Current jobs related to DevSecOps Engineer - Udaipur - Pronix Inc


  • Udaipur, India CloudBees Full time

    Job Title - Staff Software EngineerYear of Experience - 8+ years DescriptionCloudBees enables enterprises to deliver scalable, compliant, and secure software, empowering developers to do their best work.Seamlessly integrating into any hybrid and heterogeneous environment, CloudBees is more than a tool—it's a strategic partner in your cloud transformation...

DevSecOps Engineer

3 months ago


Udaipur, India Pronix Inc Full time

Greetings

This is Sandeep From Pronix.


Position: DevSecOps Engineer

Location: Onsite in Gachibowli- 5 days a week.

Work Schedule: 6PM- 2AM IST(Night Shift)

Experience: 7+ years

Tasks:

Datadog Set up

  • Tagging trace/spans between Heroku nodes
  • Standardize agent config/upgrade
  • DB agent setup/config to monitor under APM
  • Complete the NPM setup
  • Standardize log tagging and/or setup - Unified Service Tagging
  • Audit all DD setup
  • Configure GH repo for code base scans

Review authentication setup in our custom environment (Thrivecore) – real user id tagging

Heroku:

  • Map out the private/public Heroku network config (create in CMDB as well)
  • Map out the AWS VPC/Service Endpoint relationship
  • Map out the DNS config for [thriveworks.app] and migrate to Route 53
  • Review Heroku preview app infrastructure. Should it be incorporated into our workflow, and if so, how
  • Upgrade our Heroku app stack to the latest ones. We're currently on a stack that'll be deprecated in April, 2025

Backup & Recovery

  • API Gateway Implementation experience
  • Assist in a backup and recovery policy and strategy – facilitate agreement with Dev and Ops. – tech documentation.
  • Assist in CMDB buildout.
  • Assist in a recovery test?

Vulnerability Framework

  • Write up policy on Dev/Ops regarding discovered vulnerabilities – timeline to fix, responsible parties, vulnerability classification, and tracking. Facilitate agreements between Dev/Sec/Ops related to addressing vulnerabilities.
  • Identify systems with shared credentials and establish secure admin accounts and appropriate RBAC access controls.
  • Assist with researching and adopting a vulnerability scanning tool for developed code along with the establishment of dev/sec/ops processes to ensure the tool is utilized at points in the lifecycle to uncover vulnerabilities prior to production release.

DevOps

  • Assist in reviewing and streamlining the current branching strategy

Experience with:

  • AWS
  • Observability tools (Splunk, Grafana, Datadog, etc...)
  • Heroku
  • API Gateway Experience (Konk, AWS, AzureAPI)
  • Container security solutions
  • WAF
  • Technical documentation
  • Familiar with Cloud and Container technologies and Security
  • Manage vulnerability strategy for containers/microservices
  • Familiar with IaC technologies
  • Familiar with Version Control technologies and Automation tools (CI/CD)
  • Proficient with Scripting Languages
  • Familiar with Policy as Code technologies
  • Familiar with Application Security practices (Threat modeling, compliance & governance, security testing - SAST / DAST. Penetration testing tools/vulnerability management solutions).
  • Familiar with Network Security / Zero Trust technologies
  • Familiar with database technologies (SQL, PostgreSQL, Redis)
  • Developing DevSec/Ops policies
  • Familiar with code scanning tools