We are looking for a Senior DevSecOps Engineer to help design, implement, and maintain secure, scalable cloud infrastructure on AWS. This role focuses on embedding security into the entire software development lifecycle, automating infrastructure, and improving deployment reliability across our platforms.
You will work closely with engineering, security, and platform teams to build secure CI/CD pipelines, strengthen cloud security posture, and implement best practices for modern DevSecOps environments.
KEY RESPONSIBILITIES
Cloud Infrastructure & Security
- Design and maintain secure AWS infrastructure using infrastructure-as-code.
- Implement and enforce cloud security best practices across AWS services.
- Monitor and remediate security vulnerabilities and misconfigurations.
- Implement IAM policies, secrets management, and access controls.
DevSecOps & Automation
- Integrate security tools into CI/CD pipelines to automate vulnerability detection.
- Build and maintain secure build and deployment pipelines.
- Automate infrastructure provisioning using Terraform / CloudFormation.
- Implement automated compliance checks and security scanning.
Monitoring & Incident Response
- Implement logging, monitoring, and alerting across infrastructure and applications.
- Support incident response and root cause analysis.
- Improve system reliability, availability, and operational visibility.
REQUIRED SKILLS & EXPERIENCE
- 5+ years of experience in DevOps / DevSecOps / Cloud Engineering roles.
- Strong experience with AWS cloud services (EC2, VPC, IAM, S3, RDS, Lambda, EKS, etc.).
- Hands-on experience with Infrastructure as Code (Terraform or CloudFormation).
- Experience building and managing CI/CD pipelines (GitLab CI, Jenkins, etc.).
- Strong understanding of cloud security practices and identity management.
- Experience with container technologies (Docker, Kubernetes / EKS).
- Experience with security scanning tools (SAST, DAST, container scanning, dependency scanning).
- Knowledge of network security, secrets management, and encryption.
PREFERRED QUALIFICATIONS
- Experience implementing DevSecOps frameworks and secure SDLC practices.
- Familiarity with compliance standards (ISO 27001, SOC2, PCI DSS, etc.).
- Experience with SIEM, threat monitoring, and cloud security posture management.
- AWS certifications (AWS Security Specialty, Solutions Architect, or DevOps Engineer).
NICE TO HAVE
- Experience with Kubernetes security and container hardening.
- Familiarity with policy-as-code tools (OPA, Sentinel, etc.).
- Experience building internal developer platforms.
Job Type: Full-time
Work Location: In person