DevSecOps Engineer - Infrastructure • Security • CI/CD • Cloud Operations
Job Description
Key Responsibilities
Cloud Infrastructure Management
• Design, deploy, and manage infrastructure on AWS (EC2, S3, RDS, VPC, IAM, CloudWatch, Lambda)
• Provision and manage DigitalOcean Droplets, Managed Databases, Spaces, and Kubernetes clusters
• Implement Infrastructure as Code (IaC) using Terraform or CloudFormation
• Monitor cloud costs and apply optimization strategies
Kubernetes & Container Orchestration
• Deploy, manage, and scale workloads on Kubernetes (K8s) clusters
• Configure Helm charts, namespaces, ingress controllers, and resource quotas
• Manage container registries and image lifecycle using Docker
• Implement Horizontal Pod Autoscaling (HPA) and rolling deployment strategies
CI/CD Pipeline Development
• Build and maintain Jenkins pipelines for automated build, test, and deployment workflows
• Integrate CI/CD pipelines with GitHub/GitLab for source control triggers
• Implement Blue-Green and Canary deployment patterns
• Manage pipeline secrets, environment configs, and approval gates
Security & DevSecOps Practices
• Integrate SAST/DAST tools and vulnerability scanning into CI/CD pipelines
• Manage IAM roles, policies, and access controls across AWS and DigitalOcean
• Implement network security: firewalls, VPNs, security groups, SSL/TLS
• Conduct periodic security audits, patch management, and compliance reviews
• Monitor for threats using CloudTrail, GuardDuty, or equivalent tools
Monitoring, Logging & Incident Response
• Set up centralized logging using ELK Stack, CloudWatch, or Grafana Loki
• Configure alerting and dashboards using Prometheus + Grafana
• Own incident detection, escalation, and post-mortem documentation
• Ensure system uptime SLAs and maintain runbooks for critical services
Required Qualifications & Experience
• 2–3 years of professional experience in a DevOps, DevSecOps, or SRE role
• Hands-on experience with AWS services: EC2, S3, RDS, VPC, IAM, CloudWatch
• Practical experience managing DigitalOcean infrastructure (Droplets, Managed K8s, Spaces)
• Strong Kubernetes skills: deployments, services, Helm, namespaces, ingress
• Proficiency in Jenkins for CI/CD pipeline creation and management
• Solid knowledge of Docker and container lifecycle management
• Experience with Infrastructure as Code (Terraform preferred)
• Familiarity with scripting: Bash, Python, or equivalent
• Working knowledge of Git workflows (GitHub/GitLab/Bitbucket)
• Understanding of network fundamentals: DNS, load balancing, firewalls, SSL
• Exposure to security tooling: OWASP, Trivy, SonarQube, or similar
Preferred Qualifications (Good to Have)
• AWS Certified DevOps Engineer or AWS Solutions Architect certification
• Experience with Istio service mesh or ArgoCD for GitOps workflows
• Exposure to Ansible or Chef/Puppet for configuration management
• Familiarity with serverless architectures (Lambda, API Gateway)
• Experience working in an MSP or product startup environment
• Knowledge of compliance frameworks: SOC 2, ISO 27001, or CIS Benchmarks
AI-Assisted Development Platform Experience
Candidates with prior hands-on experience deploying and managing applications built on the following platforms will be given strong preference:
• Emergent.sh — deploying and managing AI-generated full-stack applications in production environments
• Builder.io — deploying and managing visual-development/headless CMS apps, including content sync, API integrations, and production rollouts
• Cursor (AI-powered IDE) — working alongside development teams that use Cursor for AI-assisted coding; managing CI/CD and deployment pipelines for Cursor-built codebases
Experience should include environment configuration, secrets management, pipeline setup, and production monitoring for apps originating from these platforms.
Core Technology Stack
Category Technologies
Cloud Platforms AWS (EC2, S3, RDS, IAM, VPC, Lambda, CloudWatch) DigitalOcean (Droplets, Managed K8s, Spaces, Databases)
Containers &
Orchestration Docker Kubernetes (K8s) Helm Container Registries
CI/CD & Automation Jenkins GitHub Actions GitLab CI ArgoCD (preferred)
IaC & Config Mgmt Terraform CloudFormation Ansible
Monitoring &
Logging Prometheus Grafana ELK Stack CloudWatch PagerDuty
Security Tools Trivy SonarQube OWASP ZAP AWS GuardDuty IAM Policies
Scripting &
Languages Bash Python YAML JSON
Version Control Git GitHub GitLab Bitbucket
Work Details & Compensation
Employment Type Full-Time, Permanent
Work Mode Work From Office (WFO) — Mandatory
Shift Timing 6:30 PM to 2:30 AM (PKT)
Working Days Monday to Friday
Office Location Pune, Maharashtra, India
Legal Entity Flynaut LLC Pvt Limited
Probation Period 6 Months
Salary Competitive — Based on Experience & Interview
