RAPSYS TECHNOLOGIES PTE. LTD.
Singapore
On-site
SGD 80,000 - 120,000
Full time
Job summary
A leading technology firm based in Singapore is looking for a DevSecOps Engineer. This role involves implementing security measures across CI/CD pipelines and managing cloud-native infrastructures. Candidates should have strong experience in automation, network security, and public cloud services. A solid educational background in IT and proficiency in multiple programming languages is essential. This position offers opportunities to work on advanced security frameworks and DevSecOps transformations.
Qualifications
- Proficient in cloud-native architectures and security practices.
- Experience with infrastructure monitoring and observability tools.
- Strong troubleshooting skills across system resources.
Responsibilities
- Implement security controls within CI/CD pipelines.
- Troubleshoot complex issues across application stacks.
- Work with automated provisioning tools for infrastructure management.
Skills
Automation and standardization
SDLC understanding
Scripting languages (Bash, PowerShell, Python, Go)
Git experience
Public cloud platforms (AWS, Azure, Google Cloud)
Container technologies (Docker, Kubernetes)
Security assessments and vulnerability scanning
Education
Degree or Diploma in Computer Science, Computer or Electronics Engineering, Information Technology
Tools
Ansible
Terraform
GitLab
Jenkins
VMware
HashiCorp Vault
Prometheus
Overview
Role: DevSecOps Engineer
JD:
- Degree or Diploma in Computer Science, Computer or Electronics Engineering, Information Technology, or related disciplines. Passion for automation, standardization, and best practices in infrastructure and security.
- Strong understanding of the Software Development Life Cycle (SDLC), Test-Driven Development (TDD), Continuous Integration (CI), and Continuous Delivery (CD).
- Experience working with high availability, high performance, and high-security multi-data center systems and hybrid cloud environments.
- Proficiency in at least three programming/scripting languages (Bash, PowerShell, Python, Go).
- Experience with Git and modern branching workflows.
- Experience with public cloud platforms (AWS, Azure, Google Cloud).
- Experience with automated provisioning tools (Ansible, Terraform, Puppet, Vagrant).
- Hands-on experience with virtualization technologies (KVM, VMware, Hyper-V).
- Strong understanding of container technologies (Docker, Kubernetes).
- Knowledge of Cloud Native Computing Foundation (CNCF) tools (Prometheus, Helm, ArgoCD, Istio, Gatekeeper, Crossplane).
- Experience with infrastructure monitoring and observability tools.
- Strong ability to troubleshoot complex issues across system resources and application stacks.
- Experience with CI/CD pipelines and DevOps tools (GitLab, Jenkins, BitBucket, ArgoCD).
- Experience with disaster recovery planning, system backup, and restore processes.
- Knowledge of RPM-based software packaging and deployment.
- Security & Compliance:
- Experience implementing security controls within CI/CD pipelines and cloud-native architectures.
- Hands-on experience with security assessments, vulnerability scanning, and system hardening.
- Familiarity with enterprise security tools (HashiCorp Vault, ElasticSearch Enterprise, Tenable, HP Fortify, Sonatype Nexus IQ, AWS security services).
- Strong understanding of network infrastructure, including firewalls, subnets, routing, and access controls.
- Experience performing security assessments in government or highly regulated environments.
- Bonus Experience (Added Advantage):
- Security certifications such as CREST, CISSP, CISM, or relevant cloud security credentials.
- Experience working in an organization that successfully implemented DevSecOps transformation.
- Experience with security and compliance frameworks (ISO 27001, NIST, CIS benchmarks).
- Hands-on experience with API security, secrets management, and zero-trust architectures.
- Knowledge of service mesh security implementations (Istio, Linkerd).