02 Oct
|
Recruitkar
|
Bengaluru
02 Oct
Recruitkar
Bengaluru
Job Overview
nWe are looking for an experienced Cloud Security / DevSecOps Engineer to design, implement, and maintain secure cloud infrastructure and deployment pipelines across AWS and Kubernetes environments.
nThe ideal candidate will have solid hands-on experience with AWS security, Kubernetes security, Infrastructure as Code, CI/CD, container security, vulnerability management, and cloud-native security practices. The role will involve working closely with DevOps, engineering, and security teams to embed security throughout the software development and deployment lifecycle.
nKey Responsibilities
nDesign and implement secure and scalable infrastructure on AWS.
nSecure and manage Kubernetes clusters and containerized workloads.
nImplement security controls across the cloud infrastructure, applications, containers, and CI/CD pipelines.
nIntegrate security practices into the DevOps lifecycle (DevSecOps).
nDevelop and maintain secure CI/CD pipelines with automated security checks.
nImplement Infrastructure as Code (IaC) using tools such as Terraform or CloudFormation.
nConfigure and manage AWS security services including IAM, KMS, CloudTrail, GuardDuty, Security Hub, WAF, and VPC security controls.
nImplement identity and access management, least-privilege policies, roles, permissions, and secrets management.
nSecure container images and Kubernetes workloads through vulnerability scanning and policy enforcement.
nImplement Kubernetes security controls including RBAC, Network Policies, Pod Security, Secrets management, and admission controls.
nMonitor cloud environments for security threats, vulnerabilities, misconfigurations, and suspicious activity.
nPerform vulnerability assessments and coordinate remediation of security issues.
nIntegrate tools such as SAST, DAST, SCA, container scanning, and IaC scanning into CI/CD pipelines.
nInvestigate and respond to cloud and infrastructure security incidents.
nEstablish security best practices, standards, and reusable controls for engineering teams.
nConduct security reviews of infrastructure, architecture, and deployment configurations.
nAutomate security processes and compliance checks wherever possible.
nMaintain documentation related to security architecture, policies, configurations, and incident response.
nRequired Skills & Experience
nBachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field.
n3–7 years of experience in Cloud Security, DevSecOps, DevOps, or related roles.
nStrong hands-on experience with AWS cloud infrastructure and security.
nStrong understanding of Kubernetes and container security.
nProficiency with Linux and networking fundamentals.
nStrong experience with Infrastructure as Code, preferably Terraform.
nHands-on experience with CI/CD platforms such as Jenkins, GitHub Actions, GitLab CI, or AWS CodePipeline.
nGood understanding of Docker/containerization.
nStrong understanding of:
nIAM & RBAC
nVPC & network security
nSecurity groups & NACLs
nEncryption & key management
nSecrets management
nLogging & monitoring
nVulnerability management
nIdentity and access controls
nExperience implementing security scanning and controls within CI/CD pipelines.
nStrong scripting/automation skills using Python, Bash, or similar.
nExperience with Git and Git-based development workflows.
nKubernetes Security Skills
nCandidates should have practical knowledge of:
nKubernetes RBAC
nNetwork Policies
nPod Security Standards
nKubernetes Secrets
nService Accounts
nIngress security
nContainer image security
nResource limits and security contexts
nAdmission controllers/policies
nCluster and workload monitoring
nKubernetes vulnerability management
nCloud Security Tools & Technologies
nExperience with some of the following is preferred:
nAWS:
nIAM | KMS | CloudTrail | GuardDuty | Security Hub | WAF | VPC | CloudWatch | Config
nDevSecOps:
nJenkins | GitHub Actions | GitLab CI/CD | SonarQube | Snyk | Trivy | Checkmarx | OWASP
nContainers & Kubernetes:
nDocker | Kubernetes | Helm | EKS | ArgoCD | Falco | OPA/Gatekeeper | Kyverno
nIaC:
nTerraform | CloudFormation | Terragrunt
nGood to Have
nExperience securing AWS EKS environments.
nKnowledge of CSPM/CNAPP solutions.
nExperience with SIEM platforms such as Splunk, ELK, or Microsoft Sentinel.
nFamiliarity with Zero Trust architecture.
nExperience with security frameworks such as CIS, NIST, ISO 27001, SOC 2, or PCI-DSS.
nRelevant certifications such as:
nAWS Security Specialty
nAWS Solutions Architect
nCertified Kubernetes Security Specialist (CKS)
nCertified Kubernetes Administrator (CKA)
nSecurity+/CISSP or equivalent
nExperience with cloud security automation and policy-as-code.
nExposure to incident response and forensic investigation in cloud environments.
nCandidate Profile
nThe ideal candidate should have:
nStrong cloud security and DevSecOps mindset.
nExcellent troubleshooting and problem-solving skills.
nAbility to identify and remediate security vulnerabilities independently.
nStrong understanding of cloud networking and security architecture.
nAbility to balance security requirements with development and operational needs.
nStrong automation mindset and willingness to eliminate repetitive security tasks.
nGood communication and collaboration skills.
nAbility to work effectively with engineering, DevOps, infrastructure, and security teams.
nKey Technologies
nAWS | Kubernetes | EKS | Docker | Terraform | Linux | CI/CD | DevSecOps | IAM | VPC | CloudTrail | GuardDuty | Security Hub | KMS | WAF | Git | Jenkins/GitHub Actions | Trivy/Snyk | Python/Bash
nEmployment Details
nExperience: 3–7 Years
nJob Type: Full-time
nWork Mode: Remote
nLocation: Bengaluru
nSkills: AWS, Kubernetes, DevSecOps, Terraform, CI/CD, Docker, IAM, Container Security, Vulnerability Management, Python
n
n
- Work mode: Bengaluru
n
- Experience: 3–8 years
n
📌 Cloud Security / DevSecOps Engineer (AWS + Kubernetes) (Bengaluru)
🏢 Recruitkar
📍 Bengaluru