Padmi

Devsecops Engineer

IndiaPosted 3 months ago
CybersecuritySeniorFull Time; Regular
Apply at Quantanite

Opens the source posting on shine.com

Source description

About the role

View original

Role Overview: As a DevSecOps Engineer specializing in Cloud & AI Security at Quantanite, you will be responsible for ensuring the security implementation across the company's application and cloud infrastructure estate. This hands-on role requires expertise in application-layer security controls, Azure cloud hardening, and AI security practices to deliver robust security measures throughout the development lifecycle and infrastructure design. Key Responsibilities: - Embed security controls throughout the software development lifecycle (SDLC) by conducting design reviews, threat modeling, code scanning, testing, and post-deployment monitoring. - Implement and manage SAST, DAST, and SCA tooling within CI/CD pipelines to ensure secure coding practices. - Define and enforce secure coding standards and conduct security-focused code reviews. - Manage secrets, certificates, and key rotation practices along with authentication and authorization frameworks. - Own vulnerability assessment and remediation processes across application components. - Implement Web Application Firewall rules, API security gateways, and input validation controls. - Define and implement security controls specific to AI/ML systems including data security, data governance controls, and risk mitigation strategies. - Collaborate with AI/ML engineers to ensure security-first design principles are applied in RAG pipelines, vector databases, and agentic workflows. - Stay updated with evolving AI security standards and frameworks and translate them into actionable controls. - Design and implement a secure Azure landing zone, manage Azure Security Centre, harden Azure PaaS services, and maintain Azure Key Vault for secrets management. Qualifications Required: - Strong experience in application-layer security controls, Azure cloud hardening, and AI security practices. - Hands-on experience with SAST, DAST, and SCA tooling within CI/CD pipelines. - Expertise in defining and enforcing secure coding standards and conducting security code reviews. - Proficiency in managing secrets, certificates, and key rotation practices. - Knowledge of authentication and authorization frameworks such as OAuth 2.0, OIDC, RBAC. - Experience in implementing Web Application Firewall rules, API security gateways, and input validation controls. - Familiarity with security controls specific to AI/ML systems and data security practices. - Understanding of Azure cloud infrastructure security including VNet architecture, NSGs, Azure Firewall, and Azure Key Vault. (Note: The job description provided does not contain any additional details of the company.) Role Overview: As a DevSecOps Engineer specializing in Cloud & AI Security at Quantanite, you will be responsible for ensuring the security implementation across the company's application and cloud infrastructure estate. This hands-on role requires expertise in application-layer security controls, Azure cloud hardening, and AI security practices to deliver robust security measures throughout the development lifecycle and infrastructure design. Key Responsibilities: - Embed security controls throughout the software development lifecycle (SDLC) by conducting design reviews, threat modeling, code scanning, testing, and post-deployment monitoring. - Implement and manage SAST, DAST, and SCA tooling within CI/CD pipelines to ensure secure coding practices. - Define and enforce secure coding standards and conduct security-focused code reviews. - Manage secrets, certificates, and key rotation practices along with authentication and authorization frameworks. - Own vulnerability assessment and remediation processes across application components. - Implement Web Application Firewall rules, API security gateways, and input validation controls. - Define and implement security controls specific to AI/ML systems including data security, data governance controls, and risk mitigation strategies. - Collaborate with AI/ML engineers to ensure security-first design principles are applied in RAG pipelines, vector databases, and agentic workflows. - Stay updated with evolving AI security standards and frameworks and translate them into actionable controls. - Design and implement a secure Azure landing zone, manage Azure Security Centre, harden Azure PaaS services, and maintain Azure Key Vault for secrets management. Qualifications Required: - Strong experience in application-layer security controls, Azure cloud hardening, and AI security practices. - Hands-on experience with SAST, DAST, and SCA tooling within CI/CD pipelines. - Expertise in defining and enforcing secure coding standards and conducting security code reviews. - Proficiency in managing secrets, certificates, and key rotation practices. - Knowledge of authentication and authorization frameworks such as OAuth 2.0, OIDC, RBAC. - Experience in implementing Web Application Firewall rules, API security gateways, and input validation controls. - Familiarity with security controls specific

One address, no account. We’ll tell you when matching roles go live.

More at Quantanite

Related open roles

View all roles