Specialist, DevSecOps
Noida, India
DevSecOps:
• Embed security practices into CI/CD pipelines to ensure secure code deployment.
• Conduct static and dynamic application security testing (SAST/DAST) and manage vulnerability remediation.
• Automate security checks and integrate them into the software development process.
• Collaborate with development teams to perform threat modeling and code reviews.
• Ensure compliance with secure coding standards and best practices.
• Manage and optimize container and Kubernetes security, including image scanning and runtime protection.
• Having good experience in DevSecOps tools services.
• Having good experience in AWS Security, Identity, & Compliance services.
• Having good experience in AWS Compliance & Governance services.
• AWS Professional Certified will get weightage.
• Also have depth knowledge of python and CloudFormation.
• Must be experience in creation and assignment of IAM roles and policies.
• Must have experience in IaC (AWS cli and AWS Boto lib).
• Strong understanding of techniques such as Continuous Integration, Continuous Delivery, Test Driven Development, Cloud Development, resiliency, security
• Having excellent knowledge in SCM tools.
• SSO integration with AWS, Azure & other third-party tools.
• Exposer on GDPR & US data protection setup.
Operational Security:
• Design and implement security controls to protect cloud, hybrid, and on-premises environments.
• Monitor, detect, and respond to security incidents across infrastructure and applications.
• Configure and manage security tools, such as firewalls, intrusion detection systems, and endpoint protection platforms.
• Perform regular audits and penetration testing to assess and enhance system security.
• Collaborate with IT and operations teams to implement secure configurations and patch management.
• Maintain robust identity and access management (IAM) systems, ensuring least privilege principles.
General Security Engineering:
• Stay updated on emerging security trends, threats, and technologies.
• Develop and maintain documentation for security processes and policies.
• Provide training and guidance to teams on security best practices.
• Participate in incident response and forensic investigations as needed.
• Collaborate with cross-functional teams to align security strategies with business goals
Qualifications and Experience:
• Bachelor’s degree in software engineering, Computer Science, Computer Engineering, or related Engineering discipline; master’s degree or higher from IIT/IISc or other premier institutes preferred.
• 6+ years of experience in technical architecture including 4+ years of experience in AWS cloud Security.
Skills and Abilities Required:
• Can-do positive attitude, always looking to accelerate development.
• Driven; commit to high standards of performance and demonstrate personal ownership for getting the job done.
• Innovative and entrepreneurial attitude; stays up to speed on all the latest technologies and industry trends; healthy curiosity to evaluate, understand and utilize new technologiesEqual Opportunity Employer
Pentair is an Equal Opportunity Employer. With our expanding global presence, cross-cultural insight and competence are essential for our ongoing success. We believe that a diverse workforce contributes different perspectives and creative ideas that enable us to continue to improve every day.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Application security Audits AWS Azure CI/CD Cloud Compliance Computer Science DAST DevSecOps Firewalls GDPR Governance IAM Incident response Intrusion detection IoT Kubernetes Pentesting Python SAST SSO
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.