See more Collapse

Sr DevSecops Engineer

2 months ago


pune, India Qualys Full time
Prevent issues from becoming incidents.
As a DevSecOps Engineer , you will be part of a motivated security engineering team responsible for ensuring that Qualys products are built to the highest levels of security and trust. This is a senior role for an engineer with a passion for security, supporting developers, and building trustworthy automation.
About Product Security at Qualys
The Product Security team operates differently. Our mission is to enable continuous improvement across the lifecycle of our product portfolio, so that Qualys can ensure the highest standards of verifiable security, trust, and compliance. Our function is to build a secure SDLC, uphold quality management objectives, and ensure predictable outcomes for customers, our company, and attackers. We find and resolve problems early, working in-line with development. This allows us to reduce friction, increase release velocity, all while keeping security front of mind and at your fingertips.
Responsibilities
Security Integration: Collaborate with development teams to integrate security practices throughout the SDLC.
Toolchain Management: Lead the security administration of a modern enterprise DevSecOps toolchain and ensure that each capability operates as intended and performs as expected.
Automation: Design, implement, maintain, and continuously improve automated security testing, compliance checks, and CI/CD pipelines.
Security Policies: Develop and define CI/CD security policies that ensure the security of Qualys products is responsive to the evolving tactics, techniques, and procedures of attackers.
Supply Chain Security: Lead efforts to harden CI/CD pipelines and builds, apply digital signing, and ensure provenance of packages. Apply policies and automation to packages from critical suppliers and OEMs to Qualys.
Vulnerability Management: Identify, assess, and prioritize vulnerabilities in software applications, infrastructure, and dependencies. Drive remediation strategy collaboration.
Infrastructure as Code: Ensure that provisioning and configuration management capabilities enforce continuous scanning and immutable security configurations.
Container Security: Ensure that containerized applications, utilizing tools like Docker and base images address key security risks through immutable security configurations.
Kubernetes Security: Ensure an effective K8s security architecture Pod Security Policy Administration, Service Mesh Security, Container Image Security, Network Security, and RBAC policies.
Collaboration: Foster a culture of collaboration between development, operations, and security teams, ensuring a shared responsibility for security.
Documentation: Create and maintain documentation for security processes, policies, and procedures. Work with leadership to drive engagement through the Security Champions program.
Qualifications
Experience with CI pipeline creation for implementing Secure SLDC controls in major CI agents like Jenkins, Concourse, GitHub, etc.
Expertise in Terraform (HCL), Kubernetes, Docker, and cloud-native security administration.
Experience enforcing security policies on SCM such as GitHub, Bitbucket.
Skilled in assessing and improving pipeline workflow, scan optimizations, and feedback loops.
History of authoring, implementing, and maintaining SAST, SCA, Binary, IaC, and Container security policies in stand-alone as well as in CI pipeline.
Experience in secret detection enablement in CI pipeline.
Proven ability to write scalable Ansible and Terraform scripts for security configurations.
Bonus Points
You understand that DevOps is both a craft and a culture.
You work well across teams, across time zones
Understanding of SLSA
You enjoy making jokes about SBOMs

We have other current jobs related to this field that you can find below

  • DevSecOps Engineer

    6 days ago


    Pune, Maharashtra, India Roche Full time

    The Position DevSecOps Engineer The Chapter You join the Product Development, Integration and Engineering Chapter, a global team of technical profiles, including Cloud DevOps Engineers, located around the world who are involved in various projects for all Roche divisions. The variety of the technical profiles in the Chapter allows you to grow...

  • DevSecOps Engineer

    2 months ago


    Pune, India Roche Full time

    The Position DevSecOps Engineer The Chapter You join the Product Development, Integration and Engineering Chapter, a global team of technical profiles, including Cloud DevOps Engineers, located around the world who are involved in various projects for all Roche divisions. The variety of the technical profiles in the Chapter allows you to grow...

  • DevSecOps Engineer

    1 month ago


    pune, India Roche Full time

    The Position DevSecOps Engineer The Chapter You join the Product Development, Integration and Engineering Chapter, a global team of technical profiles, including Cloud DevOps Engineers, located around the world who are involved in various projects for all Roche divisions. The variety of the technical profiles in the Chapter allows...

  • DevSecOps Engineer

    6 days ago


    Pune, Maharashtra, India Intraedge Technologies Ltd. Full time

    Fluidra : Lead DevSecOps Engineer.Lead DevSecOps Engineer.Experience: 8+yrs.Location: Pune (Hybrid).We are seeking a highly skilled and motivated Lead DevSecOps Engineer to join our dynamic team. As a key member of our DevOps team, you will be responsible for leading and implementing security practices throughout the software development and deployment...

  • DevSecOps Engineer

    6 days ago


    Pune, Maharashtra, India Fusemachines Full time

    About Fusemachines: Fusemachines is a respected provider of AI strategy, talent, and education services founded by Sameer Maskey Ph.D., Adjunct Associate Professor at Columbia University, focused on democratizing AI. Operating in 4 countries (Nepal, the United States, Canada, and the Dominican Republic), with over 450 full-time employees, Fusemachines aims...

  • DevSecOps Engineer

    2 weeks ago


    Pune, India Fusemachines Full time

    About Fusemachines: Fusemachines is a leading AI strategy, talent, and education services provider. Founded by Sameer Maskey Ph.D., Adjunct Associate Professor at Columbia University, Fusemachines has a core mission of democratizing AI. With a presence in 4 countries (Nepal, the United States, Canada, and the Dominican Republic and more than 450 full-time...

  • DevSecOps Engineer

    4 weeks ago


    Pune, India Fusemachines Full time

    About Fusemachines: Fusemachines is a leading AI strategy, talent, and education services provider. Founded by Sameer Maskey Ph.D., Adjunct Associate Professor at Columbia University, Fusemachines has a core mission of democratizing AI. With a presence in 4 countries (Nepal, the United States, Canada, and the Dominican Republic and more than 450 full-time...


  • Pune, India Kaapro Management Solutions Full time

    Opening: 1 Nos.- Job ID: 67983- Employment Type: Full Time- Reference: - Work Experience: 5.0 Year(s) To 15.0 Year(s)- CTC Salary: 10.00 LPA TO 35.00 LPA- Function: IT Software - System Programming- Industry: IT-Software/Software Services- Qualification: B.Tech/B.E. - Computers- Location: - Pune Posted On: 13th Sep, 2023 **- We are looking for a senior...

  • DevSecOps Engineer

    4 weeks ago


    Pune, India Intraedge Technologies Ltd. Full time

    Fluidra : Lead DevSecOps Engineer. Lead DevSecOps Engineer. Experience: 8+yrs. Location: Pune (Hybrid). We are seeking a highly skilled and motivated Lead DevSecOps Engineer to join our dynamic team. As a key member of our DevOps team, you will be responsible for leading and implementing security practices throughout the software development and deployment...

  • DevSecOps Engineer

    3 weeks ago


    Pune, India Intraedge Technologies Ltd. Full time

    Fluidra : Lead DevSecOps Engineer. Lead DevSecOps Engineer. Experience: 8+yrs. Location: Pune (Hybrid). We are seeking a highly skilled and motivated Lead DevSecOps Engineer to join our dynamic team. As a key member of our DevOps team, you will be responsible for leading and implementing security practices throughout the software development and deployment...

  • DevSecOps Engineer

    1 month ago


    pune, India Intraedge Technologies Ltd. Full time

    Fluidra : Lead DevSecOps Engineer. Lead DevSecOps Engineer. Experience: 8+yrs. Location: Pune (Hybrid). We are seeking a highly skilled and motivated Lead DevSecOps Engineer to join our dynamic team. As a key member of our DevOps team, you will be responsible for leading and implementing security practices throughout the software development and deployment...

  • DevSecOps Engineer

    4 days ago


    pune, India Intraedge Technologies Ltd. Full time

    Fluidra : Lead DevSecOps Engineer. Lead DevSecOps Engineer. Experience: 8+yrs. Location: Pune (Hybrid). We are seeking a highly skilled and motivated Lead DevSecOps Engineer to join our dynamic team. As a key member of our DevOps team, you will be responsible for leading and implementing security practices throughout the software development and deployment...

  • DevSecOps Engineer

    6 days ago


    Pune, Maharashtra, India ISA Full time

    Job Title: DevSecOps Engineer (Security & DevOps)Location: PuneJob Description:In a world where cyber threats constantly evolve, integrating strong security measures into the software development process is vital.As a Senior DevSecOps engineer at ISA, you'll spearhead the design and implementation of systems that prioritize security from the core of the...

  • DevSecOps Engineer

    6 days ago


    Pune, Maharashtra, India ISA Full time

    ISA is a premier technology solution provider for the Aviation industry. We are backed by Air Arabia and headquartered in Sharjah, UAE. We are hiring ISA is a premier technology solution provider for the Aviation industry. We are a subsidiary of Air Arabia Airlines. We have proven our expertise and proficiency over the years and have attracted scores of...

  • DevSecOps Engineer

    1 month ago


    Pune, India ISA Full time

    ISA is a premier technology solution provider for the Aviation industry. We are backed by Air Arabia and headquartered in Sharjah, UAE.We are hiring!ISA is a premier technology solution provider for the Aviation industry. We are a subsidiary of Air Arabia Airlines. We have proven our expertise and proficiency over the years and have attracted scores of...

  • DevSecOps Engineer

    6 days ago


    Pune, Maharashtra, India Helpshift Full time

    Job Summary:Helpshift is looking for a DevSecOps Specialist within the DevOps team. The individual is expected to bring in experience of Operations and Security using DevOps, and would also support the Infosec function of the organisation in maintaining the infosec posture of the organisation.Key Responsibilities and activities:Design, implement and monitor...

  • DevSecOps Engineer

    2 months ago


    Pune, India Mobile Programming LLC Full time

    Job Title : DevSecOps EngineerLocation : Bangalore - Work From Office (WFO)Experience : 8+ YearsNotice Period : Immediate to 15 DaysJob Description :We are seeking a highly skilled and experienced DevSecOps Engineer to join our dynamic team in Bangalore. If you are passionate about security, automation, and ensuring the seamless integration of development...

  • DevSecOps Engineer

    11 hours ago


    Pune, India Johnson Controls Full time

    What you will doAs a DevSecOps Engineer at JCI(SRE Security), you will play a crucial role in ensuring the security and reliability of our cloud-based systems and applications. You will work closely with development, security, and operations teams to integrate security best practices into every phase of the software development lifecycle. You'll have the...

  • DevSecOps Engineer

    6 days ago


    Pune, Maharashtra, India Johnson Controls International Full time

    What you will doAs a DevSecOps Engineer at JCI(SRE Security), you will play a crucial role in ensuring the security and reliability of our cloud-based systems and applications. You will work closely with development, security, and operations teams to integrate security best practices into every phase of the software development lifecycle. You'll have the...

  • DevSecOps Engineer

    4 weeks ago


    pune, India Helpshift Full time

    Job Summary:Helpshift is looking for a DevSecOps Specialist within the DevOps team. The individual is expected to bring in experience of Operations and Security using DevOps, and would also support the Infosec function of the organisation in maintaining the infosec posture of the organisation.Key Responsibilities and activities:Design, implement and monitor...