← Browse all jobs

R

Cloud Security / DevSecOps Engineer (AWS + Kubernetes)

RecruitKar · Krishnarājapuram, KA

FULL TIME

Job Description

Job Description

Job Overview

\n

We are looking for an experienced Cloud Security / DevSecOps Engineer to design, implement, and maintain secure cloud infrastructure and deployment pipelines across AWS and Kubernetes environments.

\n

The ideal candidate will have strong hands-on experience with AWS security, Kubernetes security, Infrastructure as Code, CI/CD, container security, vulnerability management, and cloud-native security practices. The role will involve working closely with DevOps, engineering, and security teams to embed security throughout the software development and deployment lifecycle.

\n

Key Responsibilities

\n

Design and implement secure and scalable infrastructure on AWS.

\n

Secure and manage Kubernetes clusters and containerized workloads.

\n

Implement security controls across the cloud infrastructure, applications, containers, and CI/CD pipelines.

\n

Integrate security practices into the DevOps lifecycle (DevSecOps).

\n

Develop and maintain secure CI/CD pipelines with automated security checks.

\n

Implement Infrastructure as Code (IaC) using tools such as Terraform or CloudFormation.

\n

Configure and manage AWS security services including IAM, KMS, CloudTrail, GuardDuty, Security Hub, WAF, and VPC security controls.

\n

Implement identity and access management, least-privilege policies, roles, permissions, and secrets management.

\n

Secure container images and Kubernetes workloads through vulnerability scanning and policy enforcement.

\n

Implement Kubernetes security controls including RBAC, Network Policies, Pod Security, Secrets management, and admission controls.

\n

Monitor cloud environments for security threats, vulnerabilities, misconfigurations, and suspicious activity.

\n

Perform vulnerability assessments and coordinate remediation of security issues.

\n

Integrate tools such as SAST, DAST, SCA, container scanning, and IaC scanning into CI/CD pipelines.

\n

Investigate and respond to cloud and infrastructure security incidents.

\n

Establish security best practices, standards, and reusable controls for engineering teams.

\n

Conduct security reviews of infrastructure, architecture, and deployment configurations.

\n

Automate security processes and compliance checks wherever possible.

\n

Maintain documentation related to security architecture, policies, configurations, and incident response.

\n

Required Skills & Experience

\n

Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field.

\n

3–7 years of experience in Cloud Security, DevSecOps, DevOps, or related roles.

\n

Strong hands-on experience with AWS cloud infrastructure and security.

\n

Strong understanding of Kubernetes and container security.

\n

Proficiency with Linux and networking fundamentals.

\n

Strong experience with Infrastructure as Code, preferably Terraform.

\n

Hands-on experience with CI/CD platforms such as Jenkins, GitHub Actions, GitLab CI, or AWS CodePipeline.

\n

Good understanding of Docker/containerization.

\n

Strong understanding of:

\n

IAM & RBAC

\n

VPC & network security

\n

Security groups & NACLs

\n

Encryption & key management

\n

Secrets management

\n

Logging & monitoring

\n

Vulnerability management

\n

Identity and access controls

\n

Experience implementing security scanning and controls within CI/CD pipelines.

\n

Strong scripting/automation skills using Python, Bash, or similar.

\n

Experience with Git and Git-based development workflows.

\n

Kubernetes Security Skills

\n

Candidates should have practical knowledge of:

\n

Kubernetes RBAC

\n

Network Policies

\n

Pod Security Standards

\n

Kubernetes Secrets

\n

Service Accounts

\n

Ingress security

\n

Container image security

\n

Resource limits and security contexts

\n

Admission controllers/policies

\n

Cluster and workload monitoring

\n

Kubernetes vulnerability management

\n

Cloud Security Tools & Technologies

\n

Experience with some of the following is preferred:

\n

AWS:

\n

IAM | KMS | CloudTrail | GuardDuty | Security Hub | WAF | VPC | CloudWatch | Config

\n

DevSecOps:

\n

Jenkins | GitHub Actions | GitLab CI/CD | SonarQube | Snyk | Trivy | Checkmarx | OWASP

\n

Containers & Kubernetes:

\n

Docker | Kubernetes | Helm | EKS | ArgoCD | Falco | OPA/Gatekeeper | Kyverno

\n

IaC:

\n

Terraform | CloudFormation | Terragrunt

\n

Good to Have

\n

Experience securing AWS EKS environments.

\n

Knowledge of CSPM/CNAPP solutions.

\n

Experience with SIEM platforms such as Splunk, ELK, or Microsoft Sentinel.

\n

Familiarity with Zero Trust architecture.

\n

Experience with security frameworks such as CIS, NIST, ISO 27001, SOC 2, or PCI-DSS.

\n

Relevant certifications such as:

\n

AWS Security Specialty

\n

AWS Solutions Architect

\n

Certified Kubernetes Security Specialist (CKS)

\n

Certified Kubernetes Administrator (CKA)

\n

Security+/CISSP or equivalent

\n

Experience with cloud security automation and policy-as-code.

\n

Exposure to incident response and forensic investigation in cloud environments.

\n

Candidate Profile

\n

The ideal candidate should have:

\n

Strong cloud security and DevSecOps mindset.

\n

Excellent troubleshooting and problem-solving skills.

\n

Ability to identify and remediate security vulnerabilities independently.

\n

Strong understanding of cloud networking and security architecture.

\n

Ability to balance security requirements with development and operational needs.

\n

Strong automation mindset and willingness to eliminate repetitive security tasks.

\n

Good communication and collaboration skills.

\n

Ability to work effectively with engineering, DevOps, infrastructure, and security teams.

\n

Key Technologies

\n

AWS | Kubernetes | EKS | Docker | Terraform | Linux | CI/CD | DevSecOps | IAM | VPC | CloudTrail | GuardDuty | Security Hub | KMS | WAF | Git | Jenkins/GitHub Actions | Trivy/Snyk | Python/Bash

\n

Employment Details

\n

Experience: 3–7 Years

\n

Job Type: Full-time

\n

Work Mode: Remote

\n

Location: Bengaluru

\n

Skills: AWS, Kubernetes, DevSecOps, Terraform, CI/CD, Docker, IAM, Container Security, Vulnerability Management, Python

\n
    \n
  • Work mode: Bengaluru
  • \n
  • Experience: 3–8 years
  • \n

Details

CompanyRecruitKar
LocationKrishnarājapuram, KA
TypeFULL TIME
Nichegeneral

Similar Jobs

W

CT Lead

WellStar

A

Manager Diagnostic Imaging

Adventist Health

W

Mammography Tech

WellStar

W

Rad Tech Reg Procedural

WellStar

P

Vascular Tech, PRN

Piedmont Healthcare