Forbes Advisor Logo

Forbes Advisor

DevSecOps – Staff Engineer

Posted 13 Days Ago
Be an Early Applicant
In-Office
Chennai, Tamil Nadu
Expert/Leader
In-Office
Chennai, Tamil Nadu
Expert/Leader
The DevSecOps Staff Engineer integrates security into DevOps practices by designing secure CI/CD pipelines, building secure cloud infrastructure, and mentoring engineers on security practices.
The summary above was generated by AI
Company Description

Forbes Advisor is a new initiative for consumers under the Forbes Marketplace umbrella that provides journalist- and expert-written insights, news and reviews on all things personal finance.

We are an experienced team of industry experts dedicated to helping readers make smart decisions and choose the right products with ease. Marketplace boasts decades of experience across dozens of geographies and teams. The team brings rich industry knowledge to Marketplace’s global coverage of consumer credit, debt, health, home improvement, banking, investing, credit cards, small business, education, insurance, loans, real estate and travel.

Job Description

A DevSecOps Staff Engineer integrates security into DevOps practices, designing secure CI/CD pipelines, building and automating secure cloud infrastructure and ensuring compliance across development, operations, and security teams.

 

Responsibilities

  • Design, build and maintain secure CI/CD pipelines utilizing DevSecOps principles and practices to increase automation and reduce human involvement in the process
  • Integrate tools of SAST, DAST, SCA, etc. within pipelines to enable automated application building, testing, securing and deployment.
  • Implement security controls for cloud platforms (AWS, GCP), including IAM, container security (EKS/ECS), and data encryption for services like S3 or BigQuery, etc.
  • Automate vulnerability scanning, monitoring, and compliance processes by collaborating with DevOps and Development teams to minimize risks in deployment pipelines.
  • Suggesting architecture improvements, recommending process improvements.
  • Review cloud deployment architectures and implement required security controls.
  • Mentor other engineers on security practices and processes.

Requirements

  • Bachelor's degree, preferably in CS or a related field, or equivalent experience
  • 10+ years of overall industry experience with AWS Certified - Security Specialist.
  • Must have implementation experience using security tools and processes related to SAST, DAST and Pen Testing
  • AWS-specific: 5+ years’ experience with using a broad range of AWS technologies (e.g. EC2, RDS, ELB, S3, VPC, CloudWatch) to develop and maintain an Amazon AWS based cloud solution, with an emphasis on best practice cloud security.
  • Experienced with CI/CD tool chain (GitHub Actions, Packages, Jenkins, etc.)
  • Passionate about solving security challenges and being informed of available and emerging security threats and various security technologies.
  • Must be familiar with the OWASP Top 10 Security Risks and Controls
  • Good skills in at least one or more scripting languages: Python, Bash
  • Good knowledge in Kubernetes, Docker Swarm or other cluster management software.
  • Willing to work in shifts as required

Good to Have

  • AWS Certified DevOps Engineer
  • Observability: Experience with system monitoring tools (e.g. CloudWatch, New Relic, etc.).
  • Experience with Terraform/Ansible/Chef/Puppet
  • Operating Systems: Windows and Linux system administration.

Perks:

  • Day off on the 3rd Friday of every month (one long weekend each month)

  • Monthly Wellness Reimbursement Program to promote health well-being

  • Monthly Office Commutation Reimbursement Program

  • Paid paternity and maternity leaves

 

Qualifications

Any full time degree 

Top Skills

Ansible
AWS
Bash
Chef
Ci/Cd
Dast
Docker
GCP
Kubernetes
Puppet
Python
Sast
Sca
Terraform

Similar Jobs

4 Days Ago
Easy Apply
Remote or Hybrid
Chennai, Tamil Nadu, IND
Easy Apply
Senior level
Senior level
Artificial Intelligence • Big Data • Logistics • Machine Learning • Software • Transportation
Oversee secure cloud infrastructure, implement automation for CI/CD, ensure compliance with security standards, and respond to incidents.
Top Skills: AnsibleAWSAzureBashC#ChefCloudFormationDockerGCPJavaJenkinsKubernetesPuppetPythonTerraform
An Hour Ago
Hybrid
Chennai, Tamil Nadu, IND
Expert/Leader
Expert/Leader
Big Data • Fintech • Information Technology • Business Intelligence • Financial Services • Cybersecurity • Big Data Analytics
The End User Computing Engineering Manager manages the daily operations of end user devices, oversees engineering teams, ensures compliance, and develops technology standards.
Top Skills: Active DirectoryAzure Virtual DesktopDnsGroup PolicyIntuneJAMFM365macOSManage EngineNerdioSplunkSystrackWindows 365 Remote Desktop
An Hour Ago
In-Office
Industrial Estate, Mambalam Guindy, Chennai, Tamil Nadu, IND
Senior level
Senior level
Aerospace • Information Technology • Cybersecurity • Defense • Manufacturing
The role involves proficient design engineering and software development, focusing on CAD/CAM software, design automation, and collaboration within a global agile team to optimize aircraft interior designs.
Top Skills: AjaxAWSAzureAzure DevopsCatiaCSS3DjangoEnoviaGitlabHTML5JavaScriptJqueryPdmPythonVisual Studio

What you need to know about the Hyderabad Tech Scene

Because of its proximity to leading research institutions and a government committed to the city's growth, Hyderabad's tech scene is booming. With plans to establish India's first "AI city," the city is on track to become one of the world's most anticipated tech hubs, with companies like TransUnion, Schrödinger and Freshworks, among others, already calling the city home.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account