Sr Principal DevSecOps Engineer

Deltek

Bengaluru

On-site

INR 2,000,000 - 3,000,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Deltek is seeking an experienced individual for their Product Security Team in Bengaluru, India, focusing on DevSecOps to develop security tooling and optimize pipelines. The ideal candidate should possess a Bachelor’s degree and 7+ years of experience in related fields like DevOps and Application Security. Strong programming skills in languages such as Python or Java are required, along with experience in CI/CD systems. This role involves compliance, automation development, and close collaboration with teams across multiple regions.

Qualifications

  • Bachelor's degree in related field such as Computer Science or Cybersecurity.
  • 7+ years' experience in software development or DevSecOps.
  • Security certification required, such as CompTIA or GIAC.

Responsibilities

  • Design and implement internal security tooling and automation.
  • Collaborate with engineering for security integration in SDLC.
  • Ensure compliance with internal policies and industry standards.

Skills

DevOps
Application Security
Cloud Security
Programming Skills
Security Automation
Analytical Skills

Education

Bachelor's Degree in Computer Science or related field
Security certification (CompTIA, CSSLP, etc.)

Tools

SAST
DAST
CI/CD tools (Azure DevOps, GitHub Actions)

Job description

Position Summary

Deltek is looking for an energetic and driven person to join our Product Security Team. The team member will be focused on DevSecOps, specifically building internal security tooling, designing and maintaining DevSecOps pipelines, and guiding SaaS product security throughout the entire lifecycle, including design, development, deployment, and operations. They'll work closely with Deltek's product and engineering teams to implement security at scale using a risk‑based approach.

Ideal Candidate

The ideal candidate will have strong development skills with experience in DevOps, Application Security (AppSec), and Cloud Security (CloudSec). They will be building and enhancing our internal Application Security Posture Management (ASPM) system, developing automation for pipeline orchestration and security tool integration, and creating solutions that improve the speed and reliability of our security operations. They will be reviewing the security of web and/or desktop applications, be capable of running and interpreting reports from Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), Software Composition Analysis (SCA), and Mobile Application Security Testing (MAST) tools. The ability to read, write, and review application code is required. They should be able to work and communicate security information with engineering, product management, and senior leadership in an effective manner. Knowledge of Application Security and Cloud Security is required to be successful in this role.

Essential Duties and Responsibilities
  • Development and Automation – Design, develop, and maintain internal security tooling and automation, including:
    • Application Security Posture Management (ASPM) system development and enhancement
    • DevSecOps pipeline design, implementation, and optimization for speed and reliability
    • Security tool integration and orchestration automation
    • APIs and integrations connecting security tools with ticketing, reporting, and compliance systems
  • Manage and monitor security throughout the product lifecycle from development to operations with a DevSecOps mindset.
  • Application Security – Collaborate with development and engineering to ensure security steps are performed, findings are analyzed, and remediation is performed during the Software Development Life Cycle (SDLC). This includes:
    • Threat Modeling
    • Static Application Security Testing (SAST)
    • Software Composition Analysis (SCA)
    • Dynamic Application Security Testing (DAST)
  • Cloud Security – Ensure cloud security processes are completed, and findings remediated prior to deployment to production. These include:
    • Infrastructure as Code (IaC), Orchestration, and Automation security
    • Cloud Security Posture Management (CNAPP, CSPM)
    • Container, and Host Security (CNAPP, CWPP, VMDR)
    • Endpoint Protection (EPP)
    • Network Security and Edge Security
  • Compliance – Maintain compliance with internal policy, industry standards, and regulations, including FedRAMP, NIST 800‑171, and CMMC.
    • Data Encryption
    • Logging and Monitoring
    • OS Patching and Vulnerability Remediation
    • CIS Benchmarks and DISA STIGs
  • Identify false positives or misconfigurations that can improve tool outputs.
  • Lead remediation and continuous improvement across the product security posture with effective countermeasures and targeted mitigations.
  • Develop clear risk insight from analysis of application security findings.
  • Ability to perform work after normal business hours.
  • Keep up to date with application security trends.
  • Operating vulnerability management processes, suggesting applicable change controls, and security exceptions.
Qualifications
Desired Education & Experience
  • Bachelor's Degree in a related field (Computer Science, Software Engineering, Cybersecurity, etc.) or equivalent experience.
  • Security certification – CompTIA, CSSLP, GIAC, ISC2, etc.
  • 7+ years' experience in software development, DevOps, cloud security, application security, DevSecOps, or related area.
Technical Knowledge and Skill
  • Strong proficiency in one or more programming languages (e.g., Python, JavaScript/TypeScript, Java, C#, Go) with experience building production applications.
  • Experience designing and implementing CI/CD pipelines (Azure DevOps, GitHub Actions, Jenkins, GitLab CI, etc.).
  • Experience building internal tooling, automation systems, or security platforms.
  • Strong knowledge of security principles and best practices.
  • Experience with Secure SDLC tools, including SAST, SCA, and DAST.
  • Experience with security for SaaS/Cloud‑delivered products, including vulnerability management, cloud security, container security, and DevSecOps.
  • Familiarity with web frameworks, REST APIs, and database technologies.
  • Experience with security automation and orchestration.
  • Experience with vulnerability management processes.
  • Credibility and high professionalism.
  • Strong analytical and creative problem‑solving skills.
  • Strong verbal, written, and presentation skills; collaborative, innovative, and curious.
  • Attention to detail and follow-through on tasks.
  • Position will work closely with Deltek staff in the Philippines, India, US, and EU.

The above statements are intended to describe the general nature and level of work being performed by incumbents assigned to this job. This is not intended to be an exhaustive list of all the responsibilities, duties, and skills required. The duties may be changed, and other duties may be assigned.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

DevSecOps Engineer
DevSecOps Engineer

Delta6Labs FinTech Pvt Ltd • India

On-site
INR 1,200,000 - 1,800,000
DevSecOps Engineer
DevSecOps Engineer

Clinikally (YC S22) • Gurugram District

On-site
INR 800,000 - 1,400,000
Manager, DevSecOps
Manager, DevSecOps

SES S.A Brazil • Chennai District

On-site
INR 4,000,000 - 6,000,000
Sr. DevSecOps Engineer
Sr. DevSecOps Engineer

Maruti Suzuki India Ltd. • Gurgaon

On-site
INR 1,500,000 - 2,000,000
Senior DevSecOps Engineer
Senior DevSecOps Engineer

IntraEdge • Hyderabad

On-site
INR 2,000,000 - 4,200,000
Devsecops Engineer
Devsecops Engineer

Mphasis • Chennai District, Pune District

On-site
INR 2,000,000 - 3,600,000
Principal Engineer - Security
Principal Engineer - Security

LogiNext • Mumbai

On-site
INR 1,500,000 - 2,500,000
Pncpl GRC Analyst
Pncpl GRC Analyst

Deltek • Kolkata

On-site
INR 6,647,000 - 8,548,000
Product Security Engineer
Product Security Engineer

Atlas Consolidated • Hyderabad

On-site
INR 1,800,000 - 2,400,000
Application Security Engineer
Application Security Engineer

DigiCert • Bengaluru

On-site
INR 1,200,000 - 1,800,000
Generous time off policies
Top shelf benefits
Education, wellness, and lifestyle support