DevSecOps Engineer - #1649

JOBSTER PRIVATE LTD.Singaporemycareersfuturepublished 09/25/2026
Must-have:PythonGitAWSDockerKubernetesCloudDevOpsCI/CDSecurity

Key Responsibilities

Product Engineering and Platform Management

The DevSecOps Engineer will plan, design, implement, and maintain shared DevSecOps capabilities for in-house and newly introduced digital products. This includes building reusable platform components, integrating observability into product delivery, and establishing standard engineering practices that enable product teams to deploy and operate services reliably. The role will also maintain the supporting frameworks, documentation, and operational controls required for business continuity and ongoing digital transformation.

Cloud Operations and Automation

Key responsibilities include establishing essential automation capabilities, such as the full-scale deployment of infrastructure as code, automating cloud operational processes, and creating reusable infrastructure products that enable product teams to transform or build their solutions more efficiently. The engineer will develop automated operational workflows to ensure consistent, secure, and efficient cloud operations while supporting Enterprise Singapore’s cloud-native environment. This includes optimising cloud operations to maximise the strategic value of the organisation’s cloud infrastructure investment.

Security Operations and Compliance

The role will embed security-by-design principles throughout the product and infrastructure lifecycle. Responsibilities include automating security checks and compliance controls within CI/CD pipelines, strengthening vulnerability and threat-detection capabilities, and supporting timely remediation. All solutions must comply with applicable government security policies, standards, and audit requirements without creating unnecessary friction for product teams.

Infrastructure and System Management

The DevSecOps Engineer will support the reliability and operability of Enterprise Singapore’s cloud-hosted products and shared services. This includes diagnosing complex issues across distributed environments, improving availability and performance through monitoring and automation, and contributing to incident response and problem management. The engineer will take end-to-end ownership of observability and operational tooling, including service health dashboards, alerting standards, runbooks, and continual service improvements.

Essential Requirements

Educational Background and Experience

Candidates should possess a degree or diploma in Computer Science, Computer or Electronics Engineering, Information Technology, or a related discipline, with relevant experience in DevSecOps, site reliability engineering, cloud platform engineering, or a comparable role. They should have demonstrated experience designing and operating automation, observability, and security capabilities in cloud-native environments. Experience supporting government, public-sector, or other highly regulated environments is strongly preferred.

Observability and Monitoring Expertise

The successful candidate must have hands-on experience implementing observability across applications, infrastructure, and distributed cloud services. This includes collecting and correlating metrics, logs, and traces; designing service health dashboards; defining actionable alerts; and supporting root-cause analysis. Experience with GovTech platforms, including StackOps where applicable, will be advantageous, together with the ability to establish consistent monitoring standards across product teams.

Cloud Operations and Automation

The candidate must be proficient in infrastructure as code, configuration management, and operational automation. Relevant experience should include automating cloud provisioning, certificate lifecycle management, Linux patching through Ansible, routine maintenance, compliance checks, and recovery activities. The candidate should also be able to create reusable modules and workflows that improve consistency, reduce manual effort, and enable product teams to adopt approved cloud patterns efficiently.

Security and Compliance

The candidate must have experience embedding security controls into cloud platforms and CI/CD pipelines, including vulnerability management, secrets and certificate handling, access control, security monitoring, and remediation tracking. A sound understanding of government security policies, regulatory requirements, risk management, and audit evidence is essential. The candidate should be able to translate these requirements into practical, automated controls that support secure and efficient product delivery.

Technical Skills

Strong proficiency in scripting and automation using languages such as Python, Bash, or PowerShell is required. The candidate should have practical experience with at least one major cloud platform, preferably AWS, together with container technologies such as Docker and Kubernetes, CI/CD platforms, Git-based workflows, and infrastructure as code tools such as Terraform and Ansible. Familiarity with monitoring and logging platforms, API integration, secrets management, and automated testing will be important for delivering reliable, shared capabilities.

Expected Outcomes

The successful candidate will deliver improved visibility of service health, more consistent and repeatable cloud operations, faster detection and resolution of incidents, and stronger integration of security controls into product delivery. The engagement is expected to reduce manual operational effort, increase the adoption of reusable infrastructure and automation patterns, strengthen compliance evidence, and enable product teams to release and operate cloud services with greater reliability and confidence.