InfraCloudInfraCloud

DevSecOps Engineer

Bengaluru, Karnataka, IndiaRemoteMidFULL_TIMEtodayFresh

What is the job like? We run large k8s clusters with 1000s of nodes across many regions on cloud & on prem.

PythonGoRubyKubernetesPenetration testing

**What is the job like?**We run large k8s clusters with 1000s of nodes across many regions on cloud & on-prem. Your role within the security team is to deploy, manage security tooling and promote secure practices. You will work with Platform SREs closely to deploy and manage security tools & pipelines platform wide for SDLC, SBOM, SIEM, Runtime security & forensic requirements.Core activities include,

  • Shaping the scope and expertise for security practices across teams.

  • Building security into our infrastructure, tools, services, and processes working with Platform SREs and Application development teams.

  • Driving design, implementation, and support of security tooling to meet our compliance requirements.

  • Developing policies and procedures that improve overall platform security.

  • Security Incident response, remediation and conducting forensics.

  • Audit compliance, Automate manual efforts, Build dashboards for tracking CVEs, Vulnerabilities , Internal security events.

Who should apply for this role?

  • B.Tech/M.Tech or Equivalent in Computer Science, Information Technology, or a related field.

  • 3+ years of experience in handling services in a large-scale distributed system.

  • Deep understanding of network stack (e.g., TCP/IP, routing, network topologies and hardware, SDN, etc.)

  • Deep understanding of cloud native systems & security practices.

  • Programming / Scripting (Python, Go, Ruby or preferred scripting languages) and automation skills.

  • Production experience with Kubernetes, its deployment patterns with a bent towards DevSecOps.

  • Infrastructure as code (Ansible and Terraform).

  • Knowledge of Relational & NoSQL databases.

  • Experience with security tools such as Wazuh, Trivy, Falco, DefectDojo etc.

  • Experience with VAPT , Penetration testing is a plus.

  • One or more CI tools like Jenkins, gitops methodologies and CD tools like ArgoCD/Flux.

  • Centralized logging systems, metrics, and tooling frameworks such as Loki, Prometheus, and Grafana.

  • Ability to work independently and own problem statements end-to-end.

  • Great communication, interpersonal and teamwork skills.

  • Adaptable to working in a fast-paced environment and alter priorities as per business needs.

</body>

Frequently asked

Is this DevSecOps Engineer role remote?

Yes — this role is remote-friendly (Bengaluru, Karnataka, India).

Related