DevSecOps Lead Engineer
Job Description:
Job Title: DevSecOps Lead Engineer
Location: Pune, Maharashtra (Hybrid/Work from Office)
Experience Required: 8+ years
Position Overview:
We are seeking an experienced DevSecOps Lead Engineer to join our dynamic team. The ideal candidate will have extensive experience in DevSecOps practices, with a strong focus on application security OR API security. This role requires hands-on expertise in Static Application Security Testing (SAST) OR Dynamic Application Security Testing (DAST) tools.
Key Responsibilities:
Design, implement, and manage DevSecOps pipelines to integrate security practices throughout the software development lifecycle.
Perform security assessments of applications and APIs using SAST OR DAST tools.
Collaborate with development, operations, and security teams to ensure secure coding practices and compliance with security standards.
Develop and maintain security policies, procedures, and best practices.
Identify, assess, and mitigate security vulnerabilities and threats in applications and infrastructure.
Automate security testing processes and integrate them into CI/CD pipelines.
Conduct regular security reviews and assessments to ensure ongoing security posture.
Required Skills and Qualifications:
Bachelor's degree in Computer Science, Information Security, or a related field.
8+ years of experience in DevSecOps, with a strong focus on application OR API security.
Hands-on experience with SAST OR DAST tools (e.g., Veracode, Fortify, OWASP ZAP).
Proficiency in scripting and automation using tools like Jenkins, GitLab CI/CD, or similar.
Strong understanding of security principles, practices, and tools.
Experience with cloud security or infrastructure (e.g., AWS, Azure, GCP).
Excellent problem-solving skills and the ability to work independently.
Strong communication skills, with the ability to convey complex security concepts to non-technical stakeholders.
Preferred Qualifications:
Relevant security certifications (e.g., CISSP, CISM, CEH).
Experience with container security and orchestration tools (e.g., Docker, Kubernetes).
Knowledge of compliance frameworks and standards (e.g., GDPR, PCI-DSS).
Key Skills :
Company Profile
we strive to exceed your expectations by providing client centric recruitment model and focus on networking,
Apply Now
- Interested candidates are requested to apply for this job.
- Recruiters will evaluate your candidature and will get in touch with you.