Hello, Greetings from ZettaMine Labs Pvt Ltd!! We are looking for DevSecOps Engineer – Azure DevOps with exciting project opportunities.
Job Role: DevSecOps Engineer – Azure DevOps Location: Bangalore, Hyderabad& Chennai,Pune & Noida Notice Period: Immediate / 15 Days Experience: 5+ Years Relevant Experience: Strong hands-on experience in DevSecOps, Azure DevOps, CI/CD, Infrastructure as Code, Cloud Security, Container Security, Security Automation, Vulnerability Management, and Secure SDLC.
Mandatory Skills
- 5+ years of experience in DevOps, DevSecOps, Cloud Engineering, Platform Engineering, or related roles.
- Strong hands-on experience with Microsoft Azure and Azure DevOps.
- Strong experience designing, implementing, and managing CI/CD pipelines using Azure DevOps.
- Strong understanding of DevSecOps practices and Secure SDLC.
- Hands-on experience integrating security controls into CI/CD pipelines.
- Strong experience with Azure Repos, Azure Pipelines, Azure Artifacts, Azure Boards, and Azure DevOps.
- Strong experience with Infrastructure as Code (IaC) using Terraform, ARM templates, Bicep, or similar technologies.
- Experience implementing automated SAST, SCA, DAST, secrets scanning, IaC scanning, and container security within CI/CD pipelines.
- Strong understanding of cloud security principles and Azure security services.
- Experience with Docker and Kubernetes / AKS and container security.
- Strong understanding of identity and access management, RBAC, managed identities, service principals, and secrets management.
- Experience with Azure Key Vault and secure management of credentials, certificates, and secrets.
- Experience with Git-based source control, branching strategies, pull requests, code quality checks, and security gates.
- Strong scripting/programming skills using PowerShell, Bash, Python, or similar technologies.
- Experience with vulnerability identification, remediation tracking, security automation, and compliance controls.
- Strong troubleshooting and problem-solving skills across build, release, deployment, infrastructure, and security pipelines. Good-to-Have:
- Experience with Microsoft Defender for Cloud and Microsoft Defender for DevOps.
- Experience with security tools such as SonarQube, Snyk, Checkmarx, Veracode, Fortify, Semgrep, Trivy, Prisma Cloud, or similar tools.
- Experience with GitHub Advanced Security and secret/dependency scanning.
- Experience with Terraform Cloud / Enterprise.
- Experience with Helm, Argo CD, Flux, or GitOps.
- Experience securing AKS and Kubernetes workloads.
- Experience with Azure Policy, Azure Monitor, Log Analytics, Application Insights, and Microsoft Sentinel.
- Knowledge of OWASP Top 10, secure coding, vulnerability management,
and threat modeling.
- Experience implementing security quality gates and automated compliance checks.
- Experience with Azure Container Registry (ACR) and container image scanning.
- Knowledge of API security and microservices security.
- Experience with cloud governance, security standards, and regulatory compliance.
- Azure certifications such as AZ-400, AZ-500, AZ-104, or AZ-305.
Key Responsibilities
- Design, implement, and maintain secure and scalable Azure DevOps CI/CD pipelines.
- Embed security controls and automation throughout the software development lifecycle.
- Implement DevSecOps practices across development, testing, deployment, and production environments.
- Integrate SAST, SCA, DAST, secrets detection, IaC scanning, and container security into CI/CD pipelines.
- Configure and maintain Azure DevOps repositories, pipelines, artifacts, boards, security policies, and release processes.
- Implement automated security gates and quality checks to prevent vulnerable code and infrastructure from progressing through the delivery lifecycle.
- Build and maintain reusable CI/CD templates, pipeline components, and DevSecOps automation frameworks.
- Implement Infrastructure as Code using Terraform, Bicep, ARM templates, or similar technologies.
- Secure Azure infrastructure, applications, containers, Kubernetes/AKS workloads, and deployment pipelines.
- Implement secure authentication, authorization, RBAC, managed identities, and secrets management.
- Manage and integrate Azure Key Vault for secure credentials, secrets, certificates, and application configuration.
- Implement vulnerability scanning and remediation workflows across application, infrastructure, dependency, and container layers.
- Configure security and compliance controls within Azure DevOps and Azure environments.
- Monitor pipeline security, deployment failures, vulnerabilities, and compliance violations.
- Collaborate with Application Security, Cloud Security, Development, QA, Infrastructure, and Platform Engineering teams.
- Identify security gaps in existing DevOps processes and recommend automation-driven improvements.
- Implement secure branching, pull-request validation, code-review controls, and repository security standards.
- Develop scripts and automation using PowerShell, Bash, Python, or similar technologies.
- Support Kubernetes/AKS deployment automation and container security.
- Troubleshoot complex CI/CD, deployment, infrastructure, and security issues.
- Establish DevSecOps standards, reusable patterns, documentation, and best practices across engineering teams.
- Continuously improve pipeline performance, security, reliability, developer experience, and operational efficiency.
Who Can
Apply? ✔️ 5+ years of experience in DevOps, DevSecOps, Cloud Engineering, Platform Engineering, or related areas. ✔️ Strong hands-on experience with Azure and Azure DevOps. ✔️ Strong experience developing and managing Azure DevOps CI/CD pipelines. ✔️ Strong understanding of DevSecOps and Secure SDLC. ✔️ Experience integrating SAST, SCA, DAST, Secrets Detection, IaC Scanning, and Container Security into CI/CD pipelines. ✔️ Strong experience with Infrastructure as Code, particularly Terraform, Bicep, or ARM. ✔️ Hands-on experience with Docker, Kubernetes, and/or AKS. ✔️ Robust understanding of Azure Security, IAM, RBAC, Managed Identity, and Key Vault. ✔️ Experience implementing security gates, vulnerability scanning, and automated compliance controls. ✔️ Strong experience with Git, branching strategies, pull requests, and source-code security. ✔️ Good scripting skills in PowerShell, Bash, Python, or similar technologies. ✔️ Experience with DevSecOps/security tools such as SonarQube, Snyk, Checkmarx, Veracode, Fortify, Trivy, Semgrep, or equivalent. ✔️ Strong troubleshooting, automation, communication, collaboration, and stakeholder management skills.
Candidate Details: Please share the following details along with your updated resume:
[email protected] Full Name: Contact Number: Current Location: Total Experience: Relevant DevSecOps Experience: Azure Experience: Azure DevOps Experience: Azure DevOps CI/CD Pipeline Experience: Azure Repos / Pipelines / Artifacts Experience: DevSecOps / Secure SDLC Experience: SAST Experience: SCA / Dependency Scanning Experience: DAST Experience: Secrets Detection Experience: IaC Scanning Experience: Container Security Experience: Terraform Experience: Bicep / ARM Experience: Docker Experience: Kubernetes / AKS Experience: Azure Key Vault Experience: IAM / RBAC / Managed Identity Experience: Azure Security / Defender Experience: Git / GitHub / GitLab Experience: Security Tools Experience: PowerShell / Bash / Python Experience: Vulnerability Management Experience: OWASP / Secure Coding Experience: CI/CD Security Automation Experience: Current Company: Notice Period: Current CTC: Expected CTC: We look forward to connecting with you!! Thanks and Regards, TAG Team
📌 LBC] DevSecOps Engineer (Bengaluru)
🏢 ZettaMine Labs
📍 Bengaluru