Cloud Security / DevSecOps Engineer (AWS + Kubernetes)
RecruitKar · Krishnarājapuram, KA
Job Description
Job Description
Job Overview
\nWe are looking for an experienced Cloud Security / DevSecOps Engineer to design, implement, and maintain secure cloud infrastructure and deployment pipelines across AWS and Kubernetes environments.
\nThe ideal candidate will have strong hands-on experience with AWS security, Kubernetes security, Infrastructure as Code, CI/CD, container security, vulnerability management, and cloud-native security practices. The role will involve working closely with DevOps, engineering, and security teams to embed security throughout the software development and deployment lifecycle.
\nKey Responsibilities
\nDesign and implement secure and scalable infrastructure on AWS.
\nSecure and manage Kubernetes clusters and containerized workloads.
\nImplement security controls across the cloud infrastructure, applications, containers, and CI/CD pipelines.
\nIntegrate security practices into the DevOps lifecycle (DevSecOps).
\nDevelop and maintain secure CI/CD pipelines with automated security checks.
\nImplement Infrastructure as Code (IaC) using tools such as Terraform or CloudFormation.
\nConfigure and manage AWS security services including IAM, KMS, CloudTrail, GuardDuty, Security Hub, WAF, and VPC security controls.
\nImplement identity and access management, least-privilege policies, roles, permissions, and secrets management.
\nSecure container images and Kubernetes workloads through vulnerability scanning and policy enforcement.
\nImplement Kubernetes security controls including RBAC, Network Policies, Pod Security, Secrets management, and admission controls.
\nMonitor cloud environments for security threats, vulnerabilities, misconfigurations, and suspicious activity.
\nPerform vulnerability assessments and coordinate remediation of security issues.
\nIntegrate tools such as SAST, DAST, SCA, container scanning, and IaC scanning into CI/CD pipelines.
\nInvestigate and respond to cloud and infrastructure security incidents.
\nEstablish security best practices, standards, and reusable controls for engineering teams.
\nConduct security reviews of infrastructure, architecture, and deployment configurations.
\nAutomate security processes and compliance checks wherever possible.
\nMaintain documentation related to security architecture, policies, configurations, and incident response.
\nRequired Skills & Experience
\nBachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field.
\n3–7 years of experience in Cloud Security, DevSecOps, DevOps, or related roles.
\nStrong hands-on experience with AWS cloud infrastructure and security.
\nStrong understanding of Kubernetes and container security.
\nProficiency with Linux and networking fundamentals.
\nStrong experience with Infrastructure as Code, preferably Terraform.
\nHands-on experience with CI/CD platforms such as Jenkins, GitHub Actions, GitLab CI, or AWS CodePipeline.
\nGood understanding of Docker/containerization.
\nStrong understanding of:
\nIAM & RBAC
\nVPC & network security
\nSecurity groups & NACLs
\nEncryption & key management
\nSecrets management
\nLogging & monitoring
\nVulnerability management
\nIdentity and access controls
\nExperience implementing security scanning and controls within CI/CD pipelines.
\nStrong scripting/automation skills using Python, Bash, or similar.
\nExperience with Git and Git-based development workflows.
\nKubernetes Security Skills
\nCandidates should have practical knowledge of:
\nKubernetes RBAC
\nNetwork Policies
\nPod Security Standards
\nKubernetes Secrets
\nService Accounts
\nIngress security
\nContainer image security
\nResource limits and security contexts
\nAdmission controllers/policies
\nCluster and workload monitoring
\nKubernetes vulnerability management
\nCloud Security Tools & Technologies
\nExperience with some of the following is preferred:
\nAWS:
\nIAM | KMS | CloudTrail | GuardDuty | Security Hub | WAF | VPC | CloudWatch | Config
\nDevSecOps:
\nJenkins | GitHub Actions | GitLab CI/CD | SonarQube | Snyk | Trivy | Checkmarx | OWASP
\nContainers & Kubernetes:
\nDocker | Kubernetes | Helm | EKS | ArgoCD | Falco | OPA/Gatekeeper | Kyverno
\nIaC:
\nTerraform | CloudFormation | Terragrunt
\nGood to Have
\nExperience securing AWS EKS environments.
\nKnowledge of CSPM/CNAPP solutions.
\nExperience with SIEM platforms such as Splunk, ELK, or Microsoft Sentinel.
\nFamiliarity with Zero Trust architecture.
\nExperience with security frameworks such as CIS, NIST, ISO 27001, SOC 2, or PCI-DSS.
\nRelevant certifications such as:
\nAWS Security Specialty
\nAWS Solutions Architect
\nCertified Kubernetes Security Specialist (CKS)
\nCertified Kubernetes Administrator (CKA)
\nSecurity+/CISSP or equivalent
\nExperience with cloud security automation and policy-as-code.
\nExposure to incident response and forensic investigation in cloud environments.
\nCandidate Profile
\nThe ideal candidate should have:
\nStrong cloud security and DevSecOps mindset.
\nExcellent troubleshooting and problem-solving skills.
\nAbility to identify and remediate security vulnerabilities independently.
\nStrong understanding of cloud networking and security architecture.
\nAbility to balance security requirements with development and operational needs.
\nStrong automation mindset and willingness to eliminate repetitive security tasks.
\nGood communication and collaboration skills.
\nAbility to work effectively with engineering, DevOps, infrastructure, and security teams.
\nKey Technologies
\nAWS | Kubernetes | EKS | Docker | Terraform | Linux | CI/CD | DevSecOps | IAM | VPC | CloudTrail | GuardDuty | Security Hub | KMS | WAF | Git | Jenkins/GitHub Actions | Trivy/Snyk | Python/Bash
\nEmployment Details
\nExperience: 3–7 Years
\nJob Type: Full-time
\nWork Mode: Remote
\nLocation: Bengaluru
\nSkills: AWS, Kubernetes, DevSecOps, Terraform, CI/CD, Docker, IAM, Container Security, Vulnerability Management, Python
\n- \n
- Work mode: Bengaluru \n
- Experience: 3–8 years \n
Details
| Company | RecruitKar |
| Location | Krishnarājapuram, KA |
| Type | FULL TIME |
| Niche | general |
