Posted:2 days ago|
Platform:
On-site
Full Time
Job Overview:
The DevSecOps Engineer will be pivotal in embedding security into the DevOps pipeline, working closely with development, operations, and security teams. This role involves fostering a culture of security awareness and implementing DevSecOps best practices to ensure secure, efficient, and scalable deployments. By setting up and managing a suite of on-premises DevSecOps tools, the engineer will play a key role in enhancing the organization’s security posture and supporting the overall goals of reliability, speed, and resilience in software delivery.
Key Responsibilities:
● Collaboration and Advocacy: Partner with development, operations, and security teams to promote security awareness and DevSecOps principles.
● CI/CD Pipeline Development: Build and maintain secure CI/CD pipelines using Jenkins, GitLab, and SonarQube, automating all stages of the software development lifecycle.
● Infrastructure as Code (IaC): Implement and manage configuration with Ansible and cloud infrastructure provisioning with Terraform to create scalable, repeatable environments.
● Container Orchestration: Utilize Kubernetes to manage and scale applications in production, ensuring efficient deployment of containerized workloads.
● Vulnerability Management: Configure and manage security scanning tools like Clair, Trivy, OWASP Dependency Check, and OWASP ZAP to detect and address vulnerabilities early in the development lifecycle.
● Secrets Management: Secure sensitive data using tools such as GitSecrets and TruffleHog to avoid accidental exposure of credentials within code repositories.
● Security Monitoring and Compliance: Integrate SonarQube for continuous code quality checks and ensure security compliance with industry standards.
● Security Workflow Automation: Develop scripts and automation processes to integrate security tools within DevOps workflows, improving the security stance without affecting deployment speed.
● Microservices Management: Oversee multiple repositories hosting Python-based microservices, deploying them on Kubernetes while ensuring high standards of performance and maintainability.
● Database and Artifact Management: Implement and secure Apache Kafka clusters, manage Redis databases, and integrate Sonatype Nexus for artifact repository management.
● Security Testing: Conduct security assessments and vulnerability testing using Burp Suite, helping to identify and mitigate security risks in applications.
Job Type: Full-time
Pay: ₹90,000.00 - ₹120,000.00 per month
Benefits:
Schedule:
Supplemental Pay:
Ability to commute/relocate:
Education:
Experience:
Work Location: In person
CORPAVENUE
Upload Resume
Drag or click to upload
Your data is secure with us, protected by advanced encryption.
Browse through a variety of job opportunities tailored to your skills and preferences. Filter by location, experience, salary, and more to find your perfect fit.
We have sent an OTP to your contact. Please enter it below to verify.
Practice Python coding challenges to boost your skills
Start Practicing Python NowNew Delhi, Delhi, India
Salary: Not disclosed
Chennai
4.0 - 7.0 Lacs P.A.
Chennai, Tamil Nadu, India
Salary: Not disclosed
Mumbai, Maharashtra
Experience: Not specified
0.9 - 1.2 Lacs P.A.
Bengaluru, Karnataka, India
3.5 - 13.0 Lacs P.A.
Hyderabad, Telangana, India
3.0 - 13.0 Lacs P.A.
Delhi, Delhi, India
2.5 - 13.5 Lacs P.A.
Noida, Uttar Pradesh, India
Salary: Not disclosed
7.0 - 11.0 Lacs P.A.
Noida, Uttar Pradesh, India
Salary: Not disclosed