Padmi
GHX logo
GHX

healthcare supply chain · order automation

Senior Devsecops Engineer

HyderabadPosted 2 months ago
CybersecuritySeniorFull Time; Regular
Apply at GHX

Opens the source posting on shine.com

Source description

About the role

View original

The Senior DevSecOps Engineer will be embedded within product engineering teams to implement and maintain secure, automated, and reliable delivery pipelines while following standards, frameworks, and guardrails set by the DevSecOps Centre of Excellence (CoE). This is a hands-on role that reports to the Manager of DevSecOps and works directly with developers, SREs, and product managers to enable faster, safer deployments, cost-efficient infrastructure, and adherence to enterprise security policies. The engineer will collaborate closely with the Principal and Senior Staff DevSecOps engineers for technical guidance and mentoring while operating within the centralised DevSecOps leadership framework. Responsibilities: Build and maintain CI/CD pipelines (GitHub Actions, GitLab CI, Jenkins, ArgoCD) for the assigned product line.Integrate security testing (SAST, SCA, DAST, container scanning) into build and deployment workflows.Apply CoE standards, templates, and automation frameworks consistently within product environments.Troubleshoot and resolve DevSecOps issues, escalating complex challenges to Staff/Principal engineers.Implement Infrastructure-as-Code (Terraform, CloudFormation) for product infrastructure.Adopt GitOps practices for repeatable and auditable infra provisioning.Ensure infrastructure deployments comply with security guardrails, tagging, and cost controls.Collaborate with SREs to enable monitoring, logging, and observability (Prometheus, Grafana, OpenTelemetry, New Relic, CloudWatch).Ensure pipelines and infrastructure comply with HIPAA, SOC2 and internal security standards.Embed IAM, KMS, GuardDuty, and Security Hub into workflows for cloud security posture.Implement CoE-defined cost governance practices in product pipelines.Ensure workloads are tagged, right-sized, and cost-efficient.Provide cost visibility to product teams and support FinOps reviews.Work closely with developers, QA, SRE, and product managers to support secure and efficient delivery.Participate in CoE knowledge-sharing sessions, playbooks, and Communities of Practice.Contribute feedback from product teams back into the CoE to improve standards and frameworks.Continuously learn from Staff and Principal engineers and apply best practices within the product line. Requirements: 10+ years in DevOps, Cloud, or Security Engineering.Strong hands-on experience with CI/CD pipeline tools (GitHub Actions, GitLab CI, Jenkins, ArgoCD).Proficiency in AWS services (EKS, ECS, EC2 S3 IAM, Security Hub, GuardDuty).Hands-on with containers & & Kubernetes (Docker, EKS).Experience with Infrastructure-as-Code (Terraform, Pulumi, CloudFormation).Familiarity with observability platforms (Prometheus, Grafana, OpenTelemetry, New Relic, CloudWatch).Programming/scripting in Python, Go, or shell scripting.Strong collaboration skills in cross-functional product teams.Experience in SaaS or healthcare software environments.Knowledge of databases (MongoDB, Elasticsearch, SQL).Familiarity with compliance frameworks (HIPAA, SOC2 ISO 27001).Certifications: AWS Security Speciality, CKA/CKAD, FinOps Certified Practitioner. The Senior DevSecOps Engineer will be embedded within product engineering teams to implement and maintain secure, automated, and reliable delivery pipelines while following standards, frameworks, and guardrails set by the DevSecOps Centre of Excellence (CoE). This is a hands-on role that reports to the Manager of DevSecOps and works directly with developers, SREs, and product managers to enable faster, safer deployments, cost-efficient infrastructure, and adherence to enterprise security policies. The engineer will collaborate closely with the Principal and Senior Staff DevSecOps engineers for technical guidance and mentoring while operating within the centralised DevSecOps leadership framework. Responsibilities: Build and maintain CI/CD pipelines (GitHub Actions, GitLab CI, Jenkins, ArgoCD) for the assigned product line.Integrate security testing (SAST, SCA, DAST, container scanning) into build and deployment workflows.Apply CoE standards, templates, and automation frameworks consistently within product environments.Troubleshoot and resolve DevSecOps issues, escalating complex challenges to Staff/Principal engineers.Implement Infrastructure-as-Code (Terraform, CloudFormation) for product infrastructure.Adopt GitOps practices for repeatable and auditable infra provisioning.Ensure infrastructure deployments comply with security guardrails, tagging, and cost controls.Collaborate with SREs to enable monitoring, logging, and observability (Prometheus, Grafana, OpenTelemetry, New Relic, CloudWatch).Ensure pipelines and infrastructure comply with HIPAA, SOC2 and internal security standards.Embed IAM, KMS, GuardDuty, and Security Hub into workflows for cloud security posture.Implement CoE-defined cost governance practices in product pipelines.Ensure workloads are tagged, right-sized, and cost-efficient.Provide cost visibility to product

One address, no account. We’ll tell you when matching roles go live.

More at GHX

Related open roles

View all roles