Experienced DevSecOps Engineer

Job ID: 38907270

Budget: $5 – $11 USD

Job Description

Please note:
We prefer working directly with professionals and do not wish to engage with agencies or middlemen.
We will not respond to agencies or middlemen.
It's okay to use ChatGPT or other AI to respond, but please be authentic and truthful.

We are looking for a skilled DevSecOps Engineer to join our team and take a leading role in ensuring the reliability, security, and scalability of our software development and deployment processes. The ideal candidate will have strong expertise in CI/CD pipelines, AWS infrastructure, microservices deployment, and security compliance, with a passion for performance tuning, disaster recovery, and incident management.

If you're ready to work with an agile team, and have the ability we want to hear from you!

Key Responsibilities

CI/CD Pipeline Management
Design, implement, and maintain CI/CD pipelines to automate build, test, and deployment processes.
Integrate security testing tools into CI/CD pipelines for proactive vulnerability detection.
Streamline workflows and version control using GitHub Actions, GitLab CI/CD, or Jenkins.

AWS and Cloud Infrastructure Management
Design and manage secure and scalable AWS environments, including server and serverless deployments.
Implement and optimize Infrastructure as Code (IaC) using Terraform, AWS CloudFormation, or Ansible.
Configure and manage identity and access management (IAM) policies.

Microservices Deployment
Develop and maintain deployment strategies for microservices architectures, such as blue/green deployments and rolling updates.
Optimize containerization and orchestration using Docker and Kubernetes.

Monitoring and Logging
Set up and maintain monitoring tools like Prometheus, Grafana, and AWS CloudWatch to track system health and performance.
Implement centralized logging solutions using tools like ELK Stack, Splunk, or Fluentd.
Configure alerting mechanisms for proactive issue detection.

System and Application Performance Tuning
Analyze and optimize application performance to ensure reliability and scalability.
Implement caching strategies, load balancing, and database optimizations to enhance efficiency.

Disaster Recovery and Backup Planning
Develop and test disaster recovery plans and backup strategies for critical systems.
Ensure data security and availability through regular backup and failover processes.

Incident Management and Troubleshooting
Serve as the first responder for incident management, resolving system or application issues promptly.
Conduct root cause analysis (RCA) to prevent recurring problems and improve system resilience.
Create and maintain detailed incident documentation to support continuous improvement.

Security and Compliance
Ensure systems and applications comply with standards like ISO 27001, SOC 2, and GDPR.
Conduct regular security assessments and implement solutions to address vulnerabilities.
Apply DevSecOps practices, such as shift-left security and immutable infrastructure.
Manage and maintain firewalls, SIEM tools, and data encryption configurations.

Key Skills and Qualifications
Must-Have Skills:
Strong experience in DevSecOps practices and methodologies.
Proficiency in CI/CD pipeline tools like Jenkins, GitHub Actions, or GitLab CI/CD.
Expertise in AWS services (e.g., Lambda, ECS, RDS, S3, CloudFormation) with an AWS certification preferred.
Proficiency with containerization using Docker and orchestration with Kubernetes.
Deep understanding of IaC tools like Terraform, CloudFormation, or Ansible.
Knowledge of application and infrastructure monitoring tools like Prometheus, Grafana, and AWS CloudWatch.
Hands-on experience with logging frameworks such as ELK Stack or Splunk.
Knowledge of security tools (e.g., SonarQube, OWASP ZAP, Nessus) and IAM best practices.
Strong troubleshooting and incident management skills.
Familiarity with scripting languages like Python or Bash for automation.

Nice-to-Have Skills:
Experience with compliance automation tools like Chef InSpec or HashiCorp Sentinel.
Knowledge of distributed tracing tools like Jaeger or Zipkin.
Familiarity with chaos engineering tools like Gremlin or Chaos Monkey.
Experience in disaster recovery planning in hybrid cloud environments.

Project Duration
The initial project duration is 3–6 months, with potential for extension based on performance and project requirements.

Application Process
Please include:
A brief introduction highlighting your relevant experience.
Examples of past projects or achievements related to DevSecOps.
Your resume or portfolio.
Related categories: Amazon Web Services Cloud Security GitHub CI/CD