06 Sep
|
Cloudxtreme
|
India
Role & responsibilities
•Robust experience as a DevOps engineer.
• Experience in driving DevSecOps adoption and defining best practice, and guiding engineers to adhere to these.
•Experience designing and implementing CI/CD pipelines.
• Experience in defining and implementing logging and monitoring strategies.
•Experience with GitLab, Azure, Azure Key Vault, Infrastructure as Code/Terraform, Docker/Kubernetes and PowerShell/YAML.
•Experience defining and implementing security requirements.
•Agile, Continuous Delivery and DevOps practices are part of your DNA.
•Valuable communication skills both written and verbal.
•Solid analytical and problem-solving skills, you like to figure out how things work.
•Passion for learning and innovation.
• Security Automation: Automate security testing (SAST, DAST, SCA) and compliance checks within the CI/CD pipelines (Jenkins, GitLab, Azure DevOps) to proactively identify and mitigate vulnerabilities early in the process.
• Vulnerability Management:
Conduct regular security assessments, vulnerability scanning, and penetration testing for web, mobile, and API applications, coordinating remediation efforts with development teams.
• Cloud and Infrastructure Security: Design, implement, and manage secure cloud-based environments (Azure) and containerized platforms (Docker, Kubernetes, OpenShift), ensuring secure configurations and least privilege access controls.
• Compliance and Governance: Establish and enforce security policies and procedures that comply with financial industry regulations (e.g., GDPR, FFIEC, MAS), generating detailed reports and metrics for leadership and auditors.
• Threat Modeling and Incident Response: Perform threat analyses for applications and infrastructure, contributing to cross-functional incident response efforts and post-mortem analysis to prevent future occurrences.
📌 Devsecops Pune (India)
🏢 Cloudxtreme
📍 India