onsite
Senior DevSecOps Engineer - Jobgether
Security Engineer
Senior DevSecOps Engineer responsible for designing and implementing security‑first practices across cloud, container, and CI/CD pipelines on large‑scale, high‑traffic digital platforms.
About the role
Key Responsibilities
- Architect and enforce security‑by‑design patterns for cloud infrastructure, container orchestration, and application delivery pipelines.
- Develop and maintain automated CI/CD workflows using tools such as Jenkins, GitLab CI, or GitHub Actions, integrating static and dynamic security testing.
- Implement infrastructure as code (IaC) with Terraform and Helm to ensure consistent, auditable, and compliant environments.
- Monitor, detect, and remediate vulnerabilities across AWS services, Kubernetes clusters, and container images using tools like Snyk, Trivy, and AWS GuardDuty.
- Collaborate with development, operations, and security teams to define threat models, conduct risk assessments, and drive continuous improvement.
Requirements
- 5+ years of hands‑on experience in DevOps/DevSecOps roles, with deep knowledge of AWS, Kubernetes, and container technologies.
- Proficiency in scripting or programming languages such as Python, Bash, or Go for automation and tooling.
- Strong experience with IaC (Terraform, CloudFormation) and CI/CD platforms (Jenkins, GitLab, GitHub Actions).
- Demonstrated ability to integrate security tools (SAST, DAST, container scanning, secret management) into automated pipelines.
- Solid understanding of networking, identity & access management, and compliance frameworks (e.g., ISO 27001, SOC 2, GDPR).
Skills
awskubernetesterraformdockercicdpython