Lead Engineer - Cloud IND

OSB India

Bengaluru

On-site

INR 1,400,000 - 2,400,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

OSB India is seeking a hands-on DevSecOps Engineer in Bengaluru to implement and maintain security-focused DevOps practices across Azure and multi-Cloud environments. You will collaborate with Cloud, Security, and IT operations teams to ensure secure, scalable cloud platforms and pipelines.

The role emphasizes applying security controls, automating vulnerability scanning, and enabling secure coding practices while managing AKS clusters and cloud-native security services.

Qualifications

  • Hands-on DevSecOps engineer with 5-8 years of experience.
  • Experience in Azure and multi-Cloud environments.
  • Ability to implement security-as-code and integrate security into CI/CD pipelines.
  • Knowledge of CIS/NIST/GDPR/ISO/CSA CCM controls and cloud security best practices.

Responsibilities

  • Implement, maintain, and optimize DevSecOps processes, tools, and security measures in Azure and multi-Cloud environments.
  • Collaborate with security and architecture teams to define security objectives for projects.
  • Integrate security practices into development lifecycles and manage risk.
  • Develop and deploy security-as-code for cloud compute, containers, and CI/CD pipelines.

Skills

Azure DevOps
Kubernetes
Helm
Terraform
CI/CD pipelines
Security tools

Tools

AKS
Azure Key Vault
Azure DevOps/GitHub Actions
SAST/DAST/IAAC tools (SonarQube, OWASP ZAP, Checkov)

Job description

Job Purpose

The DevSecOps Engineer is a hands-on, delivery-focused individual with 5-8 years of experience responsible for implementing and maintaining DevSecOps processes, tools, and security measures in Azure and multi-Cloud environments. The DevSecOps Engineer will bring their experience to a talented group to further evolve the technical capabilities of OSB, drive improvements across processes and unlock new cloud capabilities for the group.

The DevSecOps Engineer will be a part of the Cloud Centre of Excellence and will work closely with multiple teams within OSB, such as the architecture review board, Engineering Teams, Cloud security team, IT operations, etc., to ensure comprehensive coverage of requirements for the Cloud platform across the Group.

Core Responsibilities
  • Implement, maintain, and optimize DevSecOps processes, tools, and security measures in Azure and multi-Cloud environments to support engineering teams in delivering secure, reliable and efficient products.
  • Collaborate with the Cloud Security Architect, SecOps and other teams to define and achieve security objectives for projects and programmes, in alignment with business and functional requirements.
  • Integrate security best practices, regulations, policies, standards, and procedures into the development lifecycle, managing business and security risks.
  • Develop, test, and deploy security-as-code for various Public Cloud compute services, Container platforms, and CI/CD pipelines, leveraging native services and the technologies provided.
  • Ensure compliance with industry-standard controls such as CIS/NIST/GDPR/ISO/CSA CCM, and provide support with their implementation.
  • Support architects in making design choices that consider security, scalability, and maintainability within Cloud services and CI/CD pipelines.
  • Collaborate with application development teams to integrate SAST, SCA, and DAST tools into product feature pipelines and promote secure coding practices.
  • Foster a culture of teamwork, collaboration, and continuous improvement among technical and business teams.
  • Support with remediating security vulnerabilities in applications and infrastructure.
  • Research and utilise modern technologies to meet product requirements, compliance, and controls to enhance OSB’s Cloud security posture.
  • Integrate Cloud-based Key Management services with various tools and applications.
  • Utilize DevSecOps practices to automate security and compliance policies throughout the development lifecycle.
  • Continuously monitor and improve OSB's Cloud security posture using Cloud-native tools and guardrails.
Experience Requirements
  • Strong hands-on expertise in Azure DevOps or any other cloud, Primarily on Azure.
  • Strong experience with Helm, Terraform, and Kubernetes.
  • Build and enhance CI/CD pipelines (Azure DevOps/GitHub Actions/GitLab) with integrated security tools (e.g., SAST, DAST, SCA)
  • Experience working with Azure Repos/ Git repository, Azure Pipelines, Azure Artefact Feeds, Azure Key Vault, Azure Kubernetes Service (AKS), and Azure Container Registry.
  • Automate security scanning and compliance checks into pipelines (e.g., using tools like SonarQube, OWASP ZAP, Checkov, Jib, Trivy, Snyk etc.)
  • Develop and enforce Infrastructure as Code (IaC) security policies using Terraform, Bicep, or ARM templates.
  • Enable Secrets management and key rotation using Azure Key Vault and related tooling.
  • Collaborate with Security teams to align security posture with enterprise guidelines.
  • Integrate identity and access management (IAM) into CI/CD workflows using Azure AD, RBAC, and Conditional Access Policies
  • Monitor and respond to security alerts, perform vulnerability assessments.
  • Maintain logging, monitoring, and threat detection systems (e.g., Microsoft Defender for Cloud, Sentinel, Log Analytics)
  • Advocate for shift-left security and support development teams with secure coding and DevSecOps training.
  • Own the entire lifecycle of AKS clusters: provisioning, upgrading, scaling, monitoring, and patching (control plane & node pools).
  • Manage, monitor, and secure Azure Kubernetes Service (AKS) clusters including node pools, scaling, network policies, and pod security standards.
  • Enable RBAC, network policies, and service mesh configurations to enforce zero-trust architecture within AKS.
  • Perform regular AKS upgrades, patching, and version compatibility checks.
  • Implement and manage container security controls within AKS and enforce policies via tools such as OPA/Gatekeeper or Azure Policy.
  • Implement Istio service mesh for traffic routing, security policies (mTLS, ingress/egress), and observability across AKS workloads.
  • Integrate Terraform-based security-as-code modules to provision secure infrastructure and services.
  • Configure and manage Azure security services, including Azure Key Vault, Defender for Cloud, Azure Sentinel, App Gateway, APIM, and Azure AD PIM.
  • Basic understanding of Apache Kafka, including topic-level security, brokers, and integration patterns in a microservices environment
  • Ability to create threat models (STRIDE/MITRE ATT&CK) and define application controls/mitigations.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Lead Engineer - Cloud IND
Lead Engineer - Cloud IND

OSBIndia Private Ltd. • India

On-site
INR 1,800,000 - 3,000,000
Lead Engineer - Cloud IND
Lead Engineer - Cloud IND

United States Digital Space LLC • Karnataka

On-site
INR 1,500,000 - 2,100,000
Cloud Security & DevOps Expert
Cloud Security & DevOps Expert

Network Intelligence • Pune District

On-site
INR 800,000 - 1,200,000
DevSecOps Engineer
DevSecOps Engineer

Clinikally (YC S22) • Gurugram District

On-site
INR 800,000 - 1,400,000
DevsecOps Engineer
DevsecOps Engineer

Mindsprint • Bengaluru, Chennai District

Hybrid
INR 1,600,000 - 2,200,000
Senior Cloud Security Engineer - DevSecOps
Senior Cloud Security Engineer - DevSecOps

NetConnectGlobal • Hyderabad

On-site
INR 1,500,000 - 2,500,000
Sr. DevSecOps Engineer
Sr. DevSecOps Engineer

Maruti Suzuki India Ltd. • Gurgaon

On-site
INR 1,500,000 - 2,000,000
Head of DevSecOps
Head of DevSecOps

Kinetix Trading Solutions Inc • Pune District

On-site
INR 4,200,000 - 7,200,000
Platform Security Engineer
Platform Security Engineer

Promaynov Advisory Services Pvt. Ltd • Bengaluru

On-site
INR 1,800,000 - 2,400,000
Senior DevSecOps Engineer
Senior DevSecOps Engineer

IntraEdge • Hyderabad

On-site
INR 2,000,000 - 4,200,000