Current jobs related to DevSecOps Engineer - Udaipur - Pronix Inc
-
Staff Software Engineer
2 weeks ago
Udaipur, India CloudBees Full timeJob Title - Staff Software EngineerYear of Experience - 8+ years DescriptionCloudBees enables enterprises to deliver scalable, compliant, and secure software, empowering developers to do their best work.Seamlessly integrating into any hybrid and heterogeneous environment, CloudBees is more than a tool—it's a strategic partner in your cloud transformation...
DevSecOps Engineer
3 months ago
Greetings
This is Sandeep From Pronix.
Position: DevSecOps Engineer
Location: Onsite in Gachibowli- 5 days a week.
Work Schedule: 6PM- 2AM IST(Night Shift)
Experience: 7+ years
Tasks:
Datadog Set up
- Tagging trace/spans between Heroku nodes
- Standardize agent config/upgrade
- DB agent setup/config to monitor under APM
- Complete the NPM setup
- Standardize log tagging and/or setup - Unified Service Tagging
- Audit all DD setup
- Configure GH repo for code base scans
Review authentication setup in our custom environment (Thrivecore) – real user id tagging
Heroku:
- Map out the private/public Heroku network config (create in CMDB as well)
- Map out the AWS VPC/Service Endpoint relationship
- Map out the DNS config for [thriveworks.app] and migrate to Route 53
- Review Heroku preview app infrastructure. Should it be incorporated into our workflow, and if so, how
- Upgrade our Heroku app stack to the latest ones. We're currently on a stack that'll be deprecated in April, 2025
Backup & Recovery
- API Gateway Implementation experience
- Assist in a backup and recovery policy and strategy – facilitate agreement with Dev and Ops. – tech documentation.
- Assist in CMDB buildout.
- Assist in a recovery test?
Vulnerability Framework
- Write up policy on Dev/Ops regarding discovered vulnerabilities – timeline to fix, responsible parties, vulnerability classification, and tracking. Facilitate agreements between Dev/Sec/Ops related to addressing vulnerabilities.
- Identify systems with shared credentials and establish secure admin accounts and appropriate RBAC access controls.
- Assist with researching and adopting a vulnerability scanning tool for developed code along with the establishment of dev/sec/ops processes to ensure the tool is utilized at points in the lifecycle to uncover vulnerabilities prior to production release.
DevOps
- Assist in reviewing and streamlining the current branching strategy
Experience with:
- AWS
- Observability tools (Splunk, Grafana, Datadog, etc...)
- Heroku
- API Gateway Experience (Konk, AWS, AzureAPI)
- Container security solutions
- WAF
- Technical documentation
- Familiar with Cloud and Container technologies and Security
- Manage vulnerability strategy for containers/microservices
- Familiar with IaC technologies
- Familiar with Version Control technologies and Automation tools (CI/CD)
- Proficient with Scripting Languages
- Familiar with Policy as Code technologies
- Familiar with Application Security practices (Threat modeling, compliance & governance, security testing - SAST / DAST. Penetration testing tools/vulnerability management solutions).
- Familiar with Network Security / Zero Trust technologies
- Familiar with database technologies (SQL, PostgreSQL, Redis)
- Developing DevSec/Ops policies
- Familiar with code scanning tools