Sr. Devsecops Security Engineer (Bhopal)

Sr. Devsecops Security Engineer (Bhopal)

04 Oct
|
Atos
|
Bhopal

04 Oct

Atos

Bhopal

Atos is the Atos Group brand dedicated to AI-powered, secure, end-to-end digital services. Atos designs, develops, and operates critical digital environments that drive performance, resilience and sovereignty, helping public and private organizations worldwide retain control over their data and infrastructures, while meeting regulatory requirements.

With more than 52,000 employees serving over 4,500 clients across 54 countries, Atos helps modernize core IT systems, accelerate cloud and data transformation, strengthen cybersecurity, and deliver secure digital workplace environments to support its clients, its employees and society. Atos also provides consulting and advisory services through its Atos Amplify brand.

A trusted partner in operating complex and mission-critical environments, Atos supports organizations across highly regulated and sovereign contexts.

About Atos Group

Atos Group is a global leader in digital transformation with c. 54,000 employees and annual revenue of c. €7.2 billion, operating in 54 countries under two brands - Atos for services and Eviden for products and systems. European number one in cybersecurity and a leader in cloud, Atos Group is committed to a secure and decarbonized future and provides tailored AI-powered, end-to-end solutions for all industries. Atos Group is listed on Euronext Paris.

We are looking for a highly experienced Senior DevSecOps Security Engineer to lead cybersecurity testing initiatives across web applications, APIs, CI/CD pipelines, and software supply chain environments. The ideal candidate will have strong hands-on experience integrating security into the SDLC and driving secure-by-design practices across development, QA, and production environments.

Key Responsibilities





- Lead and execute DevSecOps operations and cybersecurity testing for web applications and APIs.

- Perform and review Static Application Security Testing (SAST), including detailed source code review.

- Conduct Energetic Application Security Testing (DAST) across development and pre-production environments.

- Design and execute fuzzing activities for applications and APIs.

- Perform Software Composition Analysis (SCA) to identify vulnerable open-source dependencies and third-party components.

- Assess and test CI/CD pipelines for security gaps, misconfigurations, and privilege escalation opportunities.

- Conduct software supply chain security testing and identify risks in build, artifact, and deployment processes.

- Drive security testing before the Quality Assurance (QA) phase to enable shift-left security practices.

- Define and implement security testing practices across the SDLC.

- Work closely with development, QA, DevOps, and architecture teams to embed cybersecurity testing into sprint cycles.

- Identify security test scenarios during sprint planning.

- Create, maintain, and automate security test cases.

- Execute and validate security test cases across Dev, UAT, and Production promotion stages.

- Review and validate remediation activities and provide risk-based recommendations.

- Mentor junior engineers,



review their reports and contribute to security best practices, standards, and governance.

Required Skills and Experience

- 5–7 years of experience in Application Security Testing, DevSecOps.

- Strong hands-on experience in web application security testing and API security testing.

- Proven experience in o SAST (secure code review) o DAST o Fuzzing o Software Composition Analysis (SCA) o CI/CD pipeline security testing o Software supply chain security testing

- Strong understanding of SDLC, secure coding practices, and shift-left security.

- Experience creating and automating security test cases in agile/sprint-based environments.

- Familiarity with OWASP Top 10, API Security Top 10, and common application security vulnerabilities.

- Experience working with development, DevOps, QA, and product teams.

- Strong analytical, communication, and stakeholder management skills.

Tools

Knowledge

- JFrog

- SonarQube

- Burp Suite

- Nessus

- XRAY

- JIRA

- Microsoft Threat Modeling Tool

- Postman Preferred Qualifications

- Experience with cloud platforms such as AWS, Azure, or GCP.

- Knowledge of container security, Kubernetes security, and Infrastructure-as-Code security.

- Experience integrating security tools into CI/CD pipelines.

- Relevant certifications such as CISSP, CSSLP, GWAPT, or DevSecOps-related certifications.

Here at Atos, diversity and inclusion are embedded in our DNA. Read more about our commitment to a fair work environment for all.

Atos is a recognized leader in its industry across Environment, Social and Governance (ESG) criteria. Find out more on our CSR commitment.

Choose your future.

Choose

Atos.

📌 Sr. Devsecops Security Engineer (Bhopal)
🏢 Atos
📍 Bhopal

Reply to this offer

Impress this employer describing Your skills and abilities, fill out the form below and leave Your personal touch in the presentation letter.

Subscribe to this job alert:

Get the latest job offers by email for: sr. devsecops security engineer (bhopal) / bhopal