DevSecOps-AI SSDLC Security Engineer

Alignity Solutions

Hyderabad

Hybrid

INR 800,000 - 1,400,000

Part time

14 days+
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

Alignity Solutions in Hyderabad is seeking a DevSecOps-AI SSDLC Security Engineer to embed security across modern software delivery. You will implement SAST/DAST/SCA within CI/CD, automate tests, and enforce security gates.

You will perform OSS dependency reviews, API security tests (OAuth2/OIDC/JWT), and guide developers on secure coding and shift-left practices. The role is hybrid with immediate joining.

Qualifications

  • Experience integrating SAST, SCA, and DAST in CI/CD pipelines.
  • Proficient in static, dynamic, and OSS dependency assessments.
  • Experience with API security testing (OAuth2/OIDC/JWT).
  • Ability to prioritize vulnerabilities and provide remediation guidance.
  • Collaborates with developers to embed secure coding and shift-left security.

Responsibilities

  • Integrate and optimize SAST, SCA, and DAST in CI/CD pipelines.
  • Perform static, dynamic, and OSS dependency assessments.
  • Execute API security testing (REST/GraphQL) with proper auth checks.
  • Analyze results and provide actionable remediation guidance.
  • Work with teams to embed secure coding and shift-left practices.
  • Support threat modeling and security design reviews.
  • Track vulnerabilities through closure and validation.

Skills

SAST
SCA
DAST
API security testing
OAuth2/OIDC/JWT
Threat modeling
Secure coding
Shift-left security
CI/CD security
Automation scripting

Education

Bachelor's degree in CS or related

Tools

Sbom tooling
IaC scanning tools
Container image scanning
Kubernetes security tools
CI/CD integrations

Job description

If you are a DevSecOps-AI SSDLC Security Engineer looking for excitement, challenge and stability in your work, then you would be glad to come across this page.

We are an IT Solutions Integrator/Consulting Firm helping our clients hire the right professional for an exciting long-term project. Here are a few details.

Check if you are up for maximizing your earning/growth potential, leveraging our Disruptive Talent Solution.

Role: DevSecOps-AI SSDLC Security Engineer

Work Mode: Hybrid

Type: Contract to Hire

Notice Period:Immediate Joiners

Requirements

Description:

As a Security Engineer, you will:

  • Integrate, configure, and optimize SAST, SCA, and DAST tools within CI/CD pipelines to automate security testing across build, test, and release stages (including quality gates and exception workflows).
  • Perform static, dynamic, and open-source dependency assessments to identify vulnerabilities including OWASP Top 10 risks, insecure libraries, exposed secrets, misconfigurations, and software supply-chain weaknesses.
  • Execute API security testing (REST/GraphQL) including authentication/authorization validation (OAuth2/OIDC/JWT), input validation, rate limiting/abuse cases, and broken object/function level authorization (BOLA/BFLA), and translate results into developer-ready fixes.
  • Analyze scan results, remove false positives, prioritize findings based on exploitability and business impact, and provide clear, actionable remediation guidance (secure coding patterns, compensating controls, and verification steps).
  • Work hands-on with developers, DevOps engineers, architects, and client stakeholders to embed secure coding , secure design , and shift-left security practices, including playbooks, office hours, and remediation sprints.
  • Support threat modeling and security design reviews; convert threats into actionable security requirements, test cases, and engineering backlog items aligned to delivery timelines.
  • Track vulnerabilities through closure, validate remediation (re-scan, proof of fix, and regression checks), and ensure issues are managed in line with client policy, risk tolerance, and SLA expectations.
  • Implement additional DevSecOps controls such as IaC scanning , secrets detection , container image scanning , and Kubernetes security checks (where applicable), including policy-as-code to prevent insecure deployments.
  • Strengthen software supply-chain security by supporting SBOM generation/consumption, dependency hygiene, and build/release integrity controls (e.g., artifact signing/verification and provenance where applicable).
  • Automate repeatable security tasks using scripting (e.g., Python/Bash) and integrations (APIs/webhooks) to improve scan reliability, reporting, and developer workflow adoption.
  • Design and build AI agents / agentic workflows for AppSec automation (e.g., triage, false-positive suppression, secure code review assistance, threat-model generation, remediation assistance), ensuring appropriate guardrails, logging, and human-in-the-loop validation.
  • Perform current-state assessments of client DevSecOps and emerging AISecOps practices against industry standards; provide prioritized recommendations and an implementation roadmap.
  • Perform security testing across modern application surfaces—code, APIs, cloud, containers/Kubernetes—and, where applicable, AI/ML pipelines (e.g., RAG data flows, model integration points, and tool/function calling) using a combination of automated and manual techniques.
  • Produce security assessment reports, dashboards, trend analysis, and root-cause insights for technical and non-technical stakeholders.
  • Contribute to secure SDLC standards aligned to recognized verification frameworks such as OWASP ASVS
  • Stay current on emerging threats, AppSec tooling trends, software supply-chain risks, and new attack surfaces introduced by AI-enabled applications and agentic workflows.
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

DevSecOps-AI SSDLC Security Engineer
DevSecOps-AI SSDLC Security Engineer

Alignity • Hyderabad

Hybrid
INR 1,800,000 - 3,200,000
Hybrid work model
Equal Opportunity Employer
DevSecOps Engineer
DevSecOps Engineer

Delta6Labs FinTech Pvt Ltd • India

On-site
INR 1,200,000 - 1,800,000
Security Engineer
Security Engineer

Promaynov Advisory Services Pvt. Ltd • Bengaluru

On-site
INR 1,000,000 - 1,500,000
Staff Engineer - Application Security
Staff Engineer - Application Security

UST • Bengaluru

On-site
INR 2,400,000 - 4,200,000
DevSecOps Engineer
DevSecOps Engineer

Clinikally (YC S22) • Gurugram District

On-site
INR 1,200,000 - 2,000,000
Senior DevSecOps Engineer
Senior DevSecOps Engineer

Nextwebi • Bengaluru

On-site
INR 1,500,000 - 3,000,000
Sr. DevSecOps Engineer
Sr. DevSecOps Engineer

Maruti Suzuki India Ltd. • Gurgaon

On-site
INR 1,500,000 - 2,000,000
DevSecOps Engineer
DevSecOps Engineer

Exaze • Hyderabad

On-site
INR 3,500,000 - 6,000,000
DevSecOps & Product Security Engineer
DevSecOps & Product Security Engineer

Weekday • Hyderabad

On-site
INR 400,000 - 1,500,000
DevSecOps Engineer
DevSecOps Engineer

SUVIKSAN TECHNOLOGIES PRIVATE LIMITED • Bengaluru

On-site
INR 1,000,000 - 1,500,000
Competitive salary
Learning & Development opportunities
Exposure to modern cloud technologies