
DevSecOps Engineer
3 days ago
Job Purpose
As a Senior DevSecOps Engineer, you will be responsible for integrating security into the development, deployment, and maintenance of our software products, ensuring the highest standards of security and reliability.
Key Activities / Outputs
• Develop and implement security solutions throughout the software development lifecycle, from design to deployment and maintenance, using methodologies such as STRIDE, DREAD, CVSS, and the OWASP ASVS.
• Work closely with developers, IT operations, and security governance and operations teams to ensure security is integrated into all aspects of the development pipeline.
• Automate security processes and tools to enable continuous integration, continuous delivery, and continuous monitoring (CI/CD/CM) of applications and infrastructure.
• Develop and implement metrics, reporting, and monitoring processes to track the effectiveness of DevSecOps practices, using tools like Dynatrace, ELK, Splunk, AWS CloudWatch and Sonatype Examples of metrics include vulnerability remediation times, security incidents, and code review coverage.
• Establish a governance, review, and continuous improvement process for DevSecOps practices, ensuring alignment with organizational goals and industry best practices.
• Perform risk assessments and threat modelling to identify potential vulnerabilities and provide recommendations for mitigation strategies.
• Develop and enforce security policies and guidelines for application and infrastructure development, based on industry best practices and standards such as OWASP Top Ten, CWE/SANS Top 25, NIST SP 800-53, and OWASP ASVS.
• Train and mentor developers in secure coding practices, emphasizing areas such as input validation, output encoding, and least privilege principles, as well as conducting regular security awareness sessions.
• Conduct regular security audits, vulnerability assessments, and penetration tests to identify and remediate potential threats.
• Stay current with industry trends, emerging threats, and best practices in DevSecOps to continuously improve our security posture.
• Develop and maintain documentation related to security practices, policies, and procedures.
Technical Skills or Knowledge
Strong understanding of software development processes, CI/CD principles, and Agile methodologies, Expertise in various security frameworks, tools, and technologies such as OWASP, SAST, DAST, IAST, RASP, and familiarity with toolsets such as SonarQube, Veracode, Checkmarx, and Fortify, Proficient in scripting languages such as Python, Ruby, or Shell, Experience with containerization and orchestration technologies, such as Docker and Kubernetes, Familiarity with cloud platforms (AWS, Azure, GCP) and their respective security services and tools, Knowledge of networking protocols, firewalls, intrusion detection systems, and encryption technologies, Strong analytical, problem-solving, and communication skills, Software Development: This includes proficiency in programming languages such as Python, Java, JavaScript, or C#, as well as familiarity with software development methodologies like Agile or DevOps, Security Knowledge: They should be familiar with security frameworks such as OWASP (Open Web Application Security Project) and have experience in implementing security controls and practices within software development processes, DevOps Practices: This includes experience with continuous integration and continuous deployment (CI/CD) pipelines, configuration management tools like Ansible or Chef, containerization technologies such as Docker or Kubernetes, and infrastructure-as-code (IaC) tools like Terraform or CloudFormation, Security Tools and Technologies: This may include vulnerability scanning tools like Nessus or Qualys, security testing frameworks such as Burp Suite or ZAP, security information and event management (SIEM) tools like Splunk or ELK stack, and other relevant security tools, Cloud Computing: Experience with cloud security best practices, configuring and securing cloud resources, and managing cloud-based deployments is highly valuable
Preferred Technical Skills (Would be advantageous)
This position is a hybrid role based in Hyderabad which requires you to be in the office on a Tuesday, Wednesday and Thursday.
-
DevSecOps Engineer
2 days ago
Hyderabad, Telangana, India Tekgence Inc Full time ₹ 20,00,000 - ₹ 25,00,000 per yearJob Title: DevSecOps Engineer – AWS & AzureLocation: Hyderabad (5days work from Office)Engagement: 6-Month Contract and extendableAbout the RoleWe are seeking a highly skilled DevSecOps Engineer with strong expertise in AWS, Azure, and Cloud Security to collaborate with WWT in supporting PG&E. This role will focus on enabling secure cloud operations,...
-
Devsecops Engineer
7 days ago
Hyderabad, Telangana, India World Wide Technology Full time ₹ 8,00,000 - ₹ 24,00,000 per yearWorld Wide Technology Holding Co, LLC (WWT) is a privately held global technology integrator and supply chain solutions provider. Through our culture of innovation, we inspire, build and deliver business results, from idea to outcome.Based in St. Louis, WWT works closely with industry leaders such as Cisco, VMware, NetApp, Dell EMC, HPE and several others,...
-
Devsecops Engineer
2 days ago
Hyderabad, Telangana, India Disa Consulting Services Full time ₹ 12,00,000 - ₹ 36,00,000 per yearPosition: Senior DevSecOps EngineerLocation: Hyderabad, India. 100% onsite in Hyderabad, India from Day1.Shift timing: 1 pm IST- 11 pm ISTRequired Skills:AWS and Azure DevSecOps Terraform Cloud Security System mgr IAM guardrails- have a good understanding and help with implementation Wiz
-
DevSecOps Lead Engineer
25 minutes ago
Hyderabad, Telangana, India SimplifyVMS Full time ₹ 12,00,000 - ₹ 36,00,000 per yearPlease note - Looking for highly qualified, dynamic, motivated and hands on DevSecOps leader who can work onsite in our Hi-Tech city office. Should be able to build a team with 2-3 additional engineers.Role: DevSecOps Lead EngineerPosition OverviewSimplifyVMS is seeking an experiencedDevSecOps Lead Engineerwith over 10 years of proven expertise in building...
-
DevSecOps Engineer – AWS
1 week ago
Hyderabad, Telangana, India ID4 Consultancy Full time ₹ 1,44,000 - ₹ 14,40,000 per yearJob Title: DevSecOps Engineer – AWS & AzureLocation: Hyderabad (5days work from Office)Engagement: 6-Month Contract and extendableBudget : INR 1 Lacs to 1.2 Lacs per monthAbout the RoleWe are seeking a highly skilled DevSecOps Engineer with strong expertise in AWS, Azure, and Cloud Security to collaborate with End client. This role will focus on...
-
Lead DevSecOps Engineer
5 days ago
Hyderabad, Telangana, India Cling Multi Solutions Full time ₹ 12,00,000 - ₹ 36,00,000 per yearCorporate Title : Senior Associate LevelFunctional Title : Lead DevSecOps EngineerJob Type: Contractual/Freelacing We are seeking an experienced and highly skilled DevSecOps Engineer to join our dynamic team. As a DevSecOps Engineer, you will play a crucial role in ensuring the security, reliability, and efficiency of our software development and...
-
DevSecOps Consultant
3 days ago
Hyderabad, Telangana, India Wipro Full time ₹ 12,00,000 - ₹ 36,00,000 per yearRole PurposeAs a DevSecOps Consultant, you will be involved in a combination of designing & implementing transformation roadmaps, facilitation, mentoring, coaching and training teams to enable DevOps / DevSecOps adoption at scale. You should be an experienced CI-CD practitioner who has gone through the process of Agile-DevOps adoption & enablement at scale...
-
Devsecops Engineer
7 days ago
Hyderabad, Telangana, India Orcapod Consulting Services Full time ₹ 8,00,000 - ₹ 12,00,000 per yearRole & responsibilitiesManual & Automation Testing, DevSecOps, Agile frameworkPreferred candidate profile
-
Lead DevSecOps Engineer
3 days ago
Hyderabad, Telangana, India Amgen Full time ₹ 20,00,000 - ₹ 25,00,000 per yearJoin Amgen's Mission of Serving PatientsAt Amgen, if you feel like you're part of something bigger, it's because you are. Our shared mission—to serve patients living with serious illnesses—drives all that we do.Since 1980, we've helped pioneer the world of biotech in our fight against the world's toughest diseases. With our focus on four therapeutic...
-
Senior DevSecOps Engineer
2 days ago
Hyderabad, Telangana, India HTC Global Services Full time ₹ 9,00,000 - ₹ 12,00,000 per yearAbout The RoleSeeking a highly skilled Senior DevSecOps Engineer with 6 years of experience to join our dynamic team.RequirementsAt least 6-7 years of experience in DevSecOps, DevOps or a related role with exposure to cloud environments (preferably GCP).Exposure with GitLab CI/CD pipelines, including component-based pipeline design and migration.Knowledge of...