DevSecOps Security Engineer

Ford

Chennai District

On-site

INR 1,500,000 - 1,800,000

Full time

6 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Ford is seeking a DevSecOps Security Engineer to ensure SDLC follows security best practices. You’ll guide teams in secure coding and test applications for security risks before release.

You will drive security testing, assist in triaging vulnerabilities, and integrate tools into CI/CD pipelines. Flexibility for global collaboration is required, with a focus on continuous security improvement.

Qualifications

  • Bachelor's degree or equivalent in a relevant field.
  • At least 3 years across multiple security disciplines (app sec, cloud sec, vulnerability mgmt, secure development).
  • Cybersecurity/DevSecOps certifications preferred.
  • Willingness to work flexible timings for global support.

Responsibilities

  • Drive implementation of security testing (SAST/DAST/SCA/IaC).
  • Triages and addresses application security vulnerabilities.
  • Integrate security tools into CI/CD pipelines (Tekton, Cloud Build, GitHub Actions).
  • Define and publish DevSecOps security requirements.
  • Prioritize vulnerabilities and remediation timelines.
  • Collaborate with cross-functional teams to enforce security best practices.
  • Monitor vulnerability trends and plan targeted actions.
  • Stay updated on security trends to improve processes.
  • Provide security training and guidance to development teams.

Skills

Security testing
CI/CD automation
Vulnerability remediation
Scripting (Golang/Python/Shell/YAML)
AI tools proficiency
DevOps tooling
Networking basics
Agile practices
Communication skills

Education

Bachelor's degree in CS/Cybersecurity/Software Engineering
Equivalent education/experience

Job description

The DevSecOps Security engineer ensures that every step of the software development lifecycle (SDLC) follows security best practices. They are also responsible for guiding the teams to adhere to secure coding principles and aid in testing the application against security risks/parameters before release.

  • Drive the implementation of security testing (Secrets Scanning/ SAST / DAST / SCA/IAC/Container Scanning/ AI Security)
  • Assist teams in triaging and addressing application security vulnerabilities.
  • Support integration of security tools into CI / CD pipelines. (Tekton, Cloud Build, Github actions etc.)
  • Define and publish security requirements from a DevSecOps perspective.
  • Prioritizing vulnerabilities discovered along with recommending remediation timeline.
  • Collaborate with cross-functional teams to ensure security best practices are followed throughout the software development lifecycle.
  • Monitoring and analyzing vulnerability trends to identify focused actions like training, bulk fix, etc.
  • Stay up to date with the latest security trends and technologies to continuously improve security processes
  • Provide security training and guidance to development teams on secure coding practices and security awareness
Qualifications required:
  • Bachelor (undergraduate) degree in a relevant field (Computer Science, Cybersecurity, Software Engineering, or others) OR an equivalent combination of education, training, and experience.
  • Minimum of 3 years of professional experience with any combination of at least 2 technical disciplines, including the following: application security, cloud security, vulnerability management, secure development methodologies, identity management.
  • Preferred - Cybersecurity / DevSecOps certifications
  • Willingness to work in flexible timings to support global customers / collaboration.
Skillset required:
  • Experience in security testing (SCA, SAST, DAST, Container Scanning, IaC, etc), and their integration into CI/CD.
  • Provide technical expertise in fixing the vulnerabilities. (e.g. Knowledge of OWASP Top 10).
  • Excellent communication skills (written and verbal) with an ability to articulate complex topics in a clear and concise manner.
  • Experience in integrating, monitoring and improving DevSecOps tools and processes, automate routine tasks and improve system reliability.
  • Experience in writing scripts in languages such as Golang, Shell Script, Python, YAML etc.
  • Experience in DevOps related tools, pipelines, platforms, registries and version control systems.
  • Power-user of AI tools to boost productivity and quality of DevSecOps processes.
  • Basic understanding of network and web related protocols (such as TCP/IP, UDP, HTTP, HTTPS, protocols)
  • Good knowledge of Agile processes (planning/standups/retros etc.) and interact with cross functional teams.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

DevSecOps Engineer
DevSecOps Engineer

Delta6Labs FinTech Pvt Ltd • India

On-site
INR 1,200,000 - 1,800,000
Senior DevSecOps Engineer
Senior DevSecOps Engineer

IntraEdge • Hyderabad

On-site
INR 2,000,000 - 4,200,000
DevSecOps Engineer
DevSecOps Engineer

Exaze • Hyderabad

Hybrid
INR 3,500,000 - 6,000,000
Sr. DevSecOps Engineer
Sr. DevSecOps Engineer

Maruti Suzuki India Ltd. • Gurgaon

On-site
INR 1,500,000 - 2,000,000
DevSecOps Engineer
DevSecOps Engineer

Clinikally (YC S22) • Gurugram District

On-site
INR 1,200,000 - 2,000,000
DevSecOps
DevSecOps

Cloudxtreme • Pune District

On-site
INR 1,500,000 - 2,100,000
DevSecOps Process & Tools - Principal Engineer
DevSecOps Process & Tools - Principal Engineer

Pepsico • Hyderabad

On-site
INR 4,500,000 - 6,500,000
Sr. Devsecops Security Engineer
Sr. Devsecops Security Engineer

Atos SE • Bengaluru

On-site
INR 2,500,000 - 4,000,000
Sr. Devsecops Security Engineer
Sr. Devsecops Security Engineer

Atos • Bhopal

On-site
INR 1,800,000 - 2,400,000
DevSecOps Professional
DevSecOps Professional

Shashwath Solution • Dadri

On-site
INR 1,200,000 - 2,000,000