- Company Name
- RedTech Recruitment
- Job Title
- DevSecOps Engineer
- Job Description
-
Job Title: DevSecOps Engineer
Role Summary: Spearhead cloud security and automation for AI platform, embedding secure-by-design principles into CI/CD pipelines, IaC, and infrastructure. Drive security hardening, vulnerability management, and policy-as-code across a multi-cloud environment.
Expectations: Proven expertise in DevSecOps, Cloud Security Engineering, or Infrastructure Security with deep experience securing AWS and familiarity with Azure/GCP. Hands‑on experience with CI/CD automation, vulnerability scanning, and IaC (Terraform, CloudFormation). Strong scripting (Python, Bash). Ability to collaborate across platform, infrastructure, and security teams. Excellent communication and problem‑solving skills.
Key Responsibilities:
- Own cloud security posture improvement (AWS Security Hub, IAM least privilege).
- Design and enforce secure configuration baselines across infrastructure.
- Embed security controls into CI/CD pipelines: SAST, DAST, dependency and container scanning.
- Develop automation to reduce manual compliance evidence collection.
- Implement IaC guardrails and policy‑as‑code controls.
- Support vulnerability triage, prioritisation, and remediation tracking.
- Collaborate with engineering teams to pragmatically resolve findings.
- Enhance logging, alerting, and incident readiness across the platform.
Required Skills:
- DevSecOps and cloud security engineering expertise.
- CI/CD pipeline automation (Jenkins, GitLab, GitHub Actions, etc.).
- AWS security (Security Hub, IAM, least privilege); experience with Azure/GCP optional.
- Vulnerability scanning and tuning (SAST/DAST, dependency, container scanners).
- Scripting/automation (Python, Bash or equivalent).
- IaC experience (Terraform, CloudFormation, Pulumi).
- Understanding of policy‑as‑code, automated guardrails.
- Strong communication and stakeholder collaboration.
Required Education & Certifications:
- Bachelor’s degree in Computer Science, Information Security, or related field (preferred).
- Relevant certifications: AWS Certified Security – Specialty, Certified DevSecOps Professional, or equivalent.