- Company Name
- Strategic Link Consulting
- Job Title
- Sr DevSecOps Engineer
- Job Description
-
Job Title: Sr DevSecOps Engineer
Role Summary: Design, build, and secure a hybrid AWS‑on‑prem infrastructure, embed security into the CI/CD pipeline, and lead compliance and audit readiness for a SaaS fintech platform.
Expectations: Deliver a resilient, compliant platform; influence architecture decisions; act as the security champion across cloud and on‑prem systems; collaborate with audit teams and product stakeholders.
Key Responsibilities
- Architect and maintain secure infrastructure on AWS and proprietary data centers.
- Implement unified networking, secure transit, and consistent image/configuration management.
- Apply cloud‑native security controls (IAM, WAF, Security Groups) and on‑prem security baselines.
- Design and enforce consistent IAM policies across hybrid boundaries and integrate Active Directory with cloud IAM for seamless federation.
- Own and extend the security pipeline, embedding automated security testing into CI/CD workflows.
- Develop scripts/tools for configuration management, incident response, and compliance checks.
- Ensure SOC 2, ISO 27001, PCI DSS, and data‑residency requirements are met; provide automated evidence and reporting for audits.
Required Skills
- 5+ years in DevOps, Security Engineering, or DevSecOps with hybrid‑cloud focus.
- Deep experience architecting, building, and securing AWS environments.
- Terraform expertise for complex, multi‑environment deployments.
- Container security experience with Docker, Kubernetes, and on‑prem cluster orchestration.
- Server hardening (Linux/Windows), network segmentation, and configuration management (Ansible, Puppet, Chef).
- Virtualization knowledge (Proxmox, Hyper‑V).
- Strong IAM proficiency, including federation and synchronization between on‑prem AD and cloud providers.
- Scripting in Python, Bash, PowerShell, Go, or Ruby; familiarity with GitHub Actions and VS Code.
Required Education & Certifications
- Bachelor’s degree in Computer Science, Information Security, or related field (or equivalent experience).
- Certifications: CISSP, AWS Certified Security, CISM, or equivalent on‑prem security certifications.