DevSecOps Engineer
Must-have:PythonGitAWSAzureGoogle CloudDockerKubernetesCloudQA/TestCI/CDTDDSecurityHybrid
Experience
4–6 years – Consultant Open to Singapore Citizens / PR
Responsibilities
- Design, automate, and maintain secure, scalable, and resilient infrastructure and deployment pipelines.
- Develop automation and processes for deploying, managing, scaling, and monitoring applications across data centers and cloud environments.
- Troubleshoot system/application issues and participate in on-call escalations.
- Own end-to-end infrastructure and security solutions.
- Deploy and manage infrastructure monitoring and observability tools.
- Implement configuration management, business continuity, and disaster recovery automation.
- Provision VMs, databases, application containers, and licenses.
- Configure and maintain CI/CD pipelines and release processes.
- Develop scripts and automation for build, integration, and deployment.
- Automate configuration management across development, QA, and production.
Required Skills
- Degree/Diploma in Computer Science, Computer/Electronics Engineering, IT, or related discipline.
- Strong understanding of SDLC, TDD, CI, and CD.
- Experience with highly available, high-performance, secure multi-data-center and hybrid-cloud environments.
- Proficiency in at least 3 scripting/programming languages : Bash, PowerShell, Python, Go.
- Git and modern branching workflows.
- Public cloud experience: AWS, Azure, or Google Cloud .
- Infrastructure automation: Ansible, Terraform, Puppet, Vagrant .
- Virtualization: KVM, VMware, Hyper-V .
- Containers: Docker, Kubernetes .
- CNCF tools: Prometheus, Helm, ArgoCD, Istio, Gatekeeper, Crossplane .
- CI/CD tools: GitLab, Jenkins, BitBucket, ArgoCD .
- Disaster recovery, backup and restore.
- Infrastructure monitoring and observability.
- RPM-based software packaging and deployment.
Security & Compliance
- Security controls within CI/CD pipelines and cloud-native architectures.
- Security assessments, vulnerability scanning, and system hardening.
- Security tools such as HashiCorp Vault, ElasticSearch Enterprise, Tenable, HP Fortify, Sonatype Nexus IQ, AWS Security Services .
- Strong networking knowledge: firewalls, subnets, routing, access controls.
- Security assessment experience in government or highly regulated environments