Devsecops Engineer

1 - 2 years

2.0 - 6.0 Lacs P.A.

Chennai

Posted:2 months ago| Platform: Naukri logo

Apply Now

Skills Required

PCI DSSTerraformSiem ToolsAWSKubernetesHippa

Work Mode

Work from Office

Job Type

Full Time

Job Description

Responsibilities: Work along with the Development/DevOps team to automate security testing in CI/CD pipeline for all languages Java, Node, Python, and Mobile Apps(Android/iOS) To understand the supply chain attack in SDLC and Create, develop, and implement security measures tools in CI/CD pipeline for optimising the Secure SDLC. Write custom Python scripts, and Helm Chart to manage and automate the security tools in the Kubernetes cluster effectively. Write a custom Terraform module to ensure all the security controls are implemented based on the Security Standard Framework. Work with development, operations, and security teams to identify and validate the false/true positives vulnerabilities and exception process.Conduct Pentest for Kubernetes clusters to find security issues and implement improvement measures Work closely with the Developers/DevOps teams to investigate threats and respond to security incidents. Create/Manage security hardening documents for K8s and ensure all clusters compliant with security controls To understand the application process, Create and Implement K8s Policy configurations for each product in production environment. Required Skills: Comprehensive technical expertise in a variety of DevSecOps toolkits, including Jenkins, Github Actions/Artifact, Jira, Terraform, Git/Version Control Software, or comparable technologies Familiarity with information security frameworks and standards such as PCI-DSS, HIPPA, NIST, GDPR, CIS, and OWASP Top 10. Knowledge of DevOps Automation (Terraform, Helm, GitHub, GitHub Actions) Knowledge of K8s, Linux, SIEM, and SOC or similar services Knowledge of cloud platforms Azure, AWS, and Google Cloud. Familiarity with API Security, Application Security, Container Security, and Cloud Security Good knowledge of Logging, Monitoring, and Security tools such as ELK Stack, Prometheus, and Grafana. Knowledge of databases such as MySQL, PostgreSQL, MongoDB, and Redis Familiarity with CNAPP tools and managing the Compliance Scanning, Runtime Container Security and Policy Configurations

Technology Accelerator
Innovation City

RecommendedJobs for You

Chennai, Pune, Mumbai, Bengaluru, Gurgaon

Chennai, Pune, Delhi, Mumbai, Bengaluru, Hyderabad, Kolkata

Pune, Bengaluru, Mumbai (All Areas)