Job Description
Job Title: DevSecOps Engineer
Job Summary
We are seeking a highly skilled DevSecOps Engineer to embed security across the DevOps lifecycle in multi-cloud environments (AWS, Azure, OCI). The ideal candidate will have strong hands-on experience with Infrastructure as Code, Policy as Code, cloud security controls, and serverless development, ensuring secure, compliant, and scalable cloud platforms.
Key Responsibilities
- Integrate security into CI/CD pipelines across multi-cloud environments
- Design, develop, and maintain Infrastructure as Code (IaC) using Terraform and CloudFormation
- Implement Policy as Code and governance controls across AWS, Azure, and OCI
- Write and manage cloud security policies including:
- AWS IAM Policies, SCPs, Resource Policies
- Azure RBAC, Azure Policies, Blueprints
- OCI IAM Policies and Compartments
- Develop and maintain serverless functions:
- AWS Lambda
- Azure Functions
- OCI Functions
- Automate security controls, compliance checks, and remediation workflows
- Integrate security tools (SAST, DAST, SCA, container and IaC scanning) into pipelines
- Monitor cloud environments for security risks and vulnerabilities
- Collaborate with DevOps, Cloud, and Security teams to design secure architectures
- Support compliance with industry standards and regulatory requirements
Required Skills & Qualifications
- Strong hands-on experience with Terraform (multi-cloud)
- Experience with AWS CloudFormation, Azure ARM/Bicep (preferred)
- Proven experience writing cloud security policies and governance controls
- Experience with Policy as Code (OPA, Sentinel, Azure Policy, AWS Config, OCI Security Zones)
- Hands-on development of serverless functions (Python / Node.js preferred)
- Solid understanding of cloud security principles across AWS, Azure, and OCI
- Knowledge of CI/CD tools (Jenkins, GitHub Actions, GitLab CI, Azure DevOps)
- Experience with containers and orchestration (Docker, Kubernetes)
- Strong scripting skills (Python, Bash, etc.)
- Knowledge of OWASP Top 10 and secure coding practices
Preferred Qualifications
- Experience with cloud governance frameworks and landing zones
- Familiarity with AWS Control Tower, Azure Landing Zones, OCI Landing Zone
- Experience with compliance standards (ISO 27001, SOC 2, PCI-DSS)
- Cloud and security certifications (AWS, Azure, OCI, Kubernetes, CKS)
Soft Skills
- Strong policy documentation and technical writing skills
- Ability to automate security at scale across multiple cloud platforms
- Excellent communication and collaboration skills
Apply for this Position
Ready to join ? Click the button below to submit your application.
Submit Application