Upload Button Icon Add office photos
filter salaries All Filters

18 METRIX IT SOLUTIONS Jobs

Cloud Native Security Consultant - CI/CD Pipeline (8-15 yrs)

8-15 years

Cloud Native Security Consultant - CI/CD Pipeline (8-15 yrs)

METRIX IT SOLUTIONS

posted 5d ago

Job Role Insights

Fixed timing

Job Description

Job title : Cloud Native Security Consultant


Exp : 8-15


Location : Bangalore, hybrid


Description of Role :


The Security Consultant should have a strong understanding of the emerging security practices and standards. Should be able to consult, engineer and apply security best practices while designing and proposing solutions to our enterprise customers. Should be able to conduct system security, vulnerability analysis and risk assessment, identify security gaps, identify integration issues, study architecture/platform and design security architecture.


A Cloud Native Security Consultant undertakes complex work of a high-risk level, often working on several projects.


In this role, you will :


- Interact with senior stakeholders across departments


- Reach and influence a wide range of people across larger teams and communities


- Research and apply innovative security architecture solutions to new or existing problems and be able to justify and communicate design decisions


- Develop vision, principles, and strategy for security architects for one project or technology


- Work out subtle security needs


- Understand the impact of decisions, balancing requirements and deciding between approaches


- Produce patterns and support quality assurance


- Be the point of escalation for architects in lower-grade roles


- Lead the technical design of systems and services


Qualifications/Experience :


- Bachelors degree in any stream.


Minimum 3 years of working experience in Cyber Security Consulting or Advisory.


Successfully delivered at-least 2 (two) Cyber Security consulting and implementation projects as consultant in recent years (2 years).


Certification :


Preferred Certification :


- GIAC Cloud Security Automation (GCSA)


- Certified Kubernetes Security Specialist (CKS)


- Certified DevSecOps Professional (CDP)


- KUBERNETES AND CLOUD NATIVE ASSOCIATE (KCNA)


- OEM certification on CNAPP security products (e.g., Palo Alto Prisma, Checkpoint Cloudguard, Aqua Security etc.)


- Cloud Service Provider Security Certificates (e.g., SC-100, AWS Certified Security-Specialty, GCP Professional Cloud Security Engineer)


- Pen Tester certification (LPT/ OSCP/GPEN) Certified Security - Specialty


- Certification should be valid


Key roles and Responsibilities :


- Collaborate with teams to build & deliver solutions implementing serverless, microservices based, IaaS, PaaS and containerized architecture of multi cloud environment


- Develop rule base and parameterized IaC templates for automated deployment using Terraform


- Build CI/CD Pipeline using AWS (CodeBuild, CodeDeploy, CodePipeline), Google (Cloud Build), Azure (DevOps, Pipelines)


- Integrate 3rd party tool with CICD Process (e.g. SonarQube, CheckMarx, Embold)


- Config Manage environment using industry standard DevOps tools (Ansible)


- Implement scripting to extend build\deployment\monitoring process (PowerShell, Bash, Python)


- Ability to develop IaC with Terraform


- Strong understanding on Cloud Networking


- Container, Microservices, Docker, Kubernetes security.


- Network Security Orchestration on Microservices environment


- Secure Microservice Communication, Secure Authentication to Common DB without API/password/sharing keys


- Technical documentation, Product evaluation, POC.


- Implementation, Migration and Architect of Security Technology and Solution


- DevOps, DevSecOps and SRE (site reliability Engineering) mindset


Knowledge and Skills :


- Candidate should have experience in the below domains


- Hands on experience with Cloud Native Application protection CNAPP Tools (Prisma Cloud by Palo Alto, Checkpoint Cloud Guard, Aqua Security)


- Hands on experience with Automation Tools (e.g., Ansible, Chef, Puppet)


- Experienced with Application migration from Monolithic to Microservices Architecture


- Web Application Firewall implementation experience at Kubernetes and API Gateway


- Experience with implementation of Vulnerability scanner and Container Image repository hardening


- Well depth understanding on AWS, AZURE, GCP offered services (EKS, AKS, GKE)


- Understanding and review of Infrastructure as Code (IaC), Compliance as Code (CaC)


- Updated with trends and participation of industry recognized forum (e.g., Cloud Native Computing Foundation)


- Experienced with deliverables on Cloud Security Posture Management, Cloud Workload Protection, Cloud Infra Entitle Management, Serverless Security


- Application Security testing for Web and Mobile as SAST/DAST/IAST approach (Fortify, Veracode, Burp Suite)


- Secure Code review, Open-Source validation (Gitlab, Coverity, SonarQube, Black Duck)


- Well versed with OWASPTop10 and SANS top 25 Vulnerabilities and remediation


- Well understanding on PTES (Penetration Testing Execution Standard) and Testing.


- Well understanding Software Security Framework (e.g., BSIMM, SAMM)


- Good written & verbal communication and analytical skills.


- Good documentation skills.


- Good problem-solving skills


Functional Areas: Software/Testing/Networking

Read full job description

Prepare for Security Consultant roles with real interview advice

What people at METRIX IT SOLUTIONS are saying

What METRIX IT SOLUTIONS employees are saying about work life

based on 22 employees
88%
93%
64%
56%
Strict timing
Monday to Friday
Within city
Night Shift
View more insights

METRIX IT SOLUTIONS Benefits

Free Transport
Child care
Gymnasium
Cafeteria
Work From Home
Free Food +6 more
View more benefits

Compare METRIX IT SOLUTIONS with

TCS

3.7
Compare

Infosys

3.6
Compare

Wipro

3.7
Compare

HCLTech

3.5
Compare

Tech Mahindra

3.5
Compare

LTIMindtree

3.8
Compare

Mphasis

3.4
Compare

Hexaware Technologies

3.5
Compare

Persistent Systems

3.5
Compare

HCL Infosystems

3.9
Compare

Northcorp Software

4.3
Compare

Accel Frontline

4.0
Compare

Puropale Creations & IT Solutions

4.9
Compare

Diverse Lynx

3.8
Compare

Elentec Power India (EPI) Pvt. Ltd.

3.7
Compare

HyScaler

4.5
Compare

Appsierra

4.4
Compare

Pitney Bowes

3.8
Compare

Solartis Technology Services

3.6
Compare

Emblix Solutions

4.6
Compare

Similar Jobs for you

Network Security Engineer at Apollo HealthAxis

5-8 Yrs

₹ 15-20 LPA

Network Security Engineer at Konverge Technologies Pvt Ltd.

7-8 Yrs

₹ 20-24 LPA

Network Security Engineer at STL

4-8 Yrs

₹ 12-24 LPA

Security Engineer at Onx Homes

8-10 Yrs

₹ 24-28 LPA

Information Security Manager at Peepal consulting

15-20 Yrs

₹ 30-40 LPA

Senior Security Analyst at Trantor Software

3-10 Yrs

₹ 10-26 LPA

Network Security Engineer at Fidelity National Financial

5-7 Yrs

₹ 15-22 LPA

Security Engineer at ANZ

7-8 Yrs

₹ 20-28 LPA

Security Engineer at TALENTOLA SOLUTIONS PRIVATE LIMITED

5-10 Yrs

₹ 10-28 LPA

Security Engineer at NLB Services

5-8 Yrs

₹ 15-24 LPA

Data Engineer - Python/Spark (5-15 yrs)

5-15 Yrs

5d ago·via hirist.com

System Engineer - Linux/Windows OS (7-12 yrs)

7-12 Yrs

5d ago·via hirist.com

Solution Architect - MS Dynamics 365 (10-15 yrs)

10-15 Yrs

5d ago·via hirist.com

Senior NetSuite Functional Consultant (5-15 yrs)

5-15 Yrs

5d ago·via hirist.com

Oracle Fusion/PPM Consultant (4-7 yrs)

4-7 Yrs

28d ago·via hirist.com
write
Share an Interview