Padmi

DevSecOps

Delhi NCRPosted 1 month ago
CybersecuritySeniorFull Time; Regular
Apply at Virtusa

Opens the source posting on shine.com

Source description

About the role

View original

Qualifications CI/CD Security Integration ("ShiftLeft") Proven ability to integrate automated security gates (SAST/DAST/SCA) into pipelines using tools like Google Cloud Build, GitHub Actions, or GitLab CI/CD. Infrastructure as Code (IaC) & Security Advanced proficiency with Terraform alongside automated IaC scanning tools (e.g., Checkov, Terrascan, or Open Policy Agent (OPA)). Container & Kubernetes Security Handson experience securing containerized workloads deployed on Google Kubernetes Engine (GKE) and managing secure image lifecycles via Google Artifact Registry. Automation Scripting Strong coding skills in Python, Go, or Bash to build custom security guardrails and automation scripts. Core Certification Active Google Cloud Professional Cloud Security Engineer certification. Advanced Container Credentials Holding a CKS (Certified Kubernetes Security Specialist) designation. Broad Cloud Security Standards Industryrecognized credentials such as CISSP, CCSP, or CSSLP (Certified Secure Software Lifecycle Professional). CrossCloud/Hybrid Experience Background in migrating workloads specifically from AWS or Azure to GCP, or managing hybridcloud security architectures. Specific ThirdParty Tooling Experience With premium security platforms like Snyk, Wiz, Prisma Cloud, SonarQube, or DefectDojo for vulnerability orchestration. Threat Modeling Experience Conducting application threat modeling (e.g., using STRIDE or PASTA frameworks) prior to cloud migration. Leadership & Agile Prior experience leading or mentoring agile engineering teams, translating complex security risks into clear engineering requirements. Handson Security Operations (SecOps) Lead Spearhead the security transformation and governance of our largescale migration to Google Cloud Platform (GCP). With over a decade of cybersecurity experience, you will bridge the gap between legacy security frameworks and modern, cloudnative security paradigms. Migration Security Leadership Define, implement, and oversee the SecOps migration roadmap, ensuring security controls are baked into the cloud architecture from day one. Incident Response & Threat Management Lead the detection, isolation, and remediation of security incidents during hybrid and cloudnative phases. GCP Security Engineering Deploy and optimize GCPnative security tool. Qualifications CI/CD Security Integration ("ShiftLeft") Proven ability to integrate automated security gates (SAST/DAST/SCA) into pipelines using tools like Google Cloud Build, GitHub Actions, or GitLab CI/CD. Infrastructure as Code (IaC) & Security Advanced proficiency with Terraform alongside automated IaC scanning tools (e.g., Checkov, Terrascan, or Open Policy Agent (OPA)). Container & Kubernetes Security Handson experience securing containerized workloads deployed on Google Kubernetes Engine (GKE) and managing secure image lifecycles via Google Artifact Registry. Automation Scripting Strong coding skills in Python, Go, or Bash to build custom security guardrails and automation scripts. Core Certification Active Google Cloud Professional Cloud Security Engineer certification. Advanced Container Credentials Holding a CKS (Certified Kubernetes Security Specialist) designation. Broad Cloud Security Standards Industryrecognized credentials such as CISSP, CCSP, or CSSLP (Certified Secure Software Lifecycle Professional). CrossCloud/Hybrid Experience Background in migrating workloads specifically from AWS or Azure to GCP, or managing hybridcloud security architectures. Specific ThirdParty Tooling Experience With premium security platforms like Snyk, Wiz, Prisma Cloud, SonarQube, or DefectDojo for vulnerability orchestration. Threat Modeling Experience Conducting application threat modeling (e.g., using STRIDE or PASTA frameworks) prior to cloud migration. Leadership & Agile Prior experience leading or mentoring agile engineering teams, translating complex security risks into clear engineering requirements. Handson Security Operations (SecOps) Lead Spearhead the security transformation and governance of our largescale migration to Google Cloud Platform (GCP). With over a decade of cybersecurity experience, you will bridge the gap between legacy security frameworks and modern, cloudnative security paradigms. Migration Security Leadership Define, implement, and oversee the SecOps migration roadmap, ensuring security controls are baked into the cloud architecture from day one. Incident Response & Threat Management Lead the detection, isolation, and remediation of security incidents during hybrid and cloudnative phases. GCP Security Engineering Deploy and optimize GCPnative security tool.

One address, no account. We’ll tell you when matching roles go live.

More at Virtusa

Related open roles

View all roles