Must Have Skills :
| Cloud & Infrastructure: Familiarity with infrastructure -as -code (IaC) tools such as Terraform, Ansible, and CloudFormation.
Microservices & Containerization: Strong proficiency in building and managing microservices architectures using Docker, Kubernetes and secure API design, service discovery, and inter -service communication.
CI/CD & Security Automation: Hands -on experience with Bamboo, Jenkins, GitLab CI/CD, GitHub Actions and Integration of static code analysis (SAST), dynamic testing (DAST), dependency scanning, and container image scanning into pipelines.
Monitoring & Optimization: Proficiency with SIEM tools (Newrelic, Splunk, ELK, Datadog, Prometheus, Grafana)
Infrastructure as Code: Experience with CloudFormation, Terraform, or similar tools
|
Good to Have Skills :
| Strong knowledge of AWS services and security best practices.
Hands -on with Terraform, Ansible, Kubernetes, Docker, CI/CD tools.
Proficiency in IaC, Python, Bash, or Go for automation.
Experience with identity governance and IT security audits.
Strong problem -solving and analytical skills.
Ability to collaborate across development, operations, and security teams.
Experience with DevOps practices and CI/CD pipelines using Bamboo Pipelines.
Good understanding of networking concepts and IAM roles/policies in AWS.
|
Roles and Responsibilities :
| Secure AWS resources such as EC2, EKS, ECS, EMR, S3, RDS, RabbitMQ, EFS, Lambda, CloudFront, Kinesis, VPC Peering.
Implement IAM least privilege, Service Control Policies (SCPs), KMS encryption, Secrets Manager, and SSO.
Configure AWS -native security tools: WAF, Shield, Fastly CDN, Signal Sciences, Inspector, Macie, CloudTrail, Config, Security Hub.
Harden VPC architecture, subnets, routing, SG/NACLs, and multi -account environments.
Integrate security checks into CI/CD pipelines (Bamboo, Jenkins, GitHub Actions, GitLab CI, etc.).
Automate compliance and security testing using Terraform, Ansible, Kubernetes, Docker.
Develop and enforce security policies mapped to infrastructure -as -code (IaC).
Ensure data encryption at rest and in transit across all services.
Implement continuous monitoring and alerting for vulnerabilities.
Collaborate with DevOps and Security teams to respond to incidents.
Conduct regular penetration testing and threat modelling.
Implement and manage serverless solutions using AWS Lambda, API Gateway, and DynamoDB.
Monitor and optimize system performance, cost, and scalability across AWS services.
Provide operational support and troubleshooting for AWS -based applications.
Collaborate with cross -functional teams to ensure seamless cloud integration and deployment.
|