We are looking for a security-first Cloud DevSecOps Engineer to design, automate, and protect our multi-cloud infrastructure across AWS and Azure. In this role, you won't just build pipelines—you will bake security directly into them. You will work closely with our development and engineering teams to enforce a "Shift Left" culture, ensuring that automation, scalability, and airtight cloud compliance go hand-in-hand.
Core Responsibilities
· Multi-Cloud Automation: Build and manage highly available infrastructure across AWS and Azure using Infrastructure as Code (Terraform).
· Pipeline Hardening: Design and secure CI/CD pipelines (GitHub Actions, Azure DevOps, or GitLab), embedding automated vulnerability scanning, SAST/DAST, and container scanning tools.
· Identity & Secrets Access: Enforce zero-trust architecture across both platforms via robust IAM strategy, RBAC, and secure secrets management (HashiCorp Vault, Azure Key Vault).
· Container Security: Deploy, manage, and harden containerized workloads running in Kubernetes (EKS & AKS).
· Compliance & Monitoring: Continuously audit cloud posture using AWS Security Hub and Azure Defender to ensure alignment with frameworks like SOC2, ISO 27001, or CIS benchmarks.
Key Qualifications
· Experience: 3+ years in a cloud operations or infrastructure role managing production environments in both AWS and Azure.
· Tools: Deep familiarity with Terraform, Docker, Kubernetes, and scripting languages (Python, Bash, or PowerShell).
· Security Mindset: Practical knowledge of cloud network security, data encryption, and vulnerability management.
· Certifications (Preferred): AWS Certified Security/DevOps Professional, Azure Security Engineer (AZ-500), or CKS (Certified Kubernetes Security Specialist). Here is a concise, targeted job description for a DevSecOps Engineer/Architect, shifting the focus from high-level cloud design to the hands-on engineering, automation, and pipeline integration of those security products and guardrails.


