DevSecOps

Omnissa

Bengaluru

On-site

INR 2,000,000 - 4,500,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Omnissa is seeking a seasoned DevSecOps Engineer in Bengaluru to strengthen security across CI/CD pipelines and cloud environments. You will rotate through roles including Cloud Security Architect, incident response, and security process improvement in a fast-paced SaaS setting.

Ideal candidates have 8–14 years of hands-on experience with AWS CI/CD, SAST/DAST integrations, Kubernetes security, and strong communication skills to drive security initiatives across product lines.

Qualifications

  • 8 to 14 years of hands-on or IC experience with CI/CD environments on AWS.
  • Strong DevSecOps include Shift-Left Security, SAST/DAST integration, and Kubernetes security.
  • Strong knowledge of cloud security weaknesses and mitigation techniques.
  • Proficiency in at least one scripting language: Python, Terraform, CloudFormation.
  • Strong problem-solving skills.
  • Ability to learn independently and be self-driven.
  • Experience leading practical threat modelling.
  • Excellent documentation and communication skills.
  • Previous SaaS product security experience strongly preferred.

Responsibilities

  • Contribute as a DevSecOps Engineer across multiple security domains.
  • Design technical enhancements as Cloud Security Architect for product lines.
  • Assist DevOps teams in incident response and triage urgent findings.
  • Improve security management processes in a fast-paced environment.
  • Collaborate with industry-talent teams to assess and improve security posture.

Skills

8-14 years CI/CD AWS experience
Shift-Left Security
SAST/DAST integration
Kubernetes security
Cloud security knowledge
Python
Terraform
CloudFormation
Problem solving
Independent learning
Threat modelling
Documentation & communication
SaaS product security

Tools

Kubernetes
Docker
Serverless
Terraform
CloudFormation
Ansible

Job description


  • 8 to 14 years of hands-on or Individual contributor experience with CI/CD environments on AWS

  • Strong DevSecOps include Shift-Left Security, SAST/DAST integration, and Kubernetes security

  • Strong knowledge of cloud security weaknesses and mitigation techniques

  • Proficiency in at least one of the following scripting languages: Python, Terraform, CloudFormation

  • Strong problem-solving skills

  • Ability to learn independently and is self-driven

  • Experience leading practical threat modelling

  • Excellent documentation and communication skills

  • Previous experience in SaaS product security strongly preferred


What is the opportunity?

Security is a top priority at Omnissa, and you will be able to show your passion for security and make meaningful contributions. You will be empowered to think outside of the box and design innovative solutions.


As a Devsecops Engineer in a small but mighty team, you will wear many hats. At times you will function as a Cloud Security Architect, designing technical enhancements that serve as a model across product lines. At other times, you will be assisting DevOps teams in responding to potential incidents, or triaging urgent findings, or improving our security management processes. You thrive on a fast paced environment with a lot of variety.


You will have the opportunity to work with some of the most talented people in the industry to continually assess and improve the security posture of leading SaaS products in the End User Computing space.


Key Responsibilities:

You thrive on working across multiple security domains, with core activities including:



  • CI/CD Security: Integrate and improve security controls in the CI/CD pipelines to enable efficient and secure software delivery.

  • Skills Needed: Understanding of secure software delivery principles and microservices architectures on platforms like Kubernetes, Docker, Serverless and cloud-based virtual machines. Experience with CI/CD tools and processes.

  • Design and Refinement of Security Configurations: Develop and optimize standards to enhance the security of our applications and systems.

  • Skills Needed: Knowledge of security standards and best practices. Experience with WAF, network firewalls, NIDS/HIDS, and AWS.

  • Vulnerability Identification and Remediation: Develop and implement strategies and processes for improving vulnerability identification and management. Work closely with development and operations teams to remediate identified vulnerabilities.

  • Skills Needed: Understanding of shift-left and best practices for proactive vulnerability identification, mitigation and remediation. Experience with SCA, SAST, and runtime scanning tools in cloud environments.

  • Automation for Security and Compliance Processes: Design and implement automation to support processes related to security and compliance.

  • Skills Needed: Familiarity with automation tools and frameworks, such as Ansible and Terraform.

  • Threat Modelling: Conduct comprehensive threat modelling for both new and existing services to identify potential security risks and provide recommendations for mitigating those risks.

  • Skills Needed: Understanding of threat modelling frameworks, such as STRIDE, PASTA, and/or Attack Trees. Knowledge of security frameworks such as MITRE ATT&CK and OWASP standards. Experience communicating security requirements to developers.

  • Incident Detection and Response: Contribute to and improve incident response activities to quickly address and mitigate security incidents.

  • Skills Needed: Quick decision-making, problem-solving skills, and continuous improvement mindset. Knowledge of security frameworks such as MITRE ATT&CK.

  • Security Evangelism and Training: Advocate for and promote a culture of security and best practices within the organization.

  • Skills Needed: Passion for security, and excellent communication and presentation skills.

  • Security Testing and Research: Stay up to date with the latest security trends and testing methodologies.

  • Skills Needed: Lifelong-learning mindset, and proficiency in security testing tools and methodologies.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Engineer - Devsecops - Bengaluru
Senior Engineer - Devsecops - Bengaluru

Omnissa, LLC • Bengaluru

On-site
INR 3,000,000 - 6,000,000
Senior Engineer - Devsecops - Bengaluru
Senior Engineer - Devsecops - Bengaluru

Omnissa India Private Limited • Bengaluru

On-site
INR 5,500,000 - 9,000,000
Sr. DevSecOps Engineer
Sr. DevSecOps Engineer

Maruti Suzuki India Ltd. • Gurgaon

On-site
INR 1,500,000 - 2,000,000
Devsecops Engineer
Devsecops Engineer

Mphasis • Chennai District, Pune District

On-site
INR 2,000,000 - 3,600,000
DevSecOps Engineer
DevSecOps Engineer

Delta6Labs FinTech Pvt Ltd • India

On-site
INR 1,200,000 - 1,800,000
Senior DevSecOps Engineer
Senior DevSecOps Engineer

IntraEdge • Hyderabad

On-site
INR 2,000,000 - 4,200,000
DevSecOps Engineer
DevSecOps Engineer

Clinikally (YC S22) • Gurugram District

On-site
INR 800,000 - 1,400,000
Senior Member of Technical Staff (C#, Distributed systems)
Senior Member of Technical Staff (C#, Distributed systems)

Omnissa • Bengaluru

On-site
INR 1,200,000 - 1,800,000
Senior Manager-DevSecOps
Senior Manager-DevSecOps

Trinity Partners India LLP • Bengaluru

On-site
INR 1,200,000 - 1,800,000
Application Security Engineer II
Application Security Engineer II

Phenom • Hyderabad

On-site
INR 1,800,000 - 3,000,000