
DevSecOps Engineer
7 days ago
About us:
Foodsmart is the leading telenutrition and foodcare solution, backed by a robust network of Registered Dietitians. Our platform is designed to foster healthier food choices, drive lasting behavior change, and deliver long-term health outcomes. Through our highly personalized, digital platform, we guide our 2.2 million members—including those in employer-sponsored health plans, regional and national Medicaid managed care organizations, Medicare Advantage plans, and commercial insurers—on a tailored journey to eating well while saving time and money.
Foodsmart seamlessly integrates dietary assessments and nutrition counseling with online food ordering and cost-effective meal planning for the entire family, optimizing ingredients both at home and on the go. We partner with national and regional retailers across the U.S., many of whom accept SNAP/EBT, making healthier food more accessible. Additionally, we assist members with SNAP enrollment and management, providing tangible access to nutritious food.In 2024, Foodsmart secured a $200 million investment from TPG's Rise Fund, which supports entrepreneurs dedicated to achieving the United Nations' Sustainable Development Goals. This investment will help us expand our reach, particularly to low-income workers who are disproportionately affected by diet-related diseases.
At Foodsmart, our mission is to make nutritious food accessible and affordable for everyone, regardless of economic status. We are committed to a set of core values that shape our culture and work environment:
Measured:
We make data-driven, truth-seeking decisions.
Impactful:
We are fueled by achieving our mission and vision.
Collaborative:
We help each other be better and create a positive environment.
Hungry:
We maintain a healthy growth mindset, seeking to overcome challenges with courage.
Joyful:
We take joy in each other, our work, and the privilege of doing this work.
Whether you're a dietitian, a commercial leader, or a technologist, working at Foodsmart means being part of a team that is passionate, supportive, and driven by a shared purpose. Join us in transforming the way people access and enjoy healthy food.
About the role:
We are seeking a DevSecOps Engineer who will work at the intersection of security, DevOps, and development to ensure security is embedded throughout our SDLC. This role requires deep technical expertise in secure code review, static and dynamic application security testing (SAST/DAST), and infrastructure governance, especially in the segregation of environments, separation of duties, and branch protection in source control systems.
You will:
Code & Application Security
- Conduct manual and automated code reviews to identify security vulnerabilities (e.g., XSS, SQLi, logic flaws).
- Define and implement SAST and DAST pipelines using tools such as SNYK, Checkmarx, Fortify, OWASP ZAP, or Burp Suite.
- Collaborate with development teams to remediate vulnerabilities and educate on secure coding standards (e.g., OWASP Top 10).
DevSecOps & CI/CD Pipeline Security
- Integrate security controls into CI/CD pipelines using tools like GitHub Actions, Jenkins, and GitLab CI.
- Define and enforce branch protection rules, code signing, and commit validation policies (e.g., mandatory code reviews, signed commits).
- Work closely with DevOps to ensure security-as-code is implemented across build, test, and deployment stages.
Infrastructure & Environment Segregation
- Ensure proper segregation between development, staging, and production environments, following least privilege principles.
- Collaborate with infra and cloud teams to enforce network and access segregation (e.g., VPC segmentation, IAM policies).
Governance & Policy Enforcement
- Define and monitor separation of duties policies between developers, testers, and deployers.
- Create security baselines and compliance checks (e.g., CIS Benchmarks, SOC 2/ISO 27001 readiness).
- Set up auditing and alerting for anomalous activities in source control and deployment platforms.
Tooling & Automation
- Deploy and maintain security tools (e.g., GitGuardian, Aqua, Prisma Cloud) to detect hard coded secrets, policy violations, and misconfigurations.
- Automate remediation workflows where possible (e.g., auto-patching vulnerable dependencies).
You have:
- 3–5+ years in DevSecOps, AppSec, or a combined development and security engineering role.
- Strong hands-on experience in secure coding, application security testing, and source code analysis.
- Solid knowledge of CI/CD pipelines, version control (especially GitHub/GitLab), and branch control strategies.
- Familiarity with cloud platforms (AWS, Azure, GCP) and security practices for each.
- In-depth understanding of network security, access controls, and zero trust architecture.
- Practical knowledge of regulatory or compliance frameworks (e.g., ISO 27001, SOC 2, NIST).
Preferred Qualifications
- Experience working with Infrastructure as Code (IaC) tools (e.g., Terraform, CloudFormation) with embedded security checks.
- Familiarity with container security (Docker, Kubernetes, image scanning).
- Certifications: OSCP, CSSLP, CEH, GSEC, or AWS Security Specialty.
- Contributions to open-source security tools or projects is a plus.
Key KPIs / Metrics of Success
- Time-to-remediate for identified vulnerabilities.
- Percentage of pipelines with integrated SAST/DAST.
- Number of policy violations prevented via branch rules and access controls.
- Coverage of secure coding training among developers.
-
DevSecOps Engineer
7 days ago
Hyderabad, Telangana, India Tekgence Inc Full time ₹ 20,00,000 - ₹ 25,00,000 per yearJob Title: DevSecOps Engineer – AWS & AzureLocation: Hyderabad (5days work from Office)Engagement: 6-Month Contract and extendableAbout the RoleWe are seeking a highly skilled DevSecOps Engineer with strong expertise in AWS, Azure, and Cloud Security to collaborate with WWT in supporting PG&E. This role will focus on enabling secure cloud operations,...
-
Devsecops Engineer
2 weeks ago
Hyderabad, Telangana, India World Wide Technology Full time ₹ 8,00,000 - ₹ 24,00,000 per yearWorld Wide Technology Holding Co, LLC (WWT) is a privately held global technology integrator and supply chain solutions provider. Through our culture of innovation, we inspire, build and deliver business results, from idea to outcome.Based in St. Louis, WWT works closely with industry leaders such as Cisco, VMware, NetApp, Dell EMC, HPE and several others,...
-
Devsecops Engineer
7 days ago
Hyderabad, Telangana, India Disa Consulting Services Full time ₹ 12,00,000 - ₹ 36,00,000 per yearPosition: Senior DevSecOps EngineerLocation: Hyderabad, India. 100% onsite in Hyderabad, India from Day1.Shift timing: 1 pm IST- 11 pm ISTRequired Skills:AWS and Azure DevSecOps Terraform Cloud Security System mgr IAM guardrails- have a good understanding and help with implementation Wiz
-
Devsecops Engineer
1 day ago
Hyderabad, Telangana, India Solenis Full time ₹ 12,00,000 - ₹ 20,00,000 per yearJob Title: DevSecOps Principal EngineerLocation: Hyderabad, IndiaCompany: Solenis GSS IndiaExperience: 5 Years - 10 YearsEmployment Type: Full-timeAbout the RoleSolenis is seeking a highly skilled DevSecOps Principal Engineer to lead our efforts in securing and optimizing the software development and deployment lifecycle. The role focuses on embedding...
-
DevSecOps Engineer
5 days ago
Hyderabad, Telangana, India Amgen Full time ₹ 15,00,000 - ₹ 25,00,000 per yearRole Description: As a DevSecOps Engineer, you will play a critical role in engineering secure, resilient, and scalable CI/CD platforms that enable Amgen's global digital initiatives. This position requires deep DevSecOps technical expertise, strong platform engineering capabilities, and the ability to collaborate and influence across diverse technology...
-
DevSecOps Lead Engineer
5 days ago
Hyderabad, Telangana, India SimplifyVMS Full time ₹ 12,00,000 - ₹ 36,00,000 per yearPlease note - Looking for highly qualified, dynamic, motivated and hands on DevSecOps leader who can work onsite in our Hi-Tech city office. Should be able to build a team with 2-3 additional engineers.Role: DevSecOps Lead EngineerPosition OverviewSimplifyVMS is seeking an experiencedDevSecOps Lead Engineerwith over 10 years of proven expertise in building...
-
DevSecOps Engineer – AWS
5 days ago
Hyderabad, Telangana, India Tekgence Inc Full time ₹ 15,00,000 - ₹ 28,00,000 per yearTitle: DevSecOps EngineerLocation: Hyderabad (5days work from Office)Start Date: Immediate joiners preferredEnd Date: 6+ months, likely long termAbout the RoleWe are seeking a highly skilled DevSecOps Engineer with strong expertise in AWS, Azure, and Cloud Security. This role will focus on enabling secure cloud operations, implementing guardrails, and...
-
DevSecOps Engineer – AWS
2 weeks ago
Hyderabad, Telangana, India ID4 Consultancy Full time ₹ 1,44,000 - ₹ 14,40,000 per yearJob Title: DevSecOps Engineer – AWS & AzureLocation: Hyderabad (5days work from Office)Engagement: 6-Month Contract and extendableBudget : INR 1 Lacs to 1.2 Lacs per monthAbout the RoleWe are seeking a highly skilled DevSecOps Engineer with strong expertise in AWS, Azure, and Cloud Security to collaborate with End client. This role will focus on...
-
DevSecOps Engineer
3 days ago
Hyderabad, Telangana, India Amgen Technology Private Limited Full time ₹ 1,20,000 - ₹ 3,60,000 per yearLead DevSecOps Engineer Career CategoryInformation Systems Job Description Join Amgen's Mission of Serving Patients At Amgen, if you feel like you're part of something bigger, it's because you are. Our shared mission—to serve patients living with serious illnesses—drives all that we do. Since 1980, we've helped pioneer the world of biotech in...
-
Lead DevSecOps Engineer
1 week ago
Hyderabad, Telangana, India Cling Multi Solutions Full time ₹ 12,00,000 - ₹ 36,00,000 per yearCorporate Title : Senior Associate LevelFunctional Title : Lead DevSecOps EngineerJob Type: Contractual/Freelacing We are seeking an experienced and highly skilled DevSecOps Engineer to join our dynamic team. As a DevSecOps Engineer, you will play a crucial role in ensuring the security, reliability, and efficiency of our software development and...