) for automation.
- Experience communicating risk effectively to both technical developers and business executives.

📌 DevSecOps Specialist (Chennai)
🏢 Sutherland
📍 Chennai

Reply to this offer

Impress this employer describing Your skills and abilities, fill out the form below and leave Your personal touch in the presentation letter.

Subscribe to this job alert:

Get the latest job offers by email for: devsecops specialist (chennai) / chennai

Subscribe to this job alert:

Get the latest job offers by email for: devsecops specialist (chennai) / chennai