12 TalentOla Jobs
DevOps Security Engineer - AWS Platform (5-10 yrs)
TalentOla
posted 4d ago
Fixed timing
Key skills for the job
Job Summary :
We are seeking an AWS DevOps Security Engineer to enhance the security posture of our cloud infrastructure and CI/CD pipelines. The ideal candidate will have expertise in AWS security best practices, DevSecOps principles, automation, and compliance. This role involves securing cloud environments, automating security processes, and ensuring compliance with industry standards.
Key Responsibilities :
- Implement and manage AWS security best practices, including IAM, security groups, VPC configurations, encryption, and network security.
- Automate security in CI/CD pipelines, integrating SAST, DAST, and vulnerability scanning tools.
- Monitor, detect, and respond to security threats using AWS Security Hub, GuardDuty, CloudTrail, and CloudWatch.
- Design secure IAM roles, policies, and least privilege access across AWS services.
- Implement infrastructure as code (IaC) security using Terraform, CloudFormation, or Ansible.
- Conduct container security assessments for Docker, Kubernetes (EKS), and AWS Fargate.
- Ensure compliance with security frameworks (SOC 2, ISO 27001, NIST, CIS Benchmarks).
- Perform regular penetration testing and vulnerability assessments.
- Automate security incident response using AWS Lambda and Security Orchestration tools.
- Collaborate with DevOps and security teams to implement a DevSecOps culture.
Required Skills & Qualifications :
- 3+ years of experience in AWS security, DevOps, or cloud security.
- Strong expertise in AWS security services (IAM, KMS, GuardDuty, WAF, Shield, Inspector, Config).
- Experience with CI/CD security tools (GitHub Actions, GitLab CI, Jenkins, AWS CodePipeline).
- Knowledge of IaC security (Terraform, CloudFormation).
- Experience securing Kubernetes (EKS) and containerized environments.
- Familiarity with SIEM solutions and cloud logging (Splunk, AWS Security Hub, ELK).
- Strong scripting skills in Python, Bash, or PowerShell for automation.
- Experience with SOC 2, ISO 27001, GDPR, NIST, or CIS compliance.
- Knowledge of penetration testing, vulnerability management, and threat modeling.
- AWS Security or DevOps-related certifications (AWS Certified Security - Specialty, AWS Certified DevOps Engineer) preferred.
Nice to Have :
- Experience with Zero Trust Architecture and SSO/Federation (SAML, OAuth, OIDC).
- Hands-on experience with SIEM, SOAR, and Incident Response automation.
- Strong understanding of API security and Web Application Firewalls (AWS WAF, ModSecurity).
Functional Areas: Software/Testing/Networking
Read full job descriptionPrepare for Security Engineer roles with real interview advice
5-11 Yrs
10-13 Yrs