Senior Information Security Engineer (DevSecOps)

WLEN WorldJobs LLP

Bengaluru

On-site

INR 2,500,000 - 5,000,000

Full time

46 hours ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

WLEN WorldJobs LLP is seeking a Senior Information Security Engineer (DevSecOps) to safeguard multi-cloud infrastructure, applications, and data while enabling fast, secure development. The role sits at the intersection of engineering and security, embedding security into design, build, and operations across AWS, Azure, GCP, and Oracle.

You will drive threat modeling, secure code reviews, and security automation.

Qualifications

  • Strong hands-on experience in cloud security across AWS and Azure.
  • Practical exposure to CSPM tools and SIEM/IDS/IPS platforms.
  • Experience securing containerized and Kubernetes-based environments.
  • Familiarity with CI/CD security integrations such as Snyk or GitHub Advanced Security.
  • Knowledge of security frameworks like ISO 27001, NIST, CIS.
  • Ability to perform threat modeling, secure code reviews, and security-by-design practices.

Responsibilities

  • Design, implement, and operate cloud-native security controls across multi-cloud environments.
  • Strengthen IAM, network security, and cloud posture using built-in services and CSPM tools.
  • Embed security into the SDLC through threat modeling and secure coding reviews.
  • Lead or support incident response, RCA, and remediation tracking.
  • Plan and execute VAPT and penetration testing engagements and improve detection maturity.

Skills

Information Security
Cloud security
Root-cause analysis
CI/CD security
Security incident response
Threat modeling

Tools

Kubernetes
Docker
Terraform
CloudFormation
ARM
SAST
DAST
SCA
Prisma Cloud
Wiz
Orca
GuardDuty
Azure Security Center

Job description

Senior Information Security Engineer (DevSecOps)

Experience / Skills:
6 to 10 years of experience, Information Security, cloud security, Cloud Security Posture Management (CSPM), Kubernetes, CI/CD pipelines, SAST, DAST, and SCA, root-cause analysis (RCA), Terraform, CloudFormation, ARM, Docker

Company Size: Mid-Sized

Experience Required: 6 - 10 years

No. of Positions: 1

Max Notice Period 45 days

Role & Responsibilities:

As our client continues to scale globally, security is foundational—not an afterthought. We’re looking for a Senior Information Security Engineer who can help protect our cloud infrastructure, applications, and data while enabling teams to move fast and build securely.

This role sits deep within our engineering ecosystem. You’ll embed security into how we design, build, deploy, and operate systems—working closely with Cloud, Platform, and Application Engineering teams. You’ll balance proactive security design with hands‑on incident response, and help shape a strong, security‑first culture across the organization.

If you enjoy solving real‑world security problems, working close to systems and code, and influencing how teams build securely at scale, this role is for you.

What You’ll Do-

  • Design, implement, and operate cloud-native security controls across AWS, Azure, GCP, and Oracle.
  • Strengthen IAM, network security, and cloud posture using services like GuardDuty, Azure Security Center and others.
  • Partner with platform teams to secure VPCs, security groups, and cloud access patterns.

Application & DevSecOps Security:

  • Embed security into the SDLC through threat modeling, secure code reviews, and security-by-design practices.
  • Integrate SAST, DAST, and SCA tools into CI/CD pipelines.
  • Secure infrastructure-as-code and containerized workloads using Terraform, CloudFormation, ARM, Docker, and Kubernetes.

Security Monitoring & Incident Response:

  • Monitor security alerts and investigate potential threats across cloud and application layers.
  • Lead or support incident response efforts, root-cause analysis, and corrective actions.
  • Plan and execute VAPT and penetration testing engagements (internal and external), track remediation, and validate fixes.
  • Conduct red teaming activities and tabletop exercises to test detection, response readiness, and cross-team coordination.
  • Continuously improve detection, response, and testing maturity.

Security Tools & Platforms:

  • Manage and optimize security tooling including firewalls, SIEM, EDR, DLP, IDS/IPS, CSPM, and vulnerability management platforms.
  • Ensure tools are well-integrated, actionable, and aligned with operational needs.

Compliance, Governance & Awareness:

  • Support compliance with industry standards and frameworks such as SOC2, HIPAA, ISO 27001, NIST, CIS, and GDPR.
  • Promote secure engineering practices through training, documentation, and ongoing awareness programs.
  • Act as a trusted security advisor to engineering and product teams.
  • Stay ahead of emerging threats, cloud vulnerabilities, and evolving security best practices.
  • Continuously raise the bar on clients security posture through automation and process improvement.

Endpoint Security (Secondary Scope):

  • Provide guidance on endpoint security tooling such as SentinelOne and Microsoft Defender when required.

Ideal Candidate:

  • Strong hands-on experience in cloud security across AWS and Azure.
  • Practical exposure to CSPM tools (e.g., Prisma Cloud, Wiz, Orca) and SIEM / IDS / IPS platforms.
  • Experience securing containerized and Kubernetes-based environments.
  • Familiarity with CI/CD security integrations (e.g., Snyk, GitHub Advanced Security, or similar).
  • Solid understanding of network security, encryption, identity, and access management.
  • Experience with application security testing tools (SAST, DAST, SCA).
  • Working knowledge of security frameworks and standards such as ISO 27001, NIST, and CIS.
  • Strong analytical, troubleshooting, and problem-solving skills.

Nice to Have:

  • Experience with DevSecOps automation and security-as-code practices.
  • Exposure to threat intelligence and cloud security monitoring solutions.
  • Familiarity with incident response frameworks and forensic analysis.
  • Security certifications such as CISSP, CISM, CCSP, or CompTIA Security+.

Perks, Benefits and Work Culture:

A wholesome opportunity in a fast-paced environment that will enable you to juggle between concepts, yet maintain the quality of content, interact and share your ideas and have loads of learning while at work. Work with a team of highly talented young professionals and enjoy the comprehensive benefits that Client offers.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Information Security Engineer
Senior Information Security Engineer

Imagine Learning • Bengaluru

On-site
INR 1,500,000 - 2,500,000
Sr. DevSecOps Engineer
Sr. DevSecOps Engineer

Maruti Suzuki India Ltd. • Gurgaon

On-site
INR 1,500,000 - 2,000,000
Senior Cloud Developer (Data)
Senior Cloud Developer (Data)

BXB Digital, A Brambles Company • Bengaluru

On-site
INR 1,200,000 - 2,000,000
DevSecOps Engineer
DevSecOps Engineer

Sutherland Global • Hyderabad

On-site
INR 1,800,000 - 2,600,000
Cloud security engineers
Cloud security engineers

Visionet Systems Inc. • Bengaluru

On-site
INR 1,200,000 - 1,800,000
DevSecOps Engineer
DevSecOps Engineer

Delta6Labs FinTech Pvt Ltd • India

On-site
INR 1,200,000 - 1,800,000
Lead / Senior Engineer – Application & Platform Security and CloudOps
Lead / Senior Engineer – Application & Platform Security and CloudOps

RackBank Datacenters Private Ltd. • Bengaluru

On-site
INR 2,800,000 - 4,000,000
Ownership of critical function
Collaborative culture
Growth opportunities
Cloud Security Engineer
Cloud Security Engineer

Portway Solutions India Private Limited • Dadri

On-site
INR 1,500,000 - 2,100,000
Cloud Security Operations Specialist - DevSecOps
Cloud Security Operations Specialist - DevSecOps

BOT Consulting • Jaipur

On-site
INR 1,200,000 - 1,800,000
DevSecOps Engineer
DevSecOps Engineer

Clinikally (YC S22) • Gurugram District

On-site
INR 1,200,000 - 2,000,000