This job has expired

This job posting is no longer active and is not accepting applications. Explore similar roles below!

Bajaj Auto
Posted 1mo ago

DevSecOps

Bajaj Auto
India
OnsiteFull Time
Responsibilities
  • architecting pipelines
  • managing infrastructure
  • implementing security
Requirements
  • Hands-on experience building secure CI/CD pipelines with GitLab
  • AWS cloud operations
  • Terraform IaC
  • Scripting (Bash/Python/YAML)
  • Monitoring
  • Container orchestration, and security tooling for production systems
Technical tools mentioned
GitLab CI/CDGitLabAWSEKSECSEC2LambdaAPI GatewayRDSDynamoDBS3CloudFrontTerraformArgoCDCloudWatchPrometheusGrafanaELKEFKDockerKubernetesAWS Secrets ManagerBashPythonYAMLSASTSCAAWS Cost ExplorerCloudHealthGitOpsOWASPCIS BenchmarksAWS Well-Architected Framework

Job description

Job Title: DevSecOps


Role Overview


We are seeking an experienced candidate in DevSecOps to architect, implement, and operationalize secure CI/CD pipelines, cloud environments, Terraform-based infrastructure, and security guardrails across mobile and cloud application teams. The ideal candidate is hands‑on with GitLab pipelines, AWS cloud environments, security tooling, IaC, and performance/scalability tuning. This role will initially be an individual contributor and later grow into a small DevOps/Platform Engineering team lead.


Key Responsibilities


1. CI/CD Pipeline Engineering (GitLab)



  • Architect and build GitLab CI/CD pipelines for both mobile (iOS/Android) and cloud applications.

  • Develop reusable pipeline templates, shared libraries, and YAML modules for engineering teams.

  • Automate environment‑specific build and deploy flows (dev, QA, UAT, prod).

  • Enhance build speed, caching strategy, and parallelization for optimal performance.


2. Cloud Deployment, Operations & Security (AWS)



  • Design and maintain AWS cloud accounts with strong security guardrails, including:


    • IAM roles, policy boundaries, least privilege design

    • VPC segmentation, subnets, NACLs, security groups

    • AWS Organizations & Service Control Policies (SCPs)


  • Implement cost management frameworks: Budgets, cost forecasting, tagging policies, cost optimization.

  • Deploy, manage, and optimize:


    • EKS / ECS clusters

    • EC2, Lambda, API Gateway

    • RDS, DynamoDB, S3, CloudFront


  • Setup monitoring and observability:  CloudWatch, Prometheus/Grafana, ELK/EFK

  • Troubleshoot performance, reliability, scaling, and networking issues.


3. Infrastructure as Code (Terraform)



  • Build and maintain Terraform modules for AWS infrastructure creation and lifecycle management.

  • Implement standard IaC

  • Enforce IaC best practices

  • Automate AWS environment provisioning across multiple regions and workloads.


4. GitOps, Deployment Automation & Tooling



  • Implement automated deployment workflows using: ArgoCD or equivalent.

  • Ensure alignment between Git repositories, Terraform states, and actual cloud environments.

  • Define deployment strategies: Blue/Green, Canary, Rolling, Feature Flags.

  • Integrate secrets management (AWS Secrets Manager, etc).


5. Security, Compliance & Governance



  • Build mandatory security steps into pipelines

  • Ensure timely VAPT (Vulnerability Assessment & Penetration Testing) cycles and remediation tracking.

  • Establish security guardrails:


    • Hardened AMIs/containers

    • Secure CI/CD runners

    • IAM least‑privilege enforcement

    • TLS enforcement, encryption in transit & at rest


  • Define and enforce compliance with cloud security best practices.


Required Technical Skills



  • Deep expertise with GitLab CI/CD (required).

  • Strong proficiency in AWS: IAM, VPC, EKS/ECS, CloudFront, S3, Lambda, RDS, security controls.

  • Hands-on experience with Terraform.

  • Experience in continuous deployment tools.

  • Understanding of mobile build pipelines for iOS/Android.

  • Expert-level scripting skills: Bash, Python, YAML.

  • Strong knowledge of SAST, SCA, container scanning, secrets scanning.

  • Experience with:


    • Docker/Kubernetes

    • CloudWatch, ELK, Prometheus/Grafana

    • CDN, WAF, load balancers


  • Knowledge of OWASP, CIS Benchmarks, AWS Well-Architected Framework.



  • Experience with cost optimization tools like AWS Cost Explorer or CloudHealth.

  • Familiarity with provisioning iOS/macOS runners or build agents.

  • Experience with incident management, runbooks, and reliability engineering.


Soft Skills



  • Strong communication, documentation, and problem-solving skills.

  • Ability to collaborate across engineering, security, QA, product, and vendor teams.

  • Ownership mindset and ability to lead in ambiguous and fast-moving environments

About Bajaj Auto

Manufactures and distributes motorcycles and three-wheelers globally.

Similar jobs

DevSecOps Engineer roles
4d
Save
Mark Applied
Hide
D&T Associate Manager - Security Assurance (Pune, IN)
Pune, Maharashtra, India
OnsiteFull Time
Aramex
AramexDubai Financial Market: ARMX: International express delivery and global logistics services provider.
7+ YOERequires 7+ years in cybersecurity or cloud security, a related bachelor's degree, security-tool experience, and knowledge of CSPM; cloud security certifications and compliance exposure preferred.
SAST, DAST, SCA, Jenkins, GitHub Actions, GitLab CI, Azure DevOps, Docker, Kubernetes, Azure, AWS, IaC, Checkmarx, SonarQube, Fortify, CSPM, ISO 27001, SOC2, PCI DSS, DLP, EDR
5d
Save
Mark Applied
Hide
Staff DevSecOps Engineer
Bengaluru, Karnataka, India
OnsiteFull Time
Observe.AI
Observe.AI: AI-powered platform for contact center intelligence and performance automation
9+ YOERequires 9+ years in software engineering, network security, and AWS security; secure cloud and infrastructure design experience; AWS expertise; large-scale systems knowledge; and strong communication skills.
AWS, SaaS, PAM, Access Analyzer, Identity Center, RBAC, GuardDuty, WAF, SIEM, CCNA, PF
1w
Save
Mark Applied
Hide
DevSecOps -Senior Analyst
Bangalore or Gurgaon
OnsiteFull Time
KPMG Global Services
KPMG Global Services: Provides global tax, audit, and advisory support services.
1+ YOEBachelor’s or master’s degree in a relevant field and 1–5 years in technical delivery, DevOps, cloud, or infrastructure engineering. Requires scripting, Linux/Windows, Azure, IaC, CI/CD, containers, and security tooling experience.
Python, PowerShell, Bash, Linux, Windows, Azure, Terraform, ARM templates, Azure DevOps, Docker, Kubernetes, Ansible, Azure Monitor, Log Analytics, ELK stack, SonarQube, Qualys, Microsoft Defender, CMDB
1w
Save
Mark Applied
Hide
Senior DevSecOps Engineer (Azure Infrastructure Engineer)
Hyderabad, Telangana, India
OnsiteFull Time
Cubic
Cubic: Provides transportation fare systems and defense training technology.
8+ YOERequires a bachelor's degree or 8+ years in DevOps/DevSecOps or related engineering, strong Azure, PowerShell, Terraform, and Ansible skills, plus security, automation, troubleshooting, and documentation experience.
Microsoft Azure, PowerShell, Terraform, Ansible, Entra ID, Azure AD, MFA, PIM
1w
Save
Mark Applied
Hide
DevSecOps Engineer
Chennai, Tamil Nadu, India
OnsiteFull Time
BNP Paribas
BNP ParibasEuronext Paris: BNP: Provides global banking, financial, and investment services.
5+ YOEExpertise in Docker security, toolchain and vulnerability management, CI/CD, bachelor degree or equivalent, minimum 5 years' experience, strong English communication.
Docker, Toolchain, CI/CD
1w
Save
Mark Applied
Hide
Lead Engineer - Cloud IND
Bengaluru, Karnataka, India
OnsiteFull Time
OSB Group
OSB GroupLondon Stock Exchange: OSB: A UK-based specialist mortgage lender and retail savings bank.
5+ YOERequires 5–8 years of DevSecOps experience, primarily in Azure, plus Helm, Terraform, Kubernetes, CI/CD security, Azure security services, infrastructure-as-code, vulnerability management, and cloud compliance expertise.
Azure, Azure DevOps, Helm, Terraform, Kubernetes, GitHub Actions, GitLab, Azure Repos, Git, Azure Pipelines, Azure Artefact Feeds, Azure Key Vault, Azure Kubernetes Service (AKS), Azure Container Registry, SonarQube, OWASP ZAP, Checkov, Jib, Trivy, Snyk, Bicep, ARM templates, Microsoft Azure Active Directory (Azure AD), RBAC, Conditional Access Policies, Microsoft Defender for Cloud, Sentinel, Log Analytics, OPA/Gatekeeper, Azure Policy, Istio, Apache Kafka, App Gateway, APIM, Azure AD PIM, SAST, DAST, SCA, CIS, NIST, GDPR, ISO, CSA CCM, STRIDE, MITRE ATT&CK
1w
Save
Mark Applied
Hide
Lead DevSecOps Engineer
Pune, Maharashtra, India
OnsiteFull Time
Global Payments
Global PaymentsNYSE: GPN: Provides payment technology and software solutions for global commerce.
6+ YOEBachelor's or equivalent, typically 6+ years IT experience, strong CI/CD and IaC skills (Harness.io, GitHub Actions, Terraform), cloud (AWS/GCP), container/Kubernetes, security automation and vulnerability remediation.
Harness.io, GitHub Actions, Terraform, AWS, Google Cloud Platform, Wiz, Macroscope, Splunk, Docker, Kubernetes, OPA, Git, SF DX, Jenkins
2w
Save
Mark Applied
Hide
DevSecOps Technical Lead
Bengaluru, Karnataka, India
HybridFull Time
Trane Technologies
Trane TechnologiesNYSE: TT: Global provider of heating, ventilation, and air conditioning solutions.
7+ YOE7+ years DevOps/DevSecOps experience, CI/CD, cloud (AWS/GCP), IaC (Terraform), containerization, scripting (Python/Bash), security tooling, and leadership of technical implementations.
GitHub Enterprise Cloud, Microsoft Team Foundation Server, Subversion, Maven, Gradle, Make, Docker, Terraform, Terraform Cloud, GitHub Actions, YAML, Python, Bash, Jenkins, Agentic AI, MCP, Agents, TOSCA, Selenium, Neoload, SonarQube, Checkmarx, GitHub Advanced Security, CodeQL, AWS, GCP, CloudFormation, Ansible, Kubernetes, ECS, PowerShell, EC2, S3, RDS, Jira, ServiceNow, New Relic, Datadog
This job has expired