Live opening · Posted 16 days ago

Senior DevSecOps Engineer

Omnissa · Bangalore
Instahyre 8-12 yrs
You are 16 days behind. JobBeeper subscribers saw this role while it was still new.

At a glance

The key details from the original listing.

Posted 16 days ago
CompanyOmnissa
LocationBangalore
Experience8-12 yrs
SourceInstahyre
Listed16 days ago

Your early-applicant advantage

Live timing from JobBeeper.

Live data
0 min from Instahyre publishing this role to us finding it
14 min median time from a role going live to a subscriber being told
6 hours subscribers had this role before this page existed
17,148 roles found in the last 24 hours — the newest are not on this site yet
Start your free trial →

About the role

Description supplied by the original job listing.

As a DevSecOps Engineer in a small but mighty team, you will wear many hats. At times you will function as a cloud security architect, designing technical enhancements that serve as a model across product lines. At other times, you will be assisting DevOps teams in responding to potential incidents, or triaging urgent findings, or improving our security management processes. You thrive in a fast-paced environment with a lot of variety. You will have the opportunity to work with some of the most talented people in the industry to continually assess and improve the security posture of leading SaaS products in the end-user computing space.
Responsibilities:
CI/CD Security: Integrate and improve security controls in the CI/CD pipelines to enable efficient and secure software delivery.
Skills Needed: Understanding of secure software delivery principles and microservices architectures on platforms like Kubernetes, Docker, Serverless, and cloud-based virtual machines. Experience with CI/CD tools and processes.
Design and Refinement of Security Configurations: Develop and optimize standards to enhance the security of our applications and systems.
Skills Needed: Knowledge of security standards and best practices. Experience with WAF, network firewalls, NIDS/HIDS, and AWS.
Vulnerability Identification and Remediation: Develop and implement strategies and processes for improving vulnerability identification and management. Work closely with development and operations teams to remediate identified vulnerabilities.
Skills Needed: Understanding of shift-left and best practices for proactive vulnerability identification, mitigation, and remediation. Experience with SCA, SAST, and runtime scanning tools in cloud environments.
Automation for Security and Compliance Processes: Design and implement automation to support processes related to security and compliance.
Skills Needed: Familiarity with automation tools and frameworks, such as Ansible and Terraform.
Threat Modeling: Conduct comprehensive threat modeling for both new and existing services to identify potential security risks and provide recommendations for mitigating those risks.
Skills Needed: Understanding of threat modeling frameworks, such as STRIDE, PASTA, and/or Attack Trees. Knowledge of security frameworks such as MITRE ATT& CK and OWASP standards. Experience communicating security requirements to developers.
Incident Detection and Response: Contribute to and improve incident response activities to quickly address and mitigate security incidents.
Skills Needed: Quick decision-making, problem-solving skills, and a continuous improvement mindset. Knowledge of security frameworks such as MITRE ATT& CK.
Security Evangelism and Training: Advocate for and promote a culture of security and best practices within the organization.
Skills Needed: Passion for security and excellent communication and presentation skills.
Security Testing and Research: Stay up-to-date with the latest security trends and testing methodologies.
Skills Needed: Lifelong-learning mindset and proficiency in security testing tools and methodologies.
Requirements:
8 to 12 years of hands-on or individual contributor experience with CI/CD environments on AWS.
Strong knowledge of cloud security weaknesses and mitigation techniques.
Proficiency in at least one of the following scripting languages: Python, Terraform, or CloudFormation.
Strong problem-solving skills.
Ability to learn independently and is self-driven.
Experience leading practical threat modeling.
Excellent documentation and communication skills.
Previous experience in SaaS product security strongly preferred.

Experience
8-12 yrs

Get JobBeeper Mobile App

Never miss a job opening! Get instant job alerts on your phone.

Subscribers see fresh openings within minutes. Download the JobBeeper App on Google Play to get real-time push notifications and apply before anyone else.

⚡ Instant Push Alerts 🎯 Tailored Filters 🚀 Direct Employer Links
GET IT ON Google Play

More openings worth a look

Recently tracked roles with full details and direct application links.

6 roles
Good roles move before most people even see them. Tell JobBeeper what you want and get fresh matches delivered in minutes.
Start your free trial →
⚡ Get fresh job alerts 📱 Get App