DevSecOps Engineer

  • Hyderabad
  • Sid Global Solutions

About SIDGS:

SIDGS is a premium global systems integrator and global implementation partner of Google corporation, providing Digital Solutions & Services to Fortune 500 companies. Our Digital solutions go across following domains: User Experience, CMS, API Management, Microservices, DevOps, Cloud, Service Mesh, Artificial Intelligence, RPA domains.

We create innovative solutions in Digital, API Management, Cloud and DevOps space in partnership with Google. We understand that every business has a unique set of challenges and opportunities, and we leverage our unique industry insights, honed through decades of combined experience in the technology sector, to deliver the products, solutions, and services necessary to achieve best customer satisfaction and delivering positive impact to the communities.

We are hiring an experienced DevSecOps Engineer with 3-7 years of experience in DevSecOps. If you're dedicated and ambitious, our company is an excellent place to grow your career. This role is going to be in the SIDGS, India offices in (Hyderabad/Bangalore). There may be a travel opportunity as well at the client location in Manila, PH.

Job Title: DevsecOps Engineer

Experience: 3-7 years

Location: Hyderabad/Bangalore

Mode: Work from Office (5 Days)

Must be relocate to Philippines if required.

PROFESSIONAL SUMMARY

A DevSecOps Engineer combines an understanding of both engineering and coding. This role will work with various departments to create, develop and automate various systems functioning for development, build, deployment, monitoring, alerting, infra as a Code (IaaS) within a company.

DevSecOps engineer provides a detailed SME expertise of automation management toolsets, such as CI/CD, Terraform, Ansible, IaaS, Puppet, Chef, Prometheus, Grafana, Building networking, security policies and infra on AWS and/or on prem. This role will review the architecture & design, Terraform codes, and Shell Scripting.

This role is going to report to the DevSecOps Technical Lead.

RESPONSIBILITIES

  • Co-ordinate with the existing engineering team to understand their development, build and deployment process.
  • Make design to build secure networking, infrastructure, database, monitoring, alerting on AWS cloud.
  • Automate this build and deployment process with automated CI/CD pipelines using the technologies Git, Jenkins, AWS CI, ARGO CD, Nexus, SonarQube, Docker, Docker images, Kubernetes, and AWS EKS & ECS.
  • Writing and managing the docker files, service files, deployment files (with various aspects to take care for auto scalability, de-scalability, certs, roles, volume integration) for the various microservices.
  • Manage the artifacts for all the 3rd party dependent jars, and the image repository for all the 3rd party docker images which are used in various projects in the Nexus tool.
  • Make sure to run the regular basis security scanning on all the 3rd party jars and docker images artifacts, and in case of any threat detected to automatically notify the respective for this threat. Continuously follow with that engineering team to provide alternate jar/war/images in lieu of the unsecured and corrupted one.
  • Create an infrastructure-as-code mentality. Write Terraform scripts to code the entire infra, networking, configurations, security policies setup on AWS as an IaaS.
  • Bring the expertise into architecture & design on AWS.
  • Implements monitoring/alarming tools, develops/reviews KPIs, identifies issues, errors, inconsistencies, anomalies, to ensure system health and works with lead engineers to plan and scale services as necessary.
  • Supports and co-ordinates with other DevOps leads and engineers with the architecture, design, development.
  • Build the strategy & setup the process to implement the maker and checker concept for any changes going to happen in the security policies, network, infra etc.

TECHNICAL SKILLS

  • Primarily AWS cloud. Good to have Azure knowledge as well.
  • Certification on AWS cloud is preferred.
  • Various tech stacks on AWS Like: VPC, AWS networking, EC2, WAF, CDN, Route 53, Security policies, AWS CI/CD, ECS, EKS, containerization, Application load balancer, KMS, Vault. Sound knowledge of architecture.
  • Design and implement the automation for CI/CD using Jenkins and ARGO
  • Design and implementation for monitoring, alerting, and observability of the entire infra, network, database, and any security breaches.
  • Setup auto scalability and de-scalability of the microservices.
  • Make sure the architecture and design are supporting the Disaster Recovery (DR) and High Availability (HA)
  • Sound knowledge of monitoring and alerting tools like: Prometheus, Grafana, develop the various dashboards in Prometheus & Grafana, Prometheus query language.
  • Expertise in writing the Terraform Scripts to convert every setup into Infrastructure as a Code.
  • Sound knowledge of capacity planning and costing on AWS and/or on-prem datacenter.
  • Sound knowledge of shell scripting
  • Well versed in managing the various keys, certificates and its automatic renewal and rotations.
  • Expert in setting up the various security tools like: AWS DDOS, WAF, Inspector, KMS, Vault.
  • Sound knowledge on Ansible, Puppet and Chef like tools.
  • Setup SonarQube and/Checkmarks into the CI/CD pipeline for SAST, DAST, and code coverage report.

QUALIFICATIONS

  • BE/B. Tech and/or M. Tech in any discipline
  • 3-7 years of industry experience in DevSecOps.
  • Strong problem-solving skills.
  • Strong on Terraform
  • Good collaboration skills.
  • Good communication skills.