
Senior Information Security Engineer (DevSecOps)
at E-Commerce Industry
SENIOR INFORMATION SECURITY ENGINEER (DEVSECOPS)
Key Skills: Software Development Life Cycle (SDLC), CI/CD
About Company: Consumer Internet / E-Commerce
Company Size: Mid-Sized
Experience Required: 6 - 10 years
Working Days: 5 days/week
Office Location: Bengaluru [Karnataka]
Review Criteria:
Mandatory:
- Strong DevSecOps profile
- Must have 5+ years of hands-on experience in Information Security, with a primary focus on cloud security across AWS, Azure, and GCP environments.
- Must have strong practical experience working with Cloud Security Posture Management (CSPM) tools such as Prisma Cloud, Wiz, or Orca along with SIEM / IDS / IPS platforms
- Must have proven experience in securing Kubernetes and containerized environments including image security,runtime protection, RBAC, and network policies.
- Must have hands-on experience integrating security within CI/CD pipelines using tools such as Snyk, GitHub Advanced Security,or equivalent security scanning solutions.
- Must have solid understanding of core security domains including network security, encryption, identity and access management key management, and security governance including cloud-native security services like GuardDuty, Azure Security Center etc
- Must have practical experience with Application Security Testing tools including SAST, DAST, and SCA in real production environments
- Must have hands-on experience with security monitoring, incident response, alert investigation, root-cause analysis (RCA), and managing VAPT / penetration testing activities
- Must have experience securing infrastructure-as-code and cloud deployments using Terraform, CloudFormation, ARM, Docker, and Kubernetes
- B2B SaaS Product companies
- Must have working knowledge of globally recognized security frameworks and standards such as ISO 27001, NIST, and CIS with exposure to SOC2, GDPR, or HIPAA compliance environments
Preferred:
- Experience with DevSecOps automation, security-as-code, and policy-as-code implementations
- Exposure to threat intelligence platforms, cloud security monitoring, and proactive threat detection methodologies, including EDR / DLP or vulnerability management tools
- Must demonstrate strong ownership mindset, proactive security-first thinking, and ability to communicate risks in clear business language
Roles & Responsibilities:
We are looking for a Senior Information Security Engineer who can help protect our cloud infrastructure, applications, and data while enabling teams to move fast and build securely.
This role sits deep within our engineering ecosystem. You’ll embed security into how we design, build, deploy, and operate systems—working closely with Cloud, Platform, and Application Engineering teams. You’ll balance proactive security design with hands-on incident response, and help shape a strong, security-first culture across the organization.
If you enjoy solving real-world security problems, working close to systems and code, and influencing how teams build securely at scale, this role is for you.
What You’ll Do-
Cloud & Infrastructure Security:
- Design, implement, and operate cloud-native security controls across AWS, Azure, GCP, and Oracle.
- Strengthen IAM, network security, and cloud posture using services like GuardDuty, Azure Security Center and others.
- Partner with platform teams to secure VPCs, security groups, and cloud access patterns.
Application & DevSecOps Security:
- Embed security into the SDLC through threat modeling, secure code reviews, and security-by-design practices.
- Integrate SAST, DAST, and SCA tools into CI/CD pipelines.
- Secure infrastructure-as-code and containerized workloads using Terraform, CloudFormation, ARM, Docker, and Kubernetes.
Security Monitoring & Incident Response:
- Monitor security alerts and investigate potential threats across cloud and application layers.
- Lead or support incident response efforts, root-cause analysis, and corrective actions.
- Plan and execute VAPT and penetration testing engagements (internal and external), track remediation, and validate fixes.
- Conduct red teaming activities and tabletop exercises to test detection, response readiness, and cross-team coordination.
- Continuously improve detection, response, and testing maturity.
Security Tools & Platforms:
- Manage and optimize security tooling including firewalls, SIEM, EDR, DLP, IDS/IPS, CSPM, and vulnerability management platforms.
- Ensure tools are well-integrated, actionable, and aligned with operational needs.
Compliance, Governance & Awareness:
- Support compliance with industry standards and frameworks such as SOC2, HIPAA, ISO 27001, NIST, CIS, and GDPR.
- Promote secure engineering practices through training, documentation, and ongoing awareness programs.
- Act as a trusted security advisor to engineering and product teams.
Continuous Improvement:
- Stay ahead of emerging threats, cloud vulnerabilities, and evolving security best practices.
- Continuously raise the bar on a company's security posture through automation and process improvement.
Endpoint Security (Secondary Scope):
- Provide guidance on endpoint security tooling such as SentinelOne and Microsoft Defender when required.
Ideal Candidate:
- Strong hands-on experience in cloud security across AWS and Azure.
- Practical exposure to CSPM tools (e.g., Prisma Cloud, Wiz, Orca) and SIEM / IDS / IPS platforms.
- Experience securing containerized and Kubernetes-based environments.
- Familiarity with CI/CD security integrations (e.g., Snyk, GitHub Advanced Security, or similar).
- Solid understanding of network security, encryption, identity, and access management.
- Experience with application security testing tools (SAST, DAST, SCA).
- Working knowledge of security frameworks and standards such as ISO 27001, NIST, and CIS.
- Strong analytical, troubleshooting, and problem-solving skills.
Nice to Have:
- Experience with DevSecOps automation and security-as-code practices.
- Exposure to threat intelligence and cloud security monitoring solutions.
- Familiarity with incident response frameworks and forensic analysis.
- Security certifications such as CISSP, CISM, CCSP, or CompTIA Security+.
Perks, Benefits and Work Culture:
A wholesome opportunity in a fast-paced environment that will enable you to juggle between concepts, yet maintain the quality of content, interact and share your ideas and have loads of learning while at work. Work with a team of highly talented young professionals and enjoy the comprehensive benefits that company offers.

Similar jobs

Job Details
- Job Title: DevOps and SRE -Technical Project Manager
- Industry: Global digital transformation solutions provider
- Domain - Information technology (IT)
- Experience Required: 12-15 years
- Employment Type: Full Time
- Job Location: Bangalore, Chennai, Coimbatore, Hosur & Hyderabad
- CTC Range: Best in Industry
Job Description
Company’s DevOps Practice is seeking a highly skilled DevOps and SRE Technical Project Manager to lead large-scale transformation programs for enterprise customers. The ideal candidate will bring deep expertise in DevOps and Site Reliability Engineering (SRE), combined with strong program management, stakeholder leadership, and the ability to drive end-to-end execution of complex initiatives.
Key Responsibilities
- Lead the planning, execution, and successful delivery of DevOps and SRE transformation programs for enterprise clients, including full oversight of project budgets, financials, and margins.
- Partner with senior stakeholders to define program objectives, roadmaps, milestones, and success metrics aligned with business and technology goals.
- Develop and implement actionable strategies to optimize development, deployment, release management, observability, and operational workflows across client environments.
- Provide technical leadership and strategic guidance to cross-functional engineering teams, ensuring alignment with industry standards, best practices, and company delivery methodologies.
- Identify risks, dependencies, and blockers across programs, and proactively implement mitigation and contingency plans.
- Monitor program performance, KPIs, and financial health; drive corrective actions and margin optimization where necessary.
- Facilitate strong communication, collaboration, and transparency across engineering, product, architecture, and leadership teams.
- Deliver periodic program updates to internal and client stakeholders, highlighting progress, risks, challenges, and improvement opportunities.
- Champion a culture of continuous improvement, operational excellence, and innovation by encouraging adoption of emerging DevOps, SRE, automation, and cloud-native practices.
- Support GitHub migration initiatives, including planning, execution, troubleshooting, and governance setup for repository and workflow migrations.
Requirements
- Bachelor’s degree in Computer Science, Engineering, Business Administration, or a related technical discipline.
- 15+ years of IT experience, including at least 5 years in a managerial or program leadership role.
- Proven experience leading large-scale DevOps and SRE transformation programs with measurable business impact.
- Strong program management expertise, including planning, execution oversight, risk management, and financial governance.
- Solid understanding of Agile methodologies (Scrum, Kanban) and modern software development practices.
- Deep hands-on knowledge of DevOps principles, CI/CD pipelines, automation frameworks, Infrastructure as Code (IaC), and cloud-native tooling.
- Familiarity with SRE practices such as service reliability, observability, SLIs/SLOs, incident management, and performance optimization.
- Experience with GitHub migration projects—including repository analysis, migration planning, tooling adoption, and workflow modernization.
- Excellent communication, stakeholder management, and interpersonal skills with the ability to influence and lead cross-functional teams.
- Strong analytical, organizational, and problem-solving skills with a results-oriented mindset.
- Preferred certifications: PMP, PgMP, ITIL, Agile/Scrum Master, or relevant technical certifications.
Skills: Devops Tools, Cloud Infrastructure, Team Management
Must-Haves
DevOps principles (5+ years), SRE practices (5+ years), GitHub migration (3+ years), CI/CD pipelines (5+ years), Agile methodologies (5+ years)
Notice period - 0 to 15days only
Notice period - Immediate Joiners
Work Mode - Remote
About the Role
We are seeking a Senior Cybersecurity Engineer to design, implement, and govern enterprise-grade security architectures across cloud-based healthcare platforms. The role involves working closely with Data, Software, ML, and Cloud Architects to secure complex systems such as AI platforms, digital diagnosis solutions, and software-as-a-medical-device offerings.
Key Responsibilities
- Design, implement, and maintain robust security architectures for applications, infrastructure, and cloud platforms
- Conduct threat modeling, security reviews, vulnerability assessments, and penetration testing
- Identify security gaps in existing and proposed architectures and recommend remediation
- Implement and support DevSecOps practices, including code and infrastructure security
- Define and enforce security policies, standards, and procedures
- Respond to security incidents with root-cause analysis and corrective actions
- Mentor development and security teams on secure design and best practices
- Evaluate and integrate third-party security tools and technologies
Mandatory Skills (Top 3)
- Cloud Security Expertise
- Hands-on experience with cloud security (AWS / GCP / Azure), including secure architecture design and cloud risk assessments.
- DevSecOps & Container Security
- Strong experience in DevSecOps/SecOps environments with tools and technologies such as Docker, Kubernetes, IDS, SIEM, SAST/DAST, and EDR.
- Threat Modeling & Vulnerability Management
- Proven expertise in threat modeling, penetration testing, vulnerability assessment, and risk management, including automation-driven security testing.
12 minutes ago • Visible to anyone on or off LinkedIn
Position - Salesforce Developer
Type - Hybrid
Experience - 6+ years
Location – Bangalore only
Work timings - General IST shift
We are looking for a skilled Salesforce Developer with 6 years of hands-on experience in Salesforce platform development. The ideal candidate will be responsible for managing, configuring, customizing, and enhancing our Salesforce environment to meet business needs. You will collaborate with various stakeholders to design, implement, and maintain Salesforce solutions that drive efficiency and effectiveness in sales, marketing, and customer service operations.
Key Responsibilities:
• Salesforce Administration:
o Manage user setup, roles, profiles, security settings, and permissions.
o Configure and maintain custom objects, record types, fields, page layouts, workflows, process builders, and validation rules.
o Perform regular data management tasks including data import, export, deduplication, and cleaning.
o Ensure platform stability and performance with regular system maintenance.
• Salesforce Development:
o Design and implement custom solutions using Apex, Visualforce, Lightning Components (LWC and AURA), and SOQL.
o Develop and integrate APIs to connect Salesforce with other systems.
o Automate processes with Flow Builder, Process Builder, and custom code.
o Identify opportunities for automation, efficiency, and improved data quality.
o Implement third-party apps from AppExchange as required.
o Stay up-to-date with Salesforce releases and ensure smooth implementation of new features.
Desired skills
• Strong problem-solving and analytical skills.
• Excellent communication and interpersonal skills.
• Ability to work independently and as part of a team.
• Experience with Agile methodologies and tools like Jira.
• Knowledge of Sales Cloud, Service Cloud, or Marketing Cloud is a plus.
• Familiarity with Salesforce AppExchange solutions.
• Proficiency in Salesforce Lightning experience.
• Strong knowledge of Salesforce features like Reports, Dashboards, Process Builder, Flows, Workflow Rules, and custom objects.
• Proficiency in Apex, SOQL, Visualforce, and Lightning Web Components.
• Understanding of integration technologies (REST/SOAP APIs).
• Experience with data migration and management tools (e.g., Data Loader, Workbench).
Qualifications:
• Masters/Bachelor's degree in Computer Science, Information Technology, or a relevant field.
• Salesforce certifications such as Salesforce Administrator, Salesforce Platform Developer I and II
Job Summary:
We are seeking a SAS Data Integration Developer to design, develop, and maintain Campaign Management Data Mart (CMDM) solutions, integrate multiple data sources, and ensure data quality for marketing analytics and campaign execution.
Key Responsibilities:
- Data Integration & ETL Development
- Develop data ingestion, transformation, and deduplication pipelines.
- Standardize, cleanse, and validate large-scale customer data.
- Work with GaussDB, SAS ESP, APIs, and SAS DI Studio for data processing.
- Master Data Management (CMDM) Configuration
- Implement unification & deduplication logic for a single customer view.
- Develop and manage data masking & encryption for security compliance.
- API & CI360 Integration
- Integrate CMDM with SAS CI360 for seamless campaign execution.
- Ensure API connectivity and data flow across platforms.
- Testing & Deployment
- Conduct Unit, Integration, and UAT Testing.
- Deploy CMDM solutions to production and provide knowledge transfer.
Key Skills Required:
- SAS Data Integration Studio (SAS DI Studio)
- Design, develop, and maintain Campaign Management Data Mart (CMDM)
- Data Management (SAS Base, SQL, Data Cleansing)
- SAS ESP, GaussDB, and API Integration
- Data Governance (RBAC, GDPR, PII Compliance)
- Data Masking & Encryption Techniques
In this role, you will have the opportunity to:
- Use domain knowledge along with research and analytical skills for market sizing, market landscaping, workflow analysis, pricing analysis in the IT industry for SAAS Products
- Analyzing data, developing reports and dashboards, and communicating insights to the business. The role will stretch across the breadth of our organization and have both global and region-specific coverage
- Excel based analysis linking multiple data points to identify impactful insights and trends in data
- Present research findings to key stakeholders over PPTs
- Data prep and QC as and when needed to ensure data accuracy
- Liaise with key senior business stakeholders to understand their business problems and propose analytical solutions.
- Blend technical analytics skills along with a strong domain/business understanding to help our marketing & commercial organizations take the right strategic decisions
- Build expertise on the market landscape in the context of the business, through individual learning and regular interactions with the team
- Supporting broader team programs, processes and simplification initiatives, as needed
The essential requirements of the job include:
- 2-5 years' experience in IT industry in Analytics; MBA would be an added advantage
- Demonstrated strong interpersonal & communication skills within a global environment (oral and written)
- Demonstrated experience in projects involving market sizing, market landscaping, workflow analysis and pricing analytics
- Comfortable handling big data in MS-Excel, creative in presentations, pulling together insights from a variety of sources with effective presentation and story boarding skills
- Problem solver accompanied by strong analytical and process skills, keen attention to detail, be highly organized and methodical
- Self-motivated, willingness to take the initiative to identify opportunities for improvement and take actions to improve
You will be responsible for building these applications, as well as coordinating with the teams responsible for other layers of the product.
You will also be leading a team of developers ensuring timely delivery of high quality deliverables.
Responsibilities:
- Work across all phases of application development including requirement gathering, coding, release, bug fixing, documentation.
- Lead and mentor a team of developers guiding them in their day to day activities.
- Collaborate with other engineering teams to develop and deliver new features and enhance existing ones.
- Rapid prototyping (POCs) based on requirements.
- Test, debug and fix any functional or non-functional issues.
- Work with the architects to ensure feasibility of the design while ensuring all quality attributes are met.
- Participate in deployment and release activities.
Job Requirements:
- 5+years of relevant experience.
- Experience in leading a team.
- Expertise in Python, Django DRF, REST APIs
- Experience with Document DB, RDBMS and ORM.
- Demonstrated ability to write clean and testable code.
- Knowledge of MongoDB, PostgreSQL, Redis, ElasticSearch is preferred.
- Exposure to AWS will be an added advantage.
- Familiarity with front-end technologies (ReactJS, Javascript etc) will be a plus.
- Strong team player who can work efficiently in a highly collaborative effort.
- Self-motivated and able to work independently as well as within a team.
About Rolling Arrays
Rolling Arrays provides HR Software and HR System Implementation Services (SAP SuccessFactors, Qualtrics, Reimburse, CICO, eFile, eAuthoring) to Clients in Singapore, Malaysia, Australia, UAE, Hong Kong. Rolling Arrays (RA) was featured as Singapore’s Top 75 fastest growing companies by the leading newspaper of Singapore - The Straits Times in 2021 where RA was ranked 48. Rolling Arrays has 2 lines of businesses:
HR System Implementation Services:
Rolling Arrays is regarded as number ONE mid-size firm in the South East Asian Market with a strong track record of 12 Years and more than 200 enterprise level HR Technology Implementation projects till date. The services include –
- SAP SuccessFactors Design Consulting
- SAP SuccessFactors Implementation
- SAP SuccessFactors Change Management
- SAP SuccessFactors Support Services (AMS)
HR Software Products in Rolling Arrays’ portfolio (partner’s products and own products):
- SAP SuccessFactors (World’s leading End to End Cloud HR Software solution)
- Qualtrics (World’s leading Experience Management Software)
- Reimburse (AI Enabled Travel & Expense Management Software for Enterprises)
- CICO (Intelligent Time Capture Machine, a software alternative to Physical Biometric Devices)
- eFile (Digitize and contextualize all employee documents in one place)
- eAuthoring (Author and publish your own learning content to capture tacit knowledge in the organization)
About us:
HappyFox is a software-as-a-service (SaaS) support platform. We offer an enterprise-grade help desk ticketing system and intuitively designed live chat software.
We serve over 12,000 companies in 70+ countries. HappyFox is used by companies that span across education, media, e-commerce, retail, information technology, manufacturing, non-profit, government and many other verticals that have an internal or external support function.
To know more, Visit! - https://www.happyfox.com/
Responsibilities:
- Perform manual and automated application penetration tests and provide suggestions to harden our products
- Participate regularly in the development and release process to identify and report security vulnerabilities in the code being shipped
- Conduct regular audits on all Features/APIs of the product and reports vulnerabilities to the development team
- Keep up with industry trends in the security space
- Triage inbound vulnerability reports with an appropriate level of urgency and track them until they are resolved by Engineering teams
- Should be able to understand different elements of our NodeJS, Python and similar stacks and provide guidance on secure software development practices to the team
- Scale our application security engineering team
Requirements:
- Strong verbal and written communication skills
- Has worked on Web Application Security Testing for a reasonably complex application. The mobile experience is a plus
- Good knowledge of secure software development guidelines from authoritative bodies like NIST, OWASP, SANS
- Hands-on experience in performing manual/automated security assessments with open-source/commercial security tools
Position : Wordpress Developer
Work Location : Chennai
Work Experience : 4 to 7 Years
Job requirement:
- To create, improve, and maintain our custom developed Wordpress applications and Wordpress websites.
- Making highly customized websites with own developed themes and plugins.
- To understand design guidelines and develop accordingly with pixel perfect accuracy, by integrating HTML/CSS responsive designs as a Wordpress theme.
- To improve performance of the website loading time.
- Should have experience in Ecommerce
- Should have experience in developing media site
Hands on NetSuite Testing experience
Strong Test Automation Skills- Selenium Java
Excellent testing background, very strong communicator
Loc :bangalore
looking for immediate joineer/15days/30 days max









