Oolka logo

DevOps Engineer

Oolka

Bangalore, Karnataka, IndiaJob$15–35K/yrPosted 2mo agoVerified open 2 days ago

Most applications go out cold — see where you stand first. No sign-up to start.

At a glance

Compensation
$15–35K/yr
Location
Bangalore, Karnataka, India
Work Authorization
Not specified

Job overview

We are looking for a security‑first DevOps Engineer who can build and scale secure infrastructure, automate security processes, and ensure compliance across cloud environments.

Skills & qualifications

RequiredNice to have

Skills

Software as a ServiceSOC 2CI/CDIdentity & Access Management (IAM)Shell ScriptingAmazon Web ServicesISO 27001Continuous IntegrationThreat HuntingForecastingInfrastructureMachine LearningDevOpsGithubArtificial IntelligencePythonVaultCompliancePCI DSSOWASPJenkinsComputer SecurityContainersTerraformBashContinuous DeliveryKey Management ServiceAutomationCloud NativeDockerSecurity OperationsKubernetesSASTDASTSCASecrets ScanningVulnerability AssessmentsThreat ModellingPenetration TestingRisk MitigationIaCCloudFormationSIEMELK StackGrafanaGDPRHIPAAGitLab CIGitHub ActionsAWS SecurityIAMSecurity GroupsKMSSecrets ManagerShellGoSonarQubeSnykHashiCorp VaultOWASP ZAPAI SecurityThreat Detection

Qualifications

3-5 Years Experience in DevSecOps, DevOps, or Cybersecurity

Full job description

We are looking for a security-first DevOps Engineer who can build and scale secure infrastructure, automate security processes, and ensure compliance across cloud environments.

Responsibilities:

  • Security Integration and Automation: Embed security testing, reviews, and best practices throughout the SDLC. Design and maintain security automation within CI/CD pipelines, including: SAST, DAST, SCA, and Secrets scanning.
  • Security Assessments: Conduct: Vulnerability assessments, Threat modelling, Penetration testing.
  • Identify and mitigate risks across applications and infrastructure.
  • Infrastructure Security: Secure cloud and on-prem infrastructure using IaC tools like Terraform and CloudFormation.
  • Monitoring and Incident Response: Set up and manage SIEM solutions, ELK Stack, Grafana, Monitor and respond to security incidents in real time.
  • Compliance and Governance: Implement and enforce security policies and regulatory standards such as ISO 27001 SOC 2 PCI-DSS, GDPR, and HIPAA.
  • Collaboration and Security Culture: Work closely with engineering teams to drive secure coding practices and security awareness.

Requirements:

  • 3-5 years of experience in DevSecOps, DevOps, or Cybersecurity.
  • Strong experience securing production systems handling real user data.
  • CI/CD: Jenkins, GitLab CI, GitHub Actions, Security scanning integration in pipelines.
  • AWS Security.
  • Hands-on experience with: IAM, Security Groups, KMS, Secrets Manager.
  • Containers and Infrastructure: Docker, Kubernetes, Terraform.
  • Programming and Automation: Python, Bash/Shell, Go.

Security Tools:

  • Experience with: SonarQube, Snyk, HashiCorp Vault, OWASP ZAP.
  • Vulnerability scanning and secrets management tools.
  • AI Security: Exposure to AI/ML-based security tools for threat detection and risk forecasting.

Mandatory Requirements (Non-Negotiable):

  • Experience fixing security vulnerabilities in production systems.
  • Hands-on experience with AWS security services.
  • Implemented security scanning within CI/CD pipelines.
  • Successfully prepared organisations for: ISO 27001 and/or SOC 2 and/or PCI-DSS compliance.
  • Experience handling systems with 5,000+ concurrent requests.
  • Experience in asynchronous and real-time systems.
  • Successfully driven company-wide security and compliance initiatives.

Good to Have:

  • Experience in high-scale SaaS or AI product companies.
  • Strong understanding of modern security engineering practices and cloud-native architectures.

You've read the whole posting — now see how you match it.