Hi,
Hope you are doing well.
This is Rahul from ICS Global Soft. Kindly find the below job description and let me know your availability.
Role: DevSecOps Engineer
Location: Buffalo, NYC – Onsite - (Only local candidates or Nearby)
Must be from Banking and Financial background.
Role Overview
We are looking for a DevSecOps Engineer who can work across cloud infrastructure, Kubernetes, automation, CI/CD, security, and production operations. The person will be responsible for building and maintaining secure, reliable, and scalable environments and helping development teams deploy applications efficiently.
The role involves working primarily with Azure, Kubernetes/AKS, Terraform, Docker, CI/CD, Git, and DevSecOps tools. The engineer should be comfortable working hands-on with infrastructure as code, containerized applications, deployment pipelines, security controls, monitoring, and production troubleshooting.
Key Responsibilities
The engineer will be responsible for:
- Designing, provisioning, and managing Azure infrastructure using Terraform/IaC.
- Managing Kubernetes/AKS environments, including deployments, services, ingress, namespaces, secrets, ConfigMaps, scaling, and resource management.
- Building and maintaining CI/CD pipelines for application build, testing, security scanning, and deployment.
- Implementing DevSecOps practices by integrating security checks into the development and deployment lifecycle.
- Managing Docker/container images and securing containerized workloads.
- Implementing Kubernetes security including RBAC, network policies, secrets management, and least-privilege access.
- Managing infrastructure and application configurations across development, QA, and production environments.
- Using Helm and GitOps tools such as Argo CD where applicable.
- Implementing monitoring, logging, alerting, and observability for applications and infrastructure.
- Troubleshooting Kubernetes, Azure, networking, deployment, and infrastructure issues in production.
- Supporting deployment strategies such as blue-green and canary deployments and implementing rollback mechanisms.
- Automating repetitive infrastructure and operational tasks using tools such as Ansible and scripting.
- Working with development and application teams to resolve deployment, infrastructure, and security issues.
- Participating in production incidents, root-cause analysis, and continuous improvement.
Technical Skills Expected
- The ideal candidate should have strong hands-on experience with:
- Cloud: Azure, preferably including AKS, networking, storage, Key Vault, RBAC, monitoring, and related services.
- Containers: Docker and container image management.
- Kubernetes: AKS, deployments, services, ingress, scaling, scheduling, networking, security, storage, and troubleshooting.
- Infrastructure as Code: Terraform, including modules, state management, remote backends, variables, environments, and reusable infrastructure.
- CI/CD: Azure DevOps, Jenkins, GitHub Actions, GitLab, or similar CI/CD platforms.
- Security: SAST, dependency scanning, container scanning, secrets management, RBAC, Kubernetes security, vulnerability management, and secure deployment practices.
- Automation: Ansible and scripting such as Bash or Python.
- Observability: Azure Monitor, Log Analytics, Prometheus, Grafana, Application Insights, or similar tools.
- Deployment/GitOps: Helm, Argo CD, GitOps practices, blue-green/canary deployments, and rollback strategies.
What We Expect From a Senior Engineer
- The most important expectation is hands-on production experience, not just theoretical knowledge.
- The engineer should be able to take a requirement, provision the infrastructure, deploy the application, secure it, monitor it, and troubleshoot it when something goes wrong.
- For example, if an application running in AKS is not accessible, the engineer should be able to investigate the issue across the entire path:
- Application → Pod → Service → Ingress → Load Balancer → Network → Azure infrastructure
- Similarly, if a Terraform deployment fails, they should be able to understand the state, identify the infrastructure issue, determine the impact, and safely resolve it without affecting other environments.
- Overall, we are looking for someone who can build, automate, secure, deploy, monitor, and troubleshoot production workloads across Azure and Kubernetes, while following DevSecOps and infrastructure-as-code best practices.