10 - 20 years

7 - 11 Lacs

Posted:2 days ago| Platform: Naukri logo

Apply

Work Mode

Work from Office

Job Type

Full Time

Job Description

We are looking for a highly skilled and experienced Senior Infrastructure Security & Compliance Engineer with 10 to 15 years of hands-on experience in infrastructure/platform automation and systems security. The ideal candidate will have expertise in Python, Go, Bash scripting, OPA Rego policy writing, CI integration for Trivy, Kubebench, and GitOps workflows.
Roles and Responsibility
  • Design and implement GitOps-native workflows to automate security compliance and backup validation across the GPU cloud lifecycle.
  • Integrate Trivy into CI/CD pipelines for container and system image vulnerability scanning.
  • Automate kubebench execution and remediation workflows to enforce Kubernetes security benchmarks (CIS/STIG).
  • Define and enforce policy-as-code using OPA/Gatekeeper to validate cluster and workload configurations.
  • Deploy and manage Velero for Kubernetes-native backup and disaster recovery automation.
  • Maintain declarative, auditable Git-backed repositories for all compliance and backup logic.
  • Collaborate with infrastructure, platform, and security teams to define security baselines, enforce drift detection, and integrate automated guardrails into pipelines.
  • Drive remediation automation and post-validation gates across build, upgrade, and certification processes while monitoring evolving security threats and ensuring tooling is updated to detect vulnerabilities, misconfigurations, and compliance drift.
Job Requirements
  • Minimum 10 years of hands-on experience in infrastructure/platform automation and systems security.
  • Core expertise in Python, Go, Bash scripting, OPA Rego policy writing, and CI integration for Trivy, Kubebench, and GitOps workflows.
  • Strong knowledge and practical experience with Trivy, Kubebench, Velero, OPA/Gatekeeper, and GitOps.
  • Deep understanding of GitOps workflows (e.g., Argo CD, Flux) and declarative security tool integration.
  • Proven track record of automating security compliance and backup validation in CI/CD pipelines.
  • Solid foundation in Kubernetes internals, RBAC, pod security, and multi-tenant best practices.
  • Experience with vulnerability management lifecycles and security risk remediation strategies.
  • Proficiency in Linux systems administration, OS hardening, and secure bootstrapping.
  • Proficiency in Python, Go, or Bash for automation and tooling integration.
  • Experience with SBOMs, image signing, or container supply chain security.
  • Exposure to regulated environments (e.g., PCI DSS, HIPAA, FedRAMP).
  • Contributions to open-source security/compliance projects are a plus.

Mock Interview

Practice Video Interview with JobPe AI

Start Python Interview
cta

Start Your Job Search Today

Browse through a variety of job opportunities tailored to your skills and preferences. Filter by location, experience, salary, and more to find your perfect fit.

Job Application AI Bot

Job Application AI Bot

Apply to 20+ Portals in one click

Download Now

Download the Mobile App

Instantly access job listings, apply easily, and track applications.

coding practice

Enhance Your Python Skills

Practice Python coding challenges to boost your skills

Start Practicing Python Now
Rarr Technologies logo
Rarr Technologies

Information Technology

San Francisco

RecommendedJobs for You

vesu, surat, gujarat