AWS DevSecOps Sr. Engineer

7 days ago


Bengaluru Chennai Pune, India Photon Full time ₹ 5,00,000 - ₹ 8,00,000 per year

About The Role  

About the Role: 

We are seeking an experienced and highly motivated Senior AWS DevSecOps Engineer / Tester with expertise in policy development, security automation, and infrastructure-as-code (IaC). The ideal candidate will have a strong background in AWS cloud environments, DevSecOps principles, and security policy mapping and enforcement. This role will focus on creating and automating security policies, mapping them to cloud infrastructure, and ensuring that our security posture remains strong and compliant across all stages of the software development lifecycle.

You will work closely with cross-functional teams to define security requirements, integrate security tools and processes into the CI/CD pipeline, and continuously improve the security automation framework.

Key Responsibilities: 

Policy Development & Mapping: 

- Design, develop, and maintain security policies for AWS environments, ensuring compliance with industry standards (e.g., NIST, CIS, ISO
- Map and integrate security policies into infrastructure and applications deployed on AWS using Infrastructure as Code (IaC) tools such as Terraform, CloudFormation, and AWS CDK.
- Create automated processes for security policy enforcement, auditing, and monitoring.
- Develop security rules and guardrails using AWS native services (AWS Config, AWS Security Hub, AWS GuardDuty, etc.) and third-party security tools.

DevSecOps Engineering: 

- Build and maintain the CI/CD pipeline with embedded security testing (SAST, DAST, IAST) and automated compliance checks.
- Automate security vulnerability assessments and remediation in the AWS environment using tools like AWS Inspector, Qualys, and other static and dynamic analysis tools.
- Collaborate with development teams to implement security in the software development lifecycle (SDLC), shifting security left and automating security testing.
- Create and maintain AWS security best practices, security controls, and infrastructure standards.

Testing & Vulnerability Management: 

- Conduct manual and automated penetration testing, vulnerability assessments, and code reviews focused on AWS-based applications and infrastructure.
- Implement automated testing frameworks that validate security policies and configurations (e.g., infrastructure misconfigurations, exposed secrets).
- Identify security gaps or vulnerabilities in AWS deployments and work with DevOps and development teams to remediate.
- Continuously assess new threats, vulnerabilities, and attack vectors in AWS environments.

Collaboration & Reporting: 

- Work closely with DevOps, Development, and IT teams to ensure proper integration of security into cloud infrastructure and applications.
- Provide regular security assessments, risk analysis reports, and security findings to senior leadership and relevant stakeholders.
- Participate in incident response planning and execution, providing expertise in security issues related to AWS environments.
- Train development teams on secure coding practices, security testing tools, and best practices for AWS security.

Continuous Improvement & Innovation: 

- Stay current with emerging trends in DevSecOps, cloud security, and AWS services.
- Continuously improve security policies, tools, and processes to adapt to evolving threats.
- Contribute to the creation and implementation of security automation frameworks for improved DevSecOps practices.

Required Qualifications: 

Experience :

- 5+ years of experience in AWS cloud environments with a focus on security, DevSecOps, and automation.
- At least 3+ years of hands-on experience in security policy development and mapping for cloud infrastructure, specifically AWS.
- Deep knowledge of AWS security tools and services, including AWS IAM, AWS KMS, AWS Config, AWS GuardDuty, AWS Shield, AWS WAF, and others.
- Strong experience with infrastructure-as-code tools such as Terraform, AWS CloudFormation, and AWS CDK.
- Experience with security testing tools (e.g., static and dynamic analysis, penetration testing, vulnerability scanning) and frameworks.
- Hands-on experience with CI/CD pipeline security integration, GitOps, and container security (e.g., Docker, Kubernetes, EKS).

Technical Skills :

- Proficiency in programming/scripting languages such as Python, Bash, or Go.
- Experience with AWS Security Hub, AWS Inspector, AWS Trusted Advisor, and other AWS security services.
- Familiarity with security testing frameworks (e.g., OWASP, SANS, NIST) and cloud security best practices.
- Experience with integrating security tools into CI/CD pipelines (e.g., Jenkins, GitLab, CircleCI, etc.).
- Strong knowledge of common security vulnerabilities (e.g., OWASP Top 10, CVE management) and how to mitigate them in cloud environments.

Certifications (Preferred) :

- AWS Certified Security Specialty.
- Certified DevSecOps Professional (CDP) or other related certifications.
- CISSP, CISM, or equivalent security certifications are a plus.

SoftSkills:
- Excellent problem-solving and analytical skills, with a keen attention to detail.
- Strong communication skills, able to present complex security issues to both technical and non-technical audiences.
- Ability to work independently and collaboratively in a fast-paced, dynamic environment.
- Proactive mindset with a passion for automation, security, and continuous improvement.
- Strong documentation skills, with the ability to create clear, concise, and actionable security reports.

Preferred Qualifications: 

- Experience with container security tools like Aqua Security, Twistlock, or Falco.
- Hands-on experience with serverless architectures and security concerns in AWS Lambda, API Gateway, and other serverless services.
- Familiarity with cloud-native security architectures and concepts (e.g., Zero Trust, defense in depth).
- Experience with compliance frameworks and regulations (e.g., GDPR, HIPAA, SOC 2, PCI DSS).



  • Bengaluru, India CSC Full time

    Role: Sr. DevSecOps Engineer Location: Bangalore Working Hours: 12-9PM Working Model: Hybrid Intro: As a DevSecOps engineer, you will provide technical leadership in the DevSecOps areas of Vulnerability Scanning, Certificate Management, Password Policy Management, Infrastructure As code for Cloud Resource Provisioning, Data Analysis of security monitoring...


  • Bengaluru, Karnataka, India CRUTZ LEELA ENTERPRISES Full time ₹ 5,00,000 - ₹ 25,00,000 per year

    Position-DevSecOps Sr. EngineerShift Timings-Afternoon 2 PM to 12 ISTNo. of Position-1Mode-FTENotice period-ImmediateMode of Interview-MS TeamsYear of Experience- 8 – 10 yearsWe are seeking a highly skilled Security Automation Engineer with expertise in SOAR platforms (XSIAM, QRadar, and others), strong scripting capabilities, and hands-on experience in...

  • Devsecops Engineer

    6 days ago


    Pune, Maharashtra, India Capgemini Full time ₹ 5,00,000 - ₹ 12,00,000 per year

    Role OverviewWe are seeking a highly experienced AWS DevSecOps Engineer to lead the design, implementation, and optimization of secure cloud infrastructure and CI/CD pipelines. This role demands deep expertise in AWS services and DevSecOps practices, with a strong focus on automation, scalability, and security integration across the software development...

  • Devsecops Engineer

    2 days ago


    Pune, India Capgemini Full time

    Role Overview We are seeking a highly experienced AWS DevSecOps Engineer to lead the design, implementation, and optimization of secure cloud infrastructure and CI/CD pipelines. This role demands deep expertise in AWS services and DevSecOps practices, with a strong focus on automation, scalability, and security integration across the software development...

  • Devsecops Engineer

    7 days ago


    Bengaluru, Hyderabad, Pune, India Cosmic It Full time ₹ 9,00,000 - ₹ 12,00,000 per year

    DevSecOps Engineer with 5+ yrs in AWS networking, Cloudflare (WAF, Zero Trust), CI/CD (GitHub/GitLab), Terraform, and Python. Drive SLA/KPI improvements, automate infra ops, and design secure global systems. Strong team player and fast learner.

  • DevSecOps Engineer

    2 weeks ago


    Bengaluru, Karnataka, India Grayson Talent Full time ₹ 7,00,000 - ₹ 12,00,000 per year

    We are seeking a skilled DevSecOps Engineer to integrate security practices within our DevOps processes and ensure that our systems, applications, and infrastructure are built and maintained with security at the core. The ideal candidate will have strong experience in DevOps practices, cloud infrastructure, CI/CD pipelines, and security frameworks, with the...

  • DevSecOps Engineer

    2 days ago


    Bengaluru, India Grayson Talent Full time

    We are seeking a skilled DevSecOps Engineer to integrate security practices within our DevOps processes and ensure that our systems, applications, and infrastructure are built and maintained with security at the core. The ideal candidate will have strong experience in DevOps practices, cloud infrastructure, CI/CD pipelines, and security frameworks, with the...


  • Chennai, Tamil Nadu, India Core Solutions Full time

    Role : Senior DevSecOps Engineer.Experience : 10+ years.Notice Period : Immediate 30 days.Location : Guindy Summary :We are seeking an experienced Senior DevSecOps Engineer to be part of our technical transformation as we transition to a SaaS-first organization.This technical role shall be focused on integrating security practices throughout the software...

  • DevSecOps Engineer

    7 days ago


    Chennai, Tamil Nadu, India Desirous Global Consulting Full time ₹ 1,80,000 - ₹ 28,00,000 per year

    Software Products Full-Time Job ID: DGC01075Chennai, Tamil Nadu 0-3 Yrs ₹1.8 - ₹03 YearlyComputer Enterprises, Inc. has a Pittsburgh, PA and unanticipated locations throughout the U.S. position for a DevSecOps Engineer to integrate security practices into the DevOps lifecycle, ensuring secure software development and deployment.This position is for a...

  • DevSecOps Engineer

    2 days ago


    Chennai, India Desirous Global Consulting Full time

    Software Products Full-Time Job ID: DGC01075 Chennai, Tamil Nadu 0-3 Yrs ₹1.8 - ₹03 Yearly Computer Enterprises, Inc. has a Pittsburgh, PA and unanticipated locations throughout the U.S. position for a DevSecOps Engineer to integrate security practices into the DevOps lifecycle, ensuring secure software development and deployment. This position is for a...