Overview
Staff DevSecOps Engineer (ET team) responsible for embedding security, compliance, and automated release practices across an enterprise applications ecosystem.
What you'll do
- Architect and scale enterprise-grade CI/CD and deployment frameworks across multiple enterprise systems.
- Integrate shift-left security pipelines using SAST, DAST, SCA, and secrets detection tools.
- Standardize secrets management and safeguard third-party dependencies and integrations.
- Manage edge protection and WAF configurations to protect web properties and API endpoints.
- Drive identity and access governance, including RBAC and SAML/SSO integrations.
- Build centralized security monitoring in SIEM tools and lead incident response with RCA.
- Establish continuous compliance controls across SaaS/PaaS tools and lead secure-by-design architecture.
What you'll need
- 8+ years hands-on DevSecOps, SRE, or Security Engineering, with at least 3+ years in senior/lead capacity.
- Experience securing and automating deployments across two or more enterprise platforms (Salesforce, AEM Cloud/AEMaaCS, NetSuite, Workday).
- Deep expertise with CI/CD and automation pipelines using GitHub Actions, CircleCI, Jenkins, Gearset, and Copado.
- Advanced hands-on experience with Cloudflare or similar edge security platforms (WAF, SSL/TLS automation, DDoS mitigation, DNS management).
- Proficiency embedding SAST/DAST/SCA and secrets scanning tools (Snyk, SonarQube, GitGuardian, OWASP ZAP, Prisma Cloud/Wiz).
- Expertise with Splunk or Datadog for log aggregation, security analytics, and automated alerting.
Details
- Location: Bengaluru, India.
Read the full description and apply on the company’s own careers page.