Job Summary (List Format):
- Lead integration of security into the DevOps lifecycle (DevSecOps focus)
- Architect deploy and manage secure scalable Azure cloud infrastructure using Terraform and Infrastructure as Code (IaC)
- Build maintain and optimize CI/CD pipelines in GitHub Actions integrating security and quality tools (Black Duck SonarQube Snyk)
- Operate and optimize Azure Kubernetes Service (AKS) for containerized applications
- Configure and maintain monitoring and observability stacks (Prometheus Grafana Loki)
- Implement automated incident response using PagerDuty
- Manage and support MS SQL databases and perform basic operations on Cosmos DB
- Collaborate closely with development teams to promote security best practices throughout the Software Development Lifecycle (SDLC)
- Proactively identify vulnerabilities and respond to emerging security threats
Required Skills (Summary):
- Expertise in Azure AKS Terraform and Infrastructure as Code
- Proficiency with Git GitHub Actions and CI/CD workflows
- Experience integrating Black Duck SonarQube and Snyk into pipelines
- Hands-on with monitoring tools: Prometheus Grafana Loki
- Knowledge of PagerDuty for incident management
- Experience with MS SQL and basic Cosmos DB operations
- Strong scripting skills (Python Bash PowerShell)
- Understanding of DevSecOps secure coding and security best practices
- Familiarity with Helm Bicep container scanning and runtime security solutions