Role : DevSecOps Engineer
Experience : 5+ years
Location : Mumbai
About the Role :
We are seeking a skilled DevSecOps Engineer to integrate security into every phase of the DevOps lifecycle. In this role, you will be responsible for automating security processes, ensuring compliance across cloud infrastructure, and working closely with cross-functional teams to drive secure software development and deployment practices.
Key Responsibilities :
- Integrate security measures throughout the CI / CD pipeline .
- Automate security checks and workflows to detect and mitigate vulnerabilities early.
- Ensure infrastructure and applications comply with internal and external security standards.
- Collaborate with development, operations, and security teams to define and enforce best practices.
- Manage and monitor tools such as IDS / IPS, SIEM, and vulnerability scanners .
- Continuously evaluate infrastructure for security risks and proactively implement mitigations.
- Maintain and improve documentation of security processes and standards.
- Support audits and security assessments as needed.
Required Qualifications :
5 to 7 years of experience in DevSecOps, Cloud Security, or Infrastructure Security.Deep understanding of security best practices for GCP, AWS, and Azure .Strong experience with Linux administration and system hardening.Hands-on expertise with Ansible, Azure DevOps, and CI / CD pipelines.Familiarity with tools like IDS / IPS, SIEM, and vulnerability scanners .Knowledge of security standards and frameworks such as ISO 27001, NIST, and CIS .Experience using JIRA for task and project tracking.Strong analytical and problem-solving skills; ability to thrive in a fast-paced environment.Preferred Qualifications :
Certifications such as AWS Security Specialty, GCP Security Engineer, CISSP, CEH, or CKA.Experience with Infrastructure as Code (IaC) tools like Terraform or CloudFormation, including security integrations.Knowledge of container security, particularly in Docker and Kubernetes environments.(ref : hirist.tech)