
Senior Information Security Engineer (DevSecOps)
at E-Commerce Industry
SENIOR INFORMATION SECURITY ENGINEER (DEVSECOPS)
Key Skills: Software Development Life Cycle (SDLC), CI/CD
About Company: Consumer Internet / E-Commerce
Company Size: Mid-Sized
Experience Required: 6 - 10 years
Working Days: 5 days/week
Office Location: Bengaluru [Karnataka]
Review Criteria:
Mandatory:
- Strong DevSecOps profile
- Must have 5+ years of hands-on experience in Information Security, with a primary focus on cloud security across AWS, Azure, and GCP environments.
- Must have strong practical experience working with Cloud Security Posture Management (CSPM) tools such as Prisma Cloud, Wiz, or Orca along with SIEM / IDS / IPS platforms
- Must have proven experience in securing Kubernetes and containerized environments including image security,runtime protection, RBAC, and network policies.
- Must have hands-on experience integrating security within CI/CD pipelines using tools such as Snyk, GitHub Advanced Security,or equivalent security scanning solutions.
- Must have solid understanding of core security domains including network security, encryption, identity and access management key management, and security governance including cloud-native security services like GuardDuty, Azure Security Center etc
- Must have practical experience with Application Security Testing tools including SAST, DAST, and SCA in real production environments
- Must have hands-on experience with security monitoring, incident response, alert investigation, root-cause analysis (RCA), and managing VAPT / penetration testing activities
- Must have experience securing infrastructure-as-code and cloud deployments using Terraform, CloudFormation, ARM, Docker, and Kubernetes
- B2B SaaS Product companies
- Must have working knowledge of globally recognized security frameworks and standards such as ISO 27001, NIST, and CIS with exposure to SOC2, GDPR, or HIPAA compliance environments
Preferred:
- Experience with DevSecOps automation, security-as-code, and policy-as-code implementations
- Exposure to threat intelligence platforms, cloud security monitoring, and proactive threat detection methodologies, including EDR / DLP or vulnerability management tools
- Must demonstrate strong ownership mindset, proactive security-first thinking, and ability to communicate risks in clear business language
Roles & Responsibilities:
We are looking for a Senior Information Security Engineer who can help protect our cloud infrastructure, applications, and data while enabling teams to move fast and build securely.
This role sits deep within our engineering ecosystem. You’ll embed security into how we design, build, deploy, and operate systems—working closely with Cloud, Platform, and Application Engineering teams. You’ll balance proactive security design with hands-on incident response, and help shape a strong, security-first culture across the organization.
If you enjoy solving real-world security problems, working close to systems and code, and influencing how teams build securely at scale, this role is for you.
What You’ll Do-
Cloud & Infrastructure Security:
- Design, implement, and operate cloud-native security controls across AWS, Azure, GCP, and Oracle.
- Strengthen IAM, network security, and cloud posture using services like GuardDuty, Azure Security Center and others.
- Partner with platform teams to secure VPCs, security groups, and cloud access patterns.
Application & DevSecOps Security:
- Embed security into the SDLC through threat modeling, secure code reviews, and security-by-design practices.
- Integrate SAST, DAST, and SCA tools into CI/CD pipelines.
- Secure infrastructure-as-code and containerized workloads using Terraform, CloudFormation, ARM, Docker, and Kubernetes.
Security Monitoring & Incident Response:
- Monitor security alerts and investigate potential threats across cloud and application layers.
- Lead or support incident response efforts, root-cause analysis, and corrective actions.
- Plan and execute VAPT and penetration testing engagements (internal and external), track remediation, and validate fixes.
- Conduct red teaming activities and tabletop exercises to test detection, response readiness, and cross-team coordination.
- Continuously improve detection, response, and testing maturity.
Security Tools & Platforms:
- Manage and optimize security tooling including firewalls, SIEM, EDR, DLP, IDS/IPS, CSPM, and vulnerability management platforms.
- Ensure tools are well-integrated, actionable, and aligned with operational needs.
Compliance, Governance & Awareness:
- Support compliance with industry standards and frameworks such as SOC2, HIPAA, ISO 27001, NIST, CIS, and GDPR.
- Promote secure engineering practices through training, documentation, and ongoing awareness programs.
- Act as a trusted security advisor to engineering and product teams.
Continuous Improvement:
- Stay ahead of emerging threats, cloud vulnerabilities, and evolving security best practices.
- Continuously raise the bar on a company's security posture through automation and process improvement.
Endpoint Security (Secondary Scope):
- Provide guidance on endpoint security tooling such as SentinelOne and Microsoft Defender when required.
Ideal Candidate:
- Strong hands-on experience in cloud security across AWS and Azure.
- Practical exposure to CSPM tools (e.g., Prisma Cloud, Wiz, Orca) and SIEM / IDS / IPS platforms.
- Experience securing containerized and Kubernetes-based environments.
- Familiarity with CI/CD security integrations (e.g., Snyk, GitHub Advanced Security, or similar).
- Solid understanding of network security, encryption, identity, and access management.
- Experience with application security testing tools (SAST, DAST, SCA).
- Working knowledge of security frameworks and standards such as ISO 27001, NIST, and CIS.
- Strong analytical, troubleshooting, and problem-solving skills.
Nice to Have:
- Experience with DevSecOps automation and security-as-code practices.
- Exposure to threat intelligence and cloud security monitoring solutions.
- Familiarity with incident response frameworks and forensic analysis.
- Security certifications such as CISSP, CISM, CCSP, or CompTIA Security+.
Perks, Benefits and Work Culture:
A wholesome opportunity in a fast-paced environment that will enable you to juggle between concepts, yet maintain the quality of content, interact and share your ideas and have loads of learning while at work. Work with a team of highly talented young professionals and enjoy the comprehensive benefits that company offers.

Similar jobs
Job Summary
We are looking for a highly skilled Senior Java/Kotlin Developer with strong experience in Microservices Architecture and AWS Cloud. The ideal candidate should have hands-on expertise in designing, developing, and deploying scalable microservices-based applications using Java/Kotlin and AWS services.
Key Responsibilities
- Design and develop scalable, secure, and high-performance microservices using Java and/or Kotlin
- Build RESTful APIs using frameworks like Spring Boot / Spring Cloud
- Develop and deploy cloud-native applications on AWS
- Implement containerized applications using Docker and orchestrate using Kubernetes / EKS
- Work with messaging systems like Kafka / SQS
- Implement CI/CD pipelines using tools like Jenkins / GitHub Actions
- Ensure best practices in system design, code quality, testing, and security
- Collaborate with cross-functional teams (DevOps, QA, Product)
- Participate in code reviews and mentor junior developers
Required Skills
- 5+ years of strong experience in Java development
- Hands-on experience in Kotlin
- Strong knowledge of Microservices Architecture
- Experience with Spring Boot, Spring MVC, Spring Security
- Strong experience in AWS services such as:
- EC2
- S3
- RDS
- Lambda
- ECS/EKS
- API Gateway
- SQS/SNS
- Experience with Docker & Kubernetes
- Strong understanding of REST APIs and distributed systems
- Experience with relational databases (MySQL/PostgreSQL) and NoSQL (MongoDB/DynamoDB)
- Good understanding of design patterns and clean architecture
- Experience in Agile/Scrum methodology
Must-Have Skills
1. Mobile Test Automation – Strong hands-on experience in Espresso (Android),
XCUITest (iOS), and WebDriverIO for web & mobile hybrid apps.
2. Programming Languages – Proficiency in Java, Kotlin, Swift, and
JavaScript/TypeScript.
3. Test Frameworks & Tools – Experience with JUnit, TestNG, Mocha, Appium
(optional), WebDriverIO.
4. CI/CD & DevOps – Hands-on experience in Jenkins, CircleCI, GitHub Actions, and
Bitrise.
5. Version Control – Strong knowledge of Git, GitHub, Bitbucket.
6. Cloud Device Testing – Experience with Sauce Labs, BrowserStack, AWS Device
Farm, or Firebase Test Lab.
7. API Testing – Hands-on experience with Postman, REST Assured, or Kotlin for
API automation.
8. Performance Testing – Exposure to mobile performance testing using tools like
Android Profiler, Xcode Instruments, JMeter.
9. Agile & Collaboration – Familiarity with JIRA, Rally, Confluence, and working in
Agile environments.
10. Debugging & Troubleshooting – Strong ability to debug test failures and optimize
automation performance.
Develop and execute automation test scripts for Android (Espresso/JetPack
Compose) and iOS (XCUITest) applications.
● Work closely with development and QA teams to ensure complete test coverage
and seamless integration.
● Maintain and optimize existing test automation frameworks for scalability,
reliability, and performance.
● Set up and manage automation testing workflows in CI/CD pipelines using Jenkins, CircleCI, and other tools.
- Proven experience as a Laravel Developer with a strong portfolio of past projects.
- In-depth knowledge of Laravel, PHP, and MySQL.
- Experience with front-end technologies such as HTML, CSS, JavaScript, and jQuery.
- Familiarity with version control systems (e.g., Git).
- Understanding of RESTful API development and consumption.
- Strong problem-solving and communication skills.
- Ability to work collaboratively in a team environment.
- Attention to detail and a commitment to delivering high-quality solutions.
- Experience with testing frameworks (e.g., PHPUnit) is a plus.
- Knowledge of other PHP frameworks and CMS (e.g., Symfony, CodeIgniter, WordPress) is a plus.
We are hiring a Magento Developer for Dehradun location with Ftechiz Solutions.
- Substantive experience developing on the Magento platform
- Expert in PHP programming along with Zend and CodeIgnitor framework
- Experience with MySQL database design and administration
- Experience with XML / SOAP / WDSL
- Experience with Subversion
- Knowledge of current HTML / CSS / XHTML standards
- Knowledge of JavaScript / AJAX technologies and methods
- Specific Magento experience...
- Configure multiple stores and authentication features
- Integrate creative designs into Magento from HTML templates
- Integrate with payment gateways (authorize.net, etc)
- Integrate with shipping providers (Fedex, UPS, etc)
- Installing and skinning Magento modules
- Creating custom Magento modules, a plus
- Customize product and inventory management features
- Take advantage of Magento web services
- Cross-browser testing and implementation
We Are a Software Training Institute situated on a Ferguson Collage Road which is Opposite to Goodluck Cafe
We are in a Training Business Where we train people and help them set their Career in a fast growing environment
We At cyber Success looking for a Young and Enthusiastic Talent to Join our Team
Some one who has a vison to serve and help our students to build their Career and help in the grooming part of our students
Who is Excellent in communication and co-ordination
Some one who can motivate others and absolutely Optimistic in his nature
Some one who can understand the roles and responsibilities well and execute them on their own
Some one who is enthusiastic to learn more and Grow
Some one who is a Great team player
Passionate! And multi task
Required:
Basics of MS excel
Good English
Experience : 1 to 3 Years
Location : Pune
If you are some one who believes that he can be the one to help people grow you are the one where our Search ends !
Gauri Gore
Recruitment Specialist
Cyber Success !
• CI/CD tools
• Google’s Android design principles
• Android SDK.
• Unit-test code
• MongoDB, Elastic Search, DynamoDB, Redis
• AWS Amplify
REQUIREMENTS
• BS/MS degree in Computer Science, Engineering or a related subject
• Proven software development experience and Android skills development
• Proven working experience in Android app development and
• Have published at least one original Android app
• Experience with Android SDK
• Experience working with remote data via REST and JSON
• Experience with third-party libraries and APIs
• Working knowledge of the general mobile landscape,
architectures,trends,andemergingtechnologies
• Solid understanding of the full mobile development life cycle.
Job Description
The ideal candidate should have minimum 8 years of experience on SAP Abap.
Should be well versed with Reports , Interfaces , Conversions , Enhancements , Forms and User exits.
Should be good in stakeholder management.
Should have excellent verbal and written communication skills
Should be good in Project management.
Knowledge of S/4 Hana is required.
- Team Name - SDET
- Skills and Stacks - Java, Spring boot, Mysql, AWS stack, HTTP/GRPC
- Project 1 line description -Will be required the folks to close the P0 E2E automation
RESPONSIBILITIES
-
Write, execute and maintain test automation scripts using Java/Javascript – Web/API/DB.
-
Experience in Agile Methodologies
-
Knowledge of In-Sprint Automation
-
Have working experience in Automated API Testing
-
Design and implementation Experience in Test Strategy
-
Write, maintain and execute regression and sanity automation test suite – per build/on demand
-
Design data driven tests and fetch the data from API calls/ different Databases(Like MySQL, Oracle, Mongo)
-
Attend daily scrum calls, update status
-
Good to have Design and Implementation Experience in Test Automation Framework
-
Good to have TDD implementation using Mocha or Jest
-
Good to have Experience in IOS Automation Testing.
-
Interact and collaborate with cross functional teams and understand the business requirements
REQUIREMENTS
-
Technical Skills:
-
4+ years experience in Automation using Java/Javascript
-
Should be Strong in oops concepts
-
Strong Knowledge /experience in API and UI framework
-
Experience in GIT, CI/CD Jobs development and implementation
-
Any one of this is mandatory - TestNG,MOCHA,JEST
-
Software Engineering Skills:
-
Excellent problem solving and critical thinking
-
Experience of In-Sprint Automation
-
Take ownership of business problems and technical solutions
-
Strong Communication and interpersonal skills
-
Hands on with engineering excellence & continuous integration practices
-
Experience with Agile and strong collaboration skills with Business and Ops
-
What we value as a team:
-
Scripts written for readability, performance, scale and maintainability
-
Proactive in communication
-
Collaborate with other members in agile ecosystem
-
Out of the box thinking to resolve issues and bringing New Ideas to bringing Quality in the Applications
-
Ability to suggest changes in the product with respect to user experience









