DevOps Auditor / DevSecOps Auditor
Role Summary
The DevOps Auditor will assess controls across DevOps, CI/CD, cloud, and release environments to ensure changes are secure, approved, traceable, and compliant with internal audit and regulatory requirements.
Key Responsibilities:
- Review and test controls over CI/CD pipelines, code deployments, and release management
- Assess access controls for DevOps tools, repositories, and production environments
- Evaluate segregation of duties across development, testing, deployment, and operations
- Test controls over source code management, version control, approvals, and rollback procedures
- Review change management controls for application and infrastructure changes
- Assess cloud and container environment controls where applicable
- Validate logging, monitoring, and alerting for DevOps environments
- Review evidence, document findings, and track remediation actions
- Coordinate with engineering, infrastructure, security, and audit teams
Required Experience:
- 4–6 years in IT audit / ITGC / application controls / infrastructure controls
- Hands-on exposure to DevOps, cloud, or release management environments
- Strong understanding of control testing, audit documentation, and stakeholder coordination
Preferred Skills:
- Knowledge of tools such as Git, Jenkins, Azure DevOps, GitHub, GitLab, or similar
- Understanding of cloud platforms like AWS, Azure, or GCP
- Familiarity with DevSecOps concepts and secure deployment practices
Pay: From ₹900,000.00 per year
Experience:
- DevOps: 3 years (Required)
- ITGC Audit: 4 years (Required)
Language:
Work Location: In person