Overview
DevSecOps Engineer focused on cloud, Kubernetes, and GitLab CI/CD security across GCP and AWS.
What you'll do
- Own cloud security posture management (CSPM) across GCP and AWS, including misconfiguration detection and remediation tracking.
- Design and enforce IAM policies and least-privilege access controls across multi-cloud and workload identity.
- Implement VPC/security controls and internalize service endpoints using private access methods.
- Harden GKE clusters using CIS benchmarks, pod security standards, and admission control policies.
- Deploy runtime security tooling (e.g., Falco) and manage Kubernetes RBAC with least-privilege principles.
- Secure GitLab CI/CD end-to-end with integrated SAST/DAST/dependency/container/secret scanning and IaC security gate checks.
- Own cloud/Kubernetes incident response triage, containment, investigation, and remediation.
What you'll need
- 7+ years experience in DevSecOps, cloud security, or infrastructure security engineering.
- Deep hands-on experience securing Kubernetes clusters in production (RBAC, network policies, pod security, runtime protection).
- Proven experience with GCP and/or AWS security services and IAM design.
- Strong CI/CD security knowledge including pipeline hardening and secrets management.
- Experience internalising service endpoints and reducing cloud attack surface.
- Familiarity with HIPAA, SOC 2, or ISO 27001 in regulated environments.
- Clear communication skills, including explaining vulnerabilities and writing runbooks.
Nice to have
- Certified Kubernetes Security Specialist (CKS).
- Google Professional Cloud Security Engineer or AWS Security Specialty certification.
- eBPF-based security tooling experience (e.g., Cilium, Tetragon), penetration testing, or red team experience.
- Threat modelling using STRIDE or PASTA.
- Service mesh security beyond Istio.
Details
- Location: Hyderabad, TS, India.
- Work includes cloud/Kubernetes and compliance reporting for SOC 2, HIPAA, and ISO 27001.
Read the full description and apply on the company’s own careers page.