Platform Security & DevSecOps Engineer
New
J
JobgetherInformation Security
Fully remote within India.Full-TimeSenior
Salary1,500,000 - 2,200,000 INR per year
Apply NowOpens the employer's application page
Job Details
- Experience
- 4–7 years
- Required Skills
- DockerKubernetesCI/CD
Requirements
- 4–7 years of professional experience in information security, cloud security, cloud architecture, DevSecOps, or a closely related engineering discipline.
- Bachelor's degree in Computer Science, Information Technology, Engineering, Cybersecurity, or a related field.
- Strong knowledge of Linux security and secure system administration practices.
- Hands-on experience with container security technologies, particularly Docker and Kubernetes.
- Solid understanding of infrastructure-as-code security and experience using automated scanning approaches.
- Good knowledge of network protocols and fundamental networking security concepts.
- Experience implementing security testing and automated security controls within CI/CD pipelines.
- Practical understanding of cloud security concepts, including identity and access management, network controls, encryption, and secrets management.
- Experience with vulnerability assessment, remediation, and penetration-testing coordination.
- Familiarity with security and privacy frameworks such as GDPR, DPDP Act, and SOC 2.
- Experience developing or implementing automated threat detection and incident-response workflows.
- Proactive, security-first mindset with strong analytical and problem-solving abilities.
Responsibilities
- Integrate and manage automated Static Application Security Testing (SAST) and Dynamic Application Security Testing (DAST) solutions within CI/CD pipelines.
- Assess, configure, and harden cloud environments, including IAM policies, VPC security groups, encryption mechanisms, and secrets management.
- Conduct regular vulnerability assessments and coordinate penetration testing activities across applications, infrastructure, and dependencies.
- Identify, prioritize, and support the rapid remediation of vulnerabilities affecting infrastructure, applications, dependencies, and infrastructure-as-code.
- Implement security controls and automated threat-detection capabilities across cloud and DevOps environments.
- Strengthen container security across Docker and Kubernetes environments, ensuring secure deployment and runtime practices.
- Support incident-response workflows and contribute to the detection, investigation, and mitigation of security threats.
- Help maintain compliance with applicable security and privacy frameworks, including GDPR, India's DPDP Act, and SOC 2.
- Monitor security risks and continuously improve the organization's security posture, processes, and automation.
- Collaborate with engineering and infrastructure teams to embed security practices into development and deployment workflows.
View Full Description & ApplyYou'll be redirected to the employer's site