About Company :
Our client is a trusted global innovator of IT and business services.
They help clients transform through consulting, industry solutions, business process services, digital & IT modernization and managed services.
Our client enables them, as well as society, to move confidently into the digital future.
We are committed to our clients long-term success and combine global reach with local client attention to serve them in over 50 countries around the globe.
Job Title : DevSecOps Engineer.
Location : Bangalore (Global village Tech Park).
Experience : 6+ yrs.
Job Type : Contract to hire.
Notice Period : Immediate Skills :
- DevSecops & DevOPS.
- Keep the candidates informed that interview timing will be during US Prime business hours ( 7 : 30 PM IST ) onwards.
- Integrate security tools (SAST, DAST, SCA, Secrets Scanning) into CI / CD pipelines.
- Develop and maintain Infrastructure as Code (IaC) with built-in security controls.
- Automate security testing and compliance checks in development workflows.
- Work with developers and DevOps engineers to remediate vulnerabilities.
- Monitor and respond to security alerts and incidents in DevOps environments.
- Ensure security best practices in containerization, orchestration (e., Docker, Kubernetes), and cloud deployments (e., AWS, Azure, GCP).
- Conduct regular security assessments and contribute to threat modelling.
- Collaborate with compliance teams to enforce governance and audit controls.
- Prepare and present detailed security reports, advisories, and remediation plans.
- Maintain and configure security tools and ensure compliance with standards like OWASP Top 10, PCI-DSS, NIST, and / Mandate Skills :
- Proficiency in SAST / DAST tools (e., Fortify, Veracode, Burp Suite Pro).
- Hands-on experience with CI / CD tools (e. Jenkins, GitHub actions, GitLab CI / CD, Azure DevOps).
- Strong understanding of DevSecOps principles, secure SDLC, and vulnerability management.
- Familiarity with container security (e., Aqua Security, Twistlock).
- Programming knowledge (Java, .NET) to analyse and remediate code-level vulnerabilities.
- Experience with manual and automated scanning, VAPT, and API security :
- Mandatory : Certified Ethical Hacker (CEH).
- Preferred : GCSA (Cloud Security and DevSecOps Automation), Certified DevSecOps Engineer / Scripting Skills (Good with Any one of the Language) :
- YAML.
- GROOVE.
- JSON.
- PYTHON.
(ref : hirist.tech)