HamburgerMenu
hirist

Job Description

About Company :

Our client is a trusted global innovator of IT and business services.

They help clients transform through consulting, industry solutions, business process services, digital & IT modernization and managed services.

Our client enables them, as well as society, to move confidently into the digital future.

We are committed to our clients long-term success and combine global reach with local client attention to serve them in over 50 countries around the globe.

Job Title : DevSecOps Engineer.

Location : Bangalore (Global village Tech Park).

Experience : 6+ yrs.

Job Type : Contract to hire.

Notice Period : Immediate joiners.


Mandatory Skills :


- DevSecops & DevOPS.


- Keep the candidates informed that interview timing will be during US Prime business hours ( 7 : 30 PM IST ) onwards.

- Integrate security tools (SAST, DAST, SCA, Secrets Scanning) into CI/CD pipelines.

- Develop and maintain Infrastructure as Code (IaC) with built-in security controls.

- Automate security testing and compliance checks in development workflows.

- Work with developers and DevOps engineers to remediate vulnerabilities.

- Monitor and respond to security alerts and incidents in DevOps environments.

- Ensure security best practices in containerization, orchestration (e., Docker, Kubernetes), and cloud deployments (e., AWS, Azure, GCP).

- Conduct regular security assessments and contribute to threat modelling.

- Collaborate with compliance teams to enforce governance and audit controls.

- Prepare and present detailed security reports, advisories, and remediation plans.

- Maintain and configure security tools and ensure compliance with standards like OWASP Top 10, PCI-DSS, NIST, and SANS/CWE.


Required / Mandate Skills :

- Proficiency in SAST/DAST tools (e., Fortify, Veracode, Burp Suite Pro).

- Hands-on experience with CI/CD tools (e. Jenkins, GitHub actions, GitLab CI/CD, Azure DevOps).

- Strong understanding of DevSecOps principles, secure SDLC, and vulnerability management.

- Familiarity with container security (e., Aqua Security, Twistlock).

- Programming knowledge (Java, .NET) to analyse and remediate code-level vulnerabilities.

- Experience with manual and automated scanning, VAPT, and API security testing.


Certifications :

- Mandatory : Certified Ethical Hacker (CEH).

- Preferred : GCSA (Cloud Security and DevSecOps Automation), Certified DevSecOps Engineer (CDE).


Programming / Scripting Skills (Good with Any one of the Language) :


- YAML.

- GROOVE.

- JSON.

- PYTHON.


info-icon

Did you find something suspicious?