- Company Name
- Immersum
- Job Title
- DevSecOps Engineer
- Job Description
-
**Job Title**
DevSecOps Engineer
**Role Summary**
Design, implement, and secure cloud‑native infrastructure while embedding security into the continuous delivery pipeline. Interface with development, QA, and product teams to drive secure, scalable, and resilient platform operations.
**Expectations**
- Deliver secure, high‑availability infrastructure at scale.
- Proactively identify and remediate security and performance gaps.
- Promote a culture of DevSecOps and secure coding practices.
- Respond to incidents and lead continuous improvement initiatives.
**Key Responsibilities**
1. Architect and maintain AWS infrastructure (EC2, Lambda, RDS, EKS, Route53, ELBs) using IaC tools (Terraform, Ansible).
2. Build and maintain containerized environments (Docker, Kubernetes) and orchestrate deployments.
3. Secure CI/CD pipelines (Jenkins, GitHub Actions, CodePipeline) with SAST/DAST, dependency scanning, and workflow hardening.
4. Conduct threat modelling, security assessments, and vulnerability monitoring; lead remediation.
5. Configure and evolve monitoring, logging, and alerting (Prometheus, Grafana, ELK, CloudWatch).
6. Manage DNS, CDN, caches, firewalls, load balancers, and WAFs for secure web delivery.
7. Investigate and resolve security incidents, updating playbooks and controls accordingly.
**Required Skills**
- Cloud: Proficient in AWS (EC2, Lambda, RDS, EKS, ELB, Route53); experience with GCP/Azure exposure preferred.
- IaC: Terraform, Ansible.
- Containers: Docker, Kubernetes.
- CI/CD: Jenkins, GitHub Actions, AWS CodePipeline.
- Security: CIS, OWASP frameworks; SAST/DAST tools; dependency scanning; incident response.
- Monitoring: Prometheus, Grafana, ELK stack, CloudWatch.
- Networking: DNS, TLS, firewalls, WAFs, load balancing.
- Scripting: Python, Bash.
- Databases: MySQL/PostgreSQL, MongoDB.
**Required Education & Certifications**
- Bachelor’s degree in Computer Science, Engineering, or related field.
- Professional certifications such as AWS Certified Solutions Architect – Associate, Certified Kubernetes Administrator (CKA), or OSCP/CEH preferred.