Design and implement secure DevOps pipelines by integrating security compliance and governance into CI/CD workflows across Azure and Fabric.
Key Responsibilities:
Perform Level 2 and Level 3 support/development: Handle advanced troubleshooting incident resolution and complex enhancements for CI/CD pipelines DevOps tooling and security integrations as indicated in Tab 3.0.
Build and maintain CI/CD pipelines for Azure & Fabric: Design implement and optimize automated pipelines to support reliable build test and deployment workflows.
Integrate security scans into pipelines: Embed SAST DAST container image scanning and dependency vulnerability checks into CI/CD processes.
Implement policy enforcement and compliance checks: Enforce organizational standards using Azure Policy pipeline gates and compliance validation mechanisms.
Automate security controls across environments: Integrate secrets management identity access controls and secure configuration practices into deployment workflows.
Ensure secure release management and governance: Establish approval workflows quality gates and audit mechanisms to maintain compliance and traceability.
Experience & Qualifications:
Azure DevOps / GitHub Actions: Strong experience building and managing CI/CD pipelines with integrated security controls.
YAML pipeline development: Expertise in defining reusable scalable pipeline templates using YAML.
DevSecOps tools and practices: Hands-on experience with security scanning tools and integrating them into pipelines.
Security automation & compliance frameworks: Knowledge of implementing automated security checks aligned with enterprise policies.
Cloud security knowledge: Good understanding of Azure Security services (IAM Key Vault Defender for Cloud Azure Policy).
Secure SDLC understanding: Familiarity with secure coding vulnerability management and compliance best practices.
Job Title: DevSecOps Engineer Role Overview Design and implement secure DevOps pipelines by integrating security compliance and governance into CI/CD workflows across Azure and Fabric. Key Responsibilities: Perform Level 2 and Level 3 support/development: Handle advanced troubleshooting i...
Job Title: DevSecOps Engineer
Role Overview
Design and implement secure DevOps pipelines by integrating security compliance and governance into CI/CD workflows across Azure and Fabric.
Key Responsibilities:
Perform Level 2 and Level 3 support/development: Handle advanced troubleshooting incident resolution and complex enhancements for CI/CD pipelines DevOps tooling and security integrations as indicated in Tab 3.0.
Build and maintain CI/CD pipelines for Azure & Fabric: Design implement and optimize automated pipelines to support reliable build test and deployment workflows.
Integrate security scans into pipelines: Embed SAST DAST container image scanning and dependency vulnerability checks into CI/CD processes.
Implement policy enforcement and compliance checks: Enforce organizational standards using Azure Policy pipeline gates and compliance validation mechanisms.
Automate security controls across environments: Integrate secrets management identity access controls and secure configuration practices into deployment workflows.
Ensure secure release management and governance: Establish approval workflows quality gates and audit mechanisms to maintain compliance and traceability.
Experience & Qualifications:
Azure DevOps / GitHub Actions: Strong experience building and managing CI/CD pipelines with integrated security controls.
YAML pipeline development: Expertise in defining reusable scalable pipeline templates using YAML.
DevSecOps tools and practices: Hands-on experience with security scanning tools and integrating them into pipelines.
Security automation & compliance frameworks: Knowledge of implementing automated security checks aligned with enterprise policies.
Cloud security knowledge: Good understanding of Azure Security services (IAM Key Vault Defender for Cloud Azure Policy).
Secure SDLC understanding: Familiarity with secure coding vulnerability management and compliance best practices.