02 Oct
|
Snow Planet
|
Bengaluru
02 Oct
Snow Planet
Bengaluru
What you do in this role:
- Responsible for vulnerability management and security automation across the Moveworks AI cloud infrastructure and developer platform
- Closely work with platform, machine learning, search, data, and frontend teams to understand their security and infrastructure needs, and execute on DevSecOps roadmap initiatives
- Triage and drive remediation of findings from SAST, dependency, and container vulnerability scans across multi-cloud infrastructure, including AWS and Azure environments
- Implement and tune policy-as-code guardrails for Kubernetes and infrastructure-as-code, closing gaps identified through audits and scans
- Support secrets management operations, identity federation (IRSA on AWS, Managed Identity/Workload Identity on Azure), and least-privilege access patterns across the environment
- Build and manage CI/CD pipeline security controls (artifact signing, build provenance, dependency pinning) as part of the broader infrastructure-as-code and automation stack
- Support replatformization efforts extending infrastructure and security controls to Azure and other hyperscaler environments, including AKS cluster security posture
- Work closely with the security team on compliance automation, evidence collection, and audit readiness as ServiceNows controls are adopted
Qualifications To be successful in this role you have:
- Experience in leveraging or critically thinking about how to integrate AI into work processes, decision-making, or problem-solving. This may include using AI-powered tools, automating workflows, analyzing AI-driven insights,
or exploring AIs potential impact on the function or industry.
- 3-5 years of experience in DevOps, Platform, or Security Engineering
- Hands-on technical contributor with a strong sense of ownership, able to work through vulnerability findings and remediation from triage to closure
- Working knowledge of AWS infrastructure, including IAM roles, security groups, and core networking (VPC, DNS)
- Working knowledge of, or robust interest in, Azure infrastructure and security services (Azure AD/Entra ID, Azure Key Vault, Network Security Groups, Azure Policy, Microsoft Defender for Cloud)
- Experience with vulnerability scanning and security tooling: SAST, container/image scanning, dependency scanning, SBOM generation, across AWS and/or Azure
- Experience with Kubernetes cluster fundamentals and workload security; exposure to both EKS and AKS is a plus
- Working knowledge of secrets management, encryption, certificate management, and related security practices across cloud providers
- Comfortability with tools such as Terraform, Vault, OPA/Kyverno, Jenkins, ArgoCD/Flux, Helm
- Scripting proficiency in Python, Bash, or Go for automating repetitive security and operations tasks
- An appetite for working at a startup pace on challenging problems with a high degree of ownership
Disclaimer: This job posting has been aggregated from external source. Role details, content, and availability are subject to change. Applicants are advised to confirm the latest information directly on the company website before applying.
📌 Senior Software Engineer, DevOps - Moveworks (DevSecOps) (Bengaluru)
🏢 Snow Planet
📍 Bengaluru