Your browser does not support javascript! Please enable it, otherwise web will not work for you.

Cloud Security and Devsecops Automation Engineer @ Aptara

Home > Operations Support






 Cloud Security and Devsecops Automation Engineer

Job Description

Overview:


This position is for a Cloud Security and DevSecOps Automation individual on the Client Product Security team. Recently the Product Security team took ownership of cloud security for the Client SAAS Web Application, and this role will be to review the current security state of our cloud environments, recommend improvements, and work with Engineering teams to ensure improvements are implemented correctly. The individual will work with 3 penetration testing individuals in India, a Client Product Security Engineer in the Netherlands, and with US Client Product Security Engineers during cross-over hours at the end of the individual's shift each day.Working hours: 2 PM - 10:30 PM India time, Monday-Friday
Client has no preference on if the individual works in-office or remote. If remote, the individual must have a dependable internet connection and functional audio equipment for calls.


Required Responsibilities

  • AWS cloud security reviews and monitoring, including but not limited to:
    • Infrastructure-As-Code security recommendations and monitoring
      • Including Docker, Kubernetes, Terraform, and CloudFormation
    • AWS IAM Policy Evaluation
    • AWS Web Application Firewall (WAF) Experience
    • AWS Guardduty
    • VPC/Security Group Security Experience
  • Review 3rd party products for security concerns before integration into our platform or allowing for internal company use, including:
    • Reviewing container image (docker) security and CVE hygiene
    • Review public data related to the vendor for security concerns
    • Review architecture and proposed implementation for security concerns (threat modeling)
  • Security Scripting/Automation
    • Create and monitor automations using Python or Typescript to replace or reduce repetitive tasks for the team.
    • Use AI Engineering tools such as Cursor, Gopilot, and Gemini to rapidly solve technical issues and create scripts is helpful.
    • Knowledge of Jira and Jira Automation is a plus.


Required Skills

  • Experience writing moderately complex scripts with Python and/or Typescript.
  • Experience with Container security
    • Strong understanding of Docker and Kubernetes container security and how to implement policies and processes to ensure secure deployment.
  • Experience with Amazon Web Services (AWS), specifically around security.
  • Experience with software security reviews for new software being brought into a company.

Optional Responsibilities Based on Experience

  • Assisting Client teams with moving externally exposed development systems behind Cloudflare Zero Trust.
  • DevSecOps Knowledge
    • Working knowledge of Semgrep, GitHub Advanced Security, and Dependabot.
    • Working knowledge of Trivy and Grype.
    • Experience integrating security into the Software Development Lifecycle (SDLC).
  • Penetration Testing experience
    • Experience conducting Web Application penetration tests is good to have but required for this position.
  • Using AI for scripting/development is a big plus. Especially Cursor.


Optional Skills

  • Knowledge of zero trust architecture and hands on experience with implementing zero trust with Cloudflare or a similar tool would be helpful.
  • Penetration Testing Experience
  • Application Security Vulnerability Knowledge
  • Experience with common DevSecOps tools and DevSecOps processes.


Education/Experience

  • Degree in Computer Science, Cloud Engineering, or equivalent experience.
  • At least 2 years of hands-on experience with AWS Cloud security.
  • Software development experience in Python and/or Typescript for scripting.
  • Web Application Penetration Testing experience is a plus but is not required.
  • One or more of the following certifications, or their equivalent is preferred:
    • AWS Certified Security - Speciality Certification
    • AWS Solutions Architect
    • Certified Kubernetes Security Specialist (CKS)
  • Ability to speak and write in English.
  • Ability to operate independently or with a group.
  • High level of autonomy.
  • Ability to work with teams in writing asynchronously across global time zones.

Job Classification

Industry: Financial Services
Functional Area / Department: Customer Success, Service & Operations
Role Category: Operations Support
Role: Technical Operations (Tech Ops)
Employement Type: Full time

Contact Details:

Company: Aptara
Location(s): Chennai

+ View Contactajax loader


Keyskills:   Cloud Security Aws Certified Saas Applications Devsecops Python Aws Security Penetration Testing Automation Framework

 Fraud Alert to job seekers!

₹ Not Disclosed

Similar positions

Front Office Executive (Male Candidates Only)

  • Centre For Sight
  • 0 - 2 years
  • Vadodara
  • 18 hours ago
₹ 2.25-3 Lacs P.A.

Aptara

Global content Transformation Private Limited, GCTPL (A unit of APTARA) we are a Financial Publishing Group operating from Chennai. Aptaras digital content, learning and performance, and business support services are in place at market-leading companies worldwide. Our industry specialists design a...