About the Role
We are looking for a DevSecOps Engineer to integrate security practices into our software development and deployment processes. The successful candidate will be responsible for building secure CI/CD pipelines, automating security testing, and ensuring cloud and infrastructure security across development environments.
Responsibilities
- Design and maintain secure CI/CD pipelines.
- Integrate automated security testing into development workflows.
- Implement dependency and vulnerability scanning.
- Secure containerized environments and Kubernetes workloads.
- Manage secrets and credentials securely.
- Conduct infrastructure security assessments.
- Collaborate with development and security teams to improve security posture.
- Support cloud security initiatives and best practices.
Requirements
- 3+ years of DevOps or DevSecOps experience.
- Strong experience with Docker and Kubernetes.
- Experience with Jenkins, GitHub Actions, or GitLab CI/CD.
- Hands-on experience with AWS, Azure, or GCP.
- Knowledge of Infrastructure as Code (IaC).
- Understanding of container security and cloud security principles.
- Experience implementing security controls within CI/CD environments.
Tools & Technologies
- Docker
- Kubernetes
- Jenkins
- GitHub Actions
- GitLab CI/CD
- SonarQube
- Snyk
- Trivy
- OWASP Dependency Check
- HashiCorp Vault
Preferred Certifications
- AWS Security Specialty
- AWS Solutions Architect
- Certified Kubernetes Security Specialist (CKS)