Role Description
The Cloud DevSecOps Engineer is responsible for designing, implementing, and securing cloud-based infrastructure and CI/CD pipelines. The role ensures seamless automation, robust security integration, and efficient monitoring of systems across OCI and GCP environments to enable secure, scalable, and high-performing applications.
Key Responsibilities
-
CI/CD Pipeline & DevSecOps
-
Design, build, and secure CI/CD pipelines using GitHub Actions.
-
Integrate automated security testing (SAST/DAST) using SonarQube and related tools.
-
Implement and manage GitOps workflows for continuous delivery using ArgoCD.
-
Cloud Infrastructure & Automation
-
Design, build, and secure cloud infrastructure on OCI and GCP using Terraform.
-
Automate configuration and security hardening tasks using Ansible.
-
Develop and maintain automation scripts and perform system administration using Bash.
-
Secure and manage container orchestration platforms including Oracle Kubernetes Engine (OKE) and Google Kubernetes Engine (GKE).
-
QA Automation Enablement
-
Collaborate with the QA team to integrate automated test suites into CI/CD pipelines.
-
Enable automated execution of QA tests to act as quality gates before deployment.
-
Observability & Monitoring
-
Build and manage the enterprise observability and monitoring stack using Splunk, Grafana, and Prometheus.
-
Develop dashboards, alerts, and incident response playbooks for performance and security monitoring.
Qualifications
-
Bachelorβs degree in Computer Engineering, Information Technology, or a related field (preferred).
-
3+ years of hands-on experience in DevOps or Cloud Engineering.
-
Proven expertise in DevSecOps principles and Software Development Lifecycle (SDLC).
-
Strong proficiency in Bash scripting and automation with Ansible.
-
Deep understanding of cloud security architecture and native security services on OCI and GCP.
-
Extensive experience with Infrastructure as Code (Terraform).
-
Advanced skills in CI/CD design using GitHub Actions and GitOps tools like ArgoCD.
-
Hands-on experience in Kubernetes (OKE/GKE) setup and security.
-
Practical experience with security scanning tools (SonarQube, SAST, DAST).
-
Strong knowledge of observability platforms (Splunk, Grafana, Prometheus).
-
Familiarity with automated functional testing frameworks and integration into DevOps pipelines.
Core Competencies
-
Strong analytical and problem-solving skills.
-
Attention to detail and focus on security best practices.
-
Ability to collaborate effectively across cross-functional teams.
-
Excellent communication and documentation skills.
-
Continuous learning mindset and adaptability to new technologies.