Intangles

DevSecOps Engineer

Pune
USD 1200k - 1500k
Kubernetes CI/CD AWS DevSecOps IAM EC2 S3 VPC Lambda Organizations Secrets Manager Security Hub CloudTrail CloudWatch EventBridge Route 53 CloudFront ECR SonarQube OWASP ZAP Synk OWASP ISO 27001 SOC2 OIDC SSO OPA/Gatekeeper Kyverno
Description

DevSecOps Engineer

Location: Pune

Department: Technology

Experience: 2+ Years

Skills: Kubernetes Admission Controllers, CI/CD tool, AWS, DevSecOps

Job Title: DevSecOps Engineer
Department: Technology
Location: Poloroche Business Avenue, Viman Nagar, Pune
Experience: 2+ years
Reporting To: Senior Principal SRE and Head of Engineering

Role Overview
The DevSecOps Engineer - will be responsible for the secure design, automation, and compliance of cloud-native infrastructure across AWS and Kubernetes environments. This role focuses on embedding security controls within AWS workloads and CI/CD pipelines to ensure continuous compliance with organizational and regulatory standards.

Key Responsibilities
● Deploy, secure, and manage Kubernetes environments in alignment with CIS and NIST controls.
● Implement AWS security best practices for IAM, networking, storage, encryption, and logging.
● Integrate security validation stages into CI/CD pipelines, ensuring vulnerability scanning and compliance checks are automated.
● Utilize AWS Config, AWS Organizations, Security Hub, GuardDuty, and CloudTrail to maintain continuous visibility and governance over workloads.
● Author and enforce security policies, RBAC configurations, and least-privilege access models.
● Automate governance tasks such as tagging enforcement, configuration remediation, and compliance reporting using Lambda or Step Functions.
● Support compliance audits by providing configuration evidence and remediation reports.
● Collaborate with cross-functional teams to ensure adherence to ISO 27001 and SOC2 security - compliance standards throughout the development lifecycle.
● Conduct internal security training sessions for development and engineering teams across the organization.

Required Qualifications and Skills
● Bachelor’s or Master’s degree in Computer Science, Information Security, or a related field.
● 2+ years of experience in DevSecOps, Cloud Security, or Infrastructure Automation.
● Proficiency in at least one CI/CD tool, such as CircleCI, Argo Project, GitHub Actions, or similar, is essential.
● Exposure of Kubernetes operations, security configurations, and policy enforcement.
● Hands-on experience with AWS services including IAM, EC2, S3, VPC, Lambda, Organizations, Secrets Manager, Security Hub, CloudTrail, CloudWatch, EventBridge, Security Hub, Route 53, CloudFront, and ECR.
● Experience integrating automated security tools like SonarQube, OWASP ZAP, Synk, into CI/CD pipelines for proactive vulnerability management.
● Understanding of the OWASP Top 10 vulnerabilities and secure coding practices.
● Working knowledge of security and compliance frameworks including ISO 27001 and SOC2, and the ability to implement controls supporting these standards across cloud environments.

Good to Have
● Understanding of OIDC, SSO, and identity federation between Kubernetes and AWS.
● Exposure to Kubernetes Admission Controllers, OPA/Gatekeeper, or Kyverno for policy enforcement.
● Experience with centralized secrets management tools such as AWS Secrets Manager.
● Contribution to open-source DevSecOps tools, community projects, or speaking engagements at security conferences.
● Relevant AWS or Kubernetes certifications
Intangles
Intangles

0 applies

0 views

There are more than 50,000 engineering jobs:

Subscribe to membership and unlock all jobs

Engineering Jobs

60,000+ jobs from 4,500+ well-funded companies

Updated Daily

New jobs are added every day as companies post them

Refined Search

Use filters like skill, location, etc to narrow results

Become a member

🥳🥳🥳 452 happy customers and counting...

Overall, over 80% of customers chose to renew their subscriptions after the initial sign-up.

To try it out

For active job seekers

For those who are passive looking

Cancel anytime

Frequently Asked Questions

  • We prioritize job seekers as our customers, unlike bigger job sites, by charging a small fee to provide them with curated access to the best companies and up-to-date jobs. This focus allows us to deliver a more personalized and effective job search experience.
  • We've got over 200,000 jobs from 15,000+ vetted companies. No fake or sleazy jobs here!
  • We aggregate jobs from 15,000+ companies' career pages, so you can be sure that you're getting the most up-to-date and relevant jobs.
  • We're the only job board *for* software engineers, *by* software engineers… in case you needed a reminder! We add thousands of new jobs daily and offer powerful search filters just for you. 🛠️
  • Every single hour! We add 2,000-3,000 new jobs daily, so you'll always have fresh opportunities. 🚀
  • Typically, job searches take 3-6 months. EchoJobs helps you spend more time applying and less time hunting. 🎯
  • Check daily! We're always updating with new jobs. Set up job alerts for even quicker access. 📅

What Fellow Engineers Say