Manager - DevSecOps

3 - 8 years

6 - 10 Lacs

Posted:14 hours ago| Platform: Naukri logo

Apply

Work Mode

Work from Office

Job Type

Full Time

Job Description

Essential Services : Role & Location fungibility

One Bank, One Team

About the role

As a DevSecOps Manager, you will be responsible for implementation of security tools in DevOps CI/CD (Continuous Integration/ Continuous Delivery) pipeline and publish security standards and best practices for developer team.

You will be responsible for integrating, monitoring and improving cloud security controls via DevSecOps processes. In this role, you will perform assessments and help to mitigate security finding and implement improvement security measures. You will keep abreast of new technologies like Docker, Kubernetes, etc., to ensure that the organization remains at the forefront of security. Experience in analysing threats of cloud and familiarity with OWASP, SANS vulnerabilities along with its validations in source code and other security frameworks is an advantage.

Key Responsibilities

Identifying Vulnerabilities

Enable automated security scanning process to identify the known vulnerabilities in source code, Open-source library, and configuration. Provide technical leadership and direction in the DevSecOps domain.

Analysis

Troubleshoot DevSecOps pipeline implementation issue and support for successful deployment. Implement DevSecOps with multiple agile teams across various platforms, environments, and instances. Implement Automated DevSecOps template-based solutions for cloud environments.

Implement Security Measures

Understand the Security Requirements & Implement the new DevSecOps process. Configure Cloud Security Tools/Systems in a CI/CD Pipelines. Implementing Security scanning into Jenkins, Code Pipeline, and DevOps workflows. Define gating process metrics for security and implement in DevSecOps. Employ infrastructure as code to increase automation, scalability, and reliability.

Reporting

Prepare and provide necessary metrics, detailed reports, artifacts, executive summary and dashboard to leadership on a regular frequency. Build and maintain a set of tools that enable developers to self-serve for remediation. Monthly Dashboard Reporting for Leadership.

Collaborate

Capable of working in a dynamic environment, multi-department coordination and attaining the target.

Qualifications & Skills

Educational Qualification

Engineering Graduate in CS, IT, EC or InfoSec, CyberSec or MCA equivalent with certification of CSSLP, CISSP, GPEN, ECSA, CEH, CISM, CISA, or equivalent will be an added advantage

Compliance

Good understanding of cyber security trends & hacking techniques. Experience in analysing threats of cloud and application components. Ability to review assessment reports to provide risk mitigation & recommendations on that basis.

Technical Skills

Experience with various application security tools including SAST, DAST, Software composition analysis and application Penetration testing. Experience with Automation in testing or orchestration Selenium, Maven, Ant, Msbuild, Npm, Yarn, Jenkins, Gitlab, Bitbucket, etc. Knowledge of Agile and Scrum processes.

Communication Skills

Outstanding communication abilities. Ability to effectively communicate the required recommendations.

Mock Interview

Practice Video Interview with JobPe AI

Start DevOps Interview
cta

Start Your Job Search Today

Browse through a variety of job opportunities tailored to your skills and preferences. Filter by location, experience, salary, and more to find your perfect fit.

Job Application AI Bot

Job Application AI Bot

Apply to 20+ Portals in one click

Download Now

Download the Mobile App

Instantly access job listings, apply easily, and track applications.

coding practice

Enhance Your Skills

Practice coding challenges to boost your skills

Start Practicing Now

RecommendedJobs for You