Hello,
Greetings from ZettaMine Labs Pvt Ltd!!
We are looking for DevSecOps Engineer – Azure DevOps with exciting project opportunities.
Job Role: DevSecOps Engineer – Azure DevOps
Location: Bangalore, Hyderabad& Chennai,Pune & Noida
Notice Period: Immediate / 15 Days
Experience: 5+ Years
Relevant Experience: Strong hands-on experience in DevSecOps, Azure DevOps, CI/CD, Infrastructure as Code, Cloud Security, Container Security, Security Automation, Vulnerability Management, and Secure SDLC.
Mandatory Skills
- 5+ years of experience in DevOps, DevSecOps, Cloud Engineering, Platform Engineering, or related roles.
- Strong hands-on experience with Microsoft Azure and Azure DevOps.
- Strong experience designing, implementing, and managing CI/CD pipelines using Azure DevOps.
- Strong understanding of DevSecOps practices and Secure SDLC.
- Hands-on experience integrating security controls into CI/CD pipelines.
- Strong experience with Azure Repos, Azure Pipelines, Azure Artifacts, Azure Boards, and Azure DevOps.
- Strong experience with Infrastructure as Code (IaC) using Terraform, ARM templates, Bicep, or similar technologies.
- Experience implementing automated SAST, SCA, DAST, secrets scanning, IaC scanning, and container security within CI/CD pipelines.
- Strong understanding of cloud security principles and Azure security services.
- Experience with Docker and Kubernetes / AKS and container security.
- Strong understanding of identity and access management, RBAC, managed identities, service principals, and secrets management.
- Experience with Azure Key Vault and secure management of credentials, certificates, and secrets.
- Experience with Git-based source control, branching strategies, pull requests, code quality checks, and security gates.
- Strong scripting/programming skills using PowerShell, Bash, Python, or similar technologies.
- Experience with vulnerability identification, remediation tracking, security automation, and compliance controls.
- Strong troubleshooting and problem-solving skills across build, release, deployment, infrastructure, and security pipelines.
Good-to-Have:
- Experience with Microsoft Defender for Cloud and Microsoft Defender for DevOps.
- Experience with security tools such as SonarQube, Snyk, Checkmarx, Veracode, Fortify, Semgrep, Trivy, Prisma Cloud, or similar tools.
- Experience with GitHub Advanced Security and secret/dependency scanning.
- Experience with Terraform Cloud / Enterprise.
- Experience with Helm, Argo CD, Flux, or GitOps.
- Experience securing AKS and Kubernetes workloads.
- Experience with Azure Policy, Azure Monitor, Log Analytics, Application Insights, and Microsoft Sentinel.
- Knowledge of OWASP Top 10, secure coding, vulnerability management, and threat modeling.
- Experience implementing security quality gates and automated compliance checks.
- Experience with Azure Container Registry (ACR) and container image scanning.
- Knowledge of API security and microservices security.
- Experience with cloud governance, security standards, and regulatory compliance.
- Azure certifications such as AZ-400, AZ-500, AZ-104, or AZ-305.
Key Responsibilities:
- Design, implement, and maintain secure and scalable Azure DevOps CI/CD pipelines.
- Embed security controls and automation throughout the software development lifecycle.
- Implement DevSecOps practices across development, testing, deployment, and production environments.
- Integrate SAST, SCA, DAST, secrets detection, IaC scanning, and container security into CI/CD pipelines.
- Configure and maintain Azure DevOps repositories, pipelines, artifacts, boards, security policies, and release processes.
- Implement automated security gates and quality checks to prevent vulnerable code and infrastructure from progressing through the delivery lifecycle.
- Build and maintain reusable CI/CD templates, pipeline components, and DevSecOps automation frameworks.
- Implement Infrastructure as Code using Terraform, Bicep, ARM templates, or similar technologies.
- Secure Azure infrastructure, applications, containers, Kubernetes/AKS workloads, and deployment pipelines.
- Implement secure authentication, authorization, RBAC, managed identities, and secrets management.
- Manage and integrate Azure Key Vault for secure credentials, secrets, certificates, and application configuration.
- Implement vulnerability scanning and remediation workflows across application, infrastructure, dependency, and container layers.
- Configure security and compliance controls within Azure DevOps and Azure environments.
- Monitor pipeline security, deployment failures, vulnerabilities, and compliance violations.
- Collaborate with Application Security, Cloud Security, Development, QA, Infrastructure, and Platform Engineering teams.
- Identify security gaps in existing DevOps processes and recommend automation-driven improvements.
- Implement secure branching, pull-request validation, code-review controls, and repository security standards.
- Develop scripts and automation using PowerShell, Bash, Python, or similar technologies.
- Support Kubernetes/AKS deployment automation and container security.
- Troubleshoot complex CI/CD, deployment, infrastructure, and security issues.
- Establish DevSecOps standards, reusable patterns, documentation, and best practices across engineering teams.
- Continuously improve pipeline performance, security, reliability, developer experience, and operational efficiency.
Who Can Apply? ✔️ 5+ years of experience in DevOps, DevSecOps, Cloud Engineering, Platform Engineering, or related areas.
✔️ Robust hands-on experience with Azure and Azure DevOps.
✔️ Strong experience developing and managing Azure DevOps CI/CD pipelines.
✔️ Strong understanding of DevSecOps and Secure SDLC.
✔️ Experience integrating SAST, SCA, DAST, Secrets Detection, IaC Scanning, and Container Security into CI/CD pipelines.
✔️ Strong experience with Infrastructure as Code, particularly Terraform, Bicep, or ARM.
✔️ Hands-on experience with Docker, Kubernetes, and/or AKS.
✔️ Strong understanding of Azure Security, IAM, RBAC, Managed Identity, and Key Vault.
✔️ Experience implementing security gates, vulnerability scanning, and automated compliance controls.
✔️ Strong experience with Git, branching strategies, pull requests, and source-code security.
✔️ Good scripting skills in PowerShell, Bash, Python, or similar technologies.
✔️ Experience with DevSecOps/security tools such as SonarQube, Snyk, Checkmarx, Veracode, Fortify, Trivy, Semgrep, or equivalent.
✔️ Strong troubleshooting, automation, communication, collaboration, and stakeholder management skills.
Candidate Details
Please share the following details along with your updated resume:
[email protected]
Full Name:
Contact Number:
Current Location:
Total Experience:
Relevant DevSecOps Experience:
Azure Experience:
Azure DevOps Experience:
Azure DevOps CI/CD Pipeline Experience:
Azure Repos / Pipelines / Artifacts Experience:
DevSecOps / Secure SDLC Experience:
SAST Experience:
SCA / Dependency Scanning Experience:
DAST Experience:
Secrets Detection Experience:
IaC Scanning Experience:
Container Security Experience:
Terraform Experience:
Bicep / ARM Experience:
Docker Experience:
Kubernetes / AKS Experience:
Azure Key Vault Experience:
IAM / RBAC / Managed Identity Experience:
Azure Security / Defender Experience:
Git / GitHub / GitLab Experience:
Security Tools Experience:
PowerShell / Bash / Python Experience:
Vulnerability Management Experience:
OWASP / Secure Coding Experience:
CI/CD Security Automation Experience:
Current Company:
Notice Period:
Current CTC:
Expected CTC:
We look forward to connecting with you!!
Thanks and Regards,
TAG Team
📌 DevSecOps Engineer (Bengaluru)
🏢 ZettaMine Labs
📍 Bengaluru