About the Role
We are looking for an experienced DevSecOps Engineer to take ownership of the cloud infrastructure, security posture, deployment pipelines, and system reliability. As the primary custodian of the cloud infrastructure, you will serve as the crucial bridge between development and production environments, managing the current AWS-based setup while leading the evolution toward modern container orchestration. This is an excellent opportunity for an infrastructure professional who thrives on ownership, robust security, and building scalable platforms for AI workloads.
Key Responsibilities
- Cloud Infrastructure Ownership: Manage and scale the AWS cloud environments. Maintain the existing containerized workloads (AWS ECS) and plan, architect, and execute the upcoming migration to Kubernetes (AWS EKS).
- AWS Ecosystem Administration: Provision, configure, and manage essential AWS services supporting the applications, including managed relational databases (RDS PostgreSQL), search/analytics (OpenSearch), AI services (Bedrock), and networking/load balancing (ELB).
- Security, Access & Network Control: Enforce robust security practices using enterprise tools (AWS WAF, GuardDuty, Firewalls). Manage IAM and RBAC to maintain strict separation of duties and navigate infrastructure within restricted, enterprise‑controlled network environments (e.g., strict subnet isolation).
- Production Reliability & DR: Act as the primary gatekeeper for production systems. Establish comprehensive observability (CloudWatch), lead incident response for infrastructure issues, and manage system backups and Disaster Recovery (DR) strategies.
- CI/CD & Automation: Administer and optimize the GitLab CI/CD pipelines. Ensure automated security scanning (SAST/DAST, dependency checks) is seamlessly integrated and explore opportunities to implement Infrastructure as Code (IaC) for future deployments.
- Compliance & Vulnerability Management: Manage vulnerability patching, coordinate regular penetration testing, remediate findings, and collaborate with Project Managers to support compliance processes and provide necessary technical documentation.
- Vendor Transition: Work closely with existing external vendors to map the current architecture, reverse‑engineer undocumented configurations, and safely transition infrastructure operations fully in‑house.
Qualifications
- Experience: 3 to 5+ years of hands‑on experience in DevOps, DevSecOps, Cloud Engineering, or similar roles, ideally functioning as a primary infrastructure owner.
- Cloud & Containers: Strong proficiency in AWS infrastructure and networking, with practical experience managing AWS ECS and the knowledge required to set up and administer Kubernetes (EKS).
- Security & Networking: Deep understanding of secure network architecture, IAM, vulnerability management, and patching in strict, production‑grade or restricted‑egress environments.
- CI/CD Tools: Solid experience building and maintaining CI/CD pipelines (GitLab preferred).
- Operational Readiness: Proven experience with system monitoring, logging, production troubleshooting, and managing backups/DR.
Bonus Points
- Regulated Environments: Experience working with Singapore Government Commercial Cloud (GCC) and IM8 policies, or similar strict compliance frameworks.
- Infrastructure as Code: Experience with Terraform, AWS CloudFormation, or Ansible.
- Modern Workflows: Familiarity with AI/ML workloads and openness to using AI‑assisted coding tools.
Diversity and Inclusion
Capgemini welcomes applications from qualified candidates regardless of gender identity, ethnicity, sexual orientation, religion, ability, intersex status, or age. We are committed to diversity, inclusion, and equal opportunity for all.