We are looking for a DevSecOps Engineer with around 5 years of hands-on experience to join our engineering team. The ideal candidate will have strong expertise in building and maintaining secure CI/CD pipelines, implementing security best practices across cloud-native environments, and working closely with development and operations teams to ensure security is embedded throughout the software development lifecycle.
Key Responsibilities
- Design, implement, and maintain DevSecOps frameworks, ensuring security is integrated into CI/CD pipelines.
- Automate security scanning (SAST, DAST, container, dependency checks) and integrate tools into development workflows.
- Collaborate with developers, operations, and security teams to identify and remediate vulnerabilities early in the SDLC.
- Implement and enforce cloud security best practices (AWS / Azure / GCP).
- Manage and monitor infrastructure-as-code (IaC) security and perform regular compliance checks.
- Develop and maintain security incident response procedures for cloud and containerized environments.
- Provide guidance on secure coding practices and assist with threat modeling and risk assessments.
Required Skills & Experience
- Bachelor’s degree in Computer Science, Engineering, or related field (or equivalent experience).
- ~5 years of experience in DevOps, Cloud Engineering, or Security Engineering, with at least 2+ years focusing on DevSecOps.
- Proficiency with CI/CD tools (e.g., Jenkins, GitLab CI, GitHub Actions).
- Hands-on experience with containerization and orchestration (Docker, Kubernetes).
- Strong knowledge of security testing tools (e.g., SonarQube, Snyk, Aqua, Trivy).
- Solid understanding of cloud platforms (AWS, Azure, or GCP) and cloud-native security.
- Familiarity with infrastructure as code (Terraform, Ansible, or similar).
- Good understanding of network and application security principles (OWASP, NIST).
Preferred Qualifications
- Experience with zero-trust architecture and secrets management tools (Vault, KMS).
- Knowledge of compliance frameworks (ISO 27001, SOC 2, PCI-DSS).
- Relevant certifications (e.g., CISSP, CKS, AWS Security Specialty, OSCP) are a plus.
Key Skills
Ranked by relevance
Related Jobs
3 roles aligned with this opportunity
DevOps Engineer - (m/f/d)
2026-05-28
DevOps Engineer (all genders)
2026-05-28
DevOps & Platform Engineer (w/m/d) 80 % - 100 %
2026-05-28
- Posted
- Aug 01, 2025
- Type
- Full-time
- Level
- Mid-Senior
- Location
- Singapore
- Company
- Nicoll Curtin
Industries
Categories
Related Jobs
3 roles aligned with this opportunity
DevOps Engineer - (m/f/d)
2026-05-28
DevOps Engineer (all genders)
2026-05-28
DevOps & Platform Engineer (w/m/d) 80 % - 100 %
2026-05-28