DevSecOps Engineer

Urgent

Required Skills

Python (3)AWS (3)Ruby on Rails (3)

Additional Skills

NodeJS (3)

Job Description

As a DevSecOps Engineer, you will play a critical role in ensuring the security, reliability, and scalability of our cloud-based infrastructure while supporting the development lifecycle of our applications built on Ruby on Rails, NodeJS, and Python. You will work closely with our development, operations, and security teams to implement best practices in DevOps and security methodologies, with a focus on automation and continuous improvement.
Responsibilities:
  • Design, implement, and maintain secure, scalable, and highly available AWS infrastructure using infrastructure as code (IaC) tools such as Terraform or CloudFormation.
  • Implement and manage CI/CD pipelines for automated deployment and testing of applications using tools such as Jenkins, GitLab CI/CD, or AWS CodePipeline.
  • Collaborate with development teams to integrate security practices into the software development lifecycle (SDLC) and ensure secure coding practices.
  • Perform security assessments, vulnerability scans, and penetration testing on applications and infrastructure to identify and remediate security risks.
  • Monitor and analyze system logs and metrics to detect and respond to security incidents in a timely manner.
  • Implement and manage security controls and compliance frameworks such as SOC 2, GDPR, HIPAA, or PCI-DSS.
  • Provide guidance and support to development and operations teams on security best practices and procedures.
  • Stay up-to-date with emerging security threats, vulnerabilities, and technologies to proactively address potential risks.

Qualifications

  • Bachelor's degree in Computer Science, Information Security, or a related field (or equivalent experience).
  • 3+ years of experience working as a DevOps Engineer, Site Reliability Engineer, or similar role.
  • Hands-on experience with AWS services such as EC2, S3, Lambda, IAM, RDS, and VPC.
  • Proficiency in scripting and programming languages such as Ruby (Ruby on Rails), NodeJS, and Python.
  • Experience with containerization and orchestration technologies such as Docker and Kubernetes.
  • Strong understanding of DevOps principles and practices, including continuous integration, continuous deployment, and infrastructure automation.
  • Knowledge of security principles, protocols, and best practices, with experience implementing security controls in cloud environments.
  • Familiarity with security assessment tools and techniques, such as vulnerability scanners, penetration testing tools, and security information and event management (SIEM) systems.
  • Excellent communication and collaboration skills, with the ability to work effectively in a cross-functional team environment.
  • Relevant certifications such as AWS Certified Security – Specialty, Certified Information Systems Security Professional (CISSP), or Certified Ethical Hacker (CEH) are a plus.

Benefits

A great talent deserves even greater compensation. CoDev provides several benefits that you can enjoy as soon as you join our growing team. We take pride in delighting you with what you deserve.