Software Engineer 2 – DevSecOps
India
Boomi
Boomi iPaaS solutions help you power the future of your business with intelligent integration and automation. Connect everything, everywhere, with Boomi.About Boomi and What Makes Us Special
Are you ready to work at a fast-growing company where you can make a difference? Boomi aims to make the world a better place by connecting everyone to everything, anywhere. Our award-winning, intelligent integration and automation platform helps organizations power the future of business. At Boomi, you’ll work with world-class people and industry-leading technology. We hire trailblazers with an entrepreneurial spirit who can solve challenging problems, make a real impact, and want to be part of building something big. If this sounds like a good fit for you, check out boomi.com or visit our Boomi Careers page to learn more.
What you’ll achieve
As a DevSecOps Engineer, you will collaborate with teams to remediate cloud misconfigurations, integrate security tools into CI/CD pipelines, and support key rotation and secrets management initiatives. You’ll bring hands-on expertise in IAM management and container security, contributing to secure SDLC processes that align with Boomi’s cloud security strategy and support continuous improvement.
Role and Responsibilities
-
Assist in identifying and remediating cloud misconfigurations using CSPM tools and Stacklet.
-
Support encryption key upgrades and assist with secrets management automation.
-
Collaborate with teams on AWS IAM audits and account privilege management.
-
Integrate security scanning (SAST/DAST) into CI/CD pipelines (GitLab, Jenkins).
-
Contribute to threat modeling sessions and implement recommended mitigations.
-
Assist with container security hardening and Kubernetes policy enforcement.
-
Work with teams to onboard and monitor security logs in SumoLogic.
Technical Must-Know Concepts
-
AWS/Azure IAM fundamentals, KMS, and key vaults.
-
CI/CD pipeline security: SAST/DAST basics, Jenkins, GitLab.
-
Secrets management best practices.
-
Basic understanding of vulnerability scanning tools (Snyk, TruffleHog).
-
Awareness of compliance frameworks (NIST, ISO 27001).
-
Container and Kubernetes security principles.
Be Bold. Be You. Be Boomi. We take pride in our culture and core values and are committed to being a place where everyone can be their true, authentic self. Our team members are our most valuable resources, and we look for and encourage diversity in backgrounds, thoughts, life experiences, knowledge, and capabilities.
All employment decisions are based on business needs, job requirements, and individual qualifications.
Boomi strives to create an inclusive and accessible environment for candidates and employees. If you need accommodation during the application or interview process, please submit a request to talent@boomi.com. This inbox is strictly for accommodations, please do not send resumes or general inquiries.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Audits Automation AWS Azure CI/CD Cloud Compliance CSPM DAST DevSecOps Encryption GitLab IAM ISO 27001 Jenkins Kubernetes NIST SAST SDLC Security strategy Strategy
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.