About Company :
Our client is a global technology consulting and digital solutions company that enables enterprises to reimagine business models and accelerate innovation through digital technologies. Powered by more than 84,000 entrepreneurial professionals across more than 30 countries, it caters to over 700 clients with its extensive domain and technology expertise to help drive superior competitive differentiation, customer experiences, and business outcomes.
Job Title : DevSecOps Engineer
Location : Bangalore (Global village Tech Park)
Experience : 6 to 8 Years
Employment Type : Contract to Hire
Work Mode : Hybrid
Notice Period : Immediate Joiners Only
Job Description :
Integrate security tools (SAST, DAST, SCA, Secrets Scanning) into CI / CD pipelines.
Develop and maintain Infrastructure as Code (IaC) with built-in security controls.
Automate security testing and compliance checks in development workflows.
Work with developers and DevOps engineers to remediate vulnerabilities.
Monitor and respond to security alerts and incidents in DevOps environments.
Ensure security best practices in containerization, orchestration (e.g., Docker, Kubernetes), and cloud deployments (e.g., AWS, Azure, GCP).
Conduct regular security assessments and contribute to threat modelling.
Collaborate with compliance teams to enforce governance and audit controls.
Prepare and present detailed security reports, advisories, and remediation plans.
Maintain and configure security tools and ensure compliance with standards like OWASP Top 10, PCI-DSS, NIST, and SANS / CWE
Required / Mandate Skills :
Proficiency in SAST / DAST tools (e.g., Fortify, Veracode, Burp Suite Pro).
Hands-on experience with CI / CD tools (e.g. Jenkins, GitHub actions, GitLab CI / CD, Azure DevOps)
Strong understanding of DevSecOps principles, secure SDLC, and vulnerability management
Familiarity with container security (e.g., Aqua Security, Twistlock).
Programming knowledge (Java, .NET) to analyse and remediate code-level vulnerabilities
Experience with manual and automated scanning, VAPT, and API security testing
Certifications :
Mandatory : Certified Ethical Hacker (CEH)
Preferred : GCSA (Cloud Security and DevSecOps Automation),
Certified DevSecOps Engineer (CDE)
Programming / Scripting Skills (Good with Any one of the Language)
YAML
GROOVE
JSON
PYTHON
Engineer • India