Security Controls Engineer

Tata Consultancy Services — United States · Posted ~2 hours ago

Mid Full-time Visa History ✓

Skills

Python Terraform DevSecOps cloud security security controls CI/CD AWS GCP Azure OPA/Rego

🔓 Log in to save this job, tailor your resume & track your apply process — 7 days free, no card needed.

Log in to add to target list

Summary ✨ AI‑Generated

A security engineer is sought to design and automate security controls for cloud-based systems. The role requires strong coding ability, security knowledge, and experience integrating protections into development workflows.

Highlights

Development-focused security role combining software engineering and cybersecurity. Provides opportunities to build automated security solutions across cloud environments.

Description

Job Description Key Responsibilities Design and develop custom security controls based on threat modelling outputs Build:Detective controls using Python-based frameworksPreventative controls using OPA/Rego policies Extend and enhance existing security control frameworks Develop and maintain:Automated unit testsBehavioral (BDD) test cases Integrate controls into CI/CD pipelines for continuous validation Collaborate with:Threat modeling teamsCloud architectsSecurity SMEs Required Qualifications This is a development-heavy role. Candidates must demonstrate strong coding capability. Security Experience Is Required, But Coding Proficiency Is Mandatory. Minimum of 3-5 years of experience in DevSecOps engineering with a focus on cloud environments (AWS, GCP, Azure), ideally working within a security program. Strong software engineering background - proficiency in software testing methodologies and tools. Advanced proficiency in Python - proficiency with Python and Terraform for testing, automation and custom tool development. Proficiency with:API integrations and backend developmentWriting scalable, maintainable code Hands-on experience with:Automated testing frameworks (Python)CI/CD pipelines Experience with cloud-native development and architecture, leveraging services and tools specific to AWS, GCP, and Azure. Experience with detection engineering: detection-as-code practices, developing and maintaining detection rules Hands-on experience with Open Policy Agency (OPA) for policy enforcement Proficiency in DevOps tools and practices Experience with SIEM query languages such as Splunk SPL, YARA rules, etc. MUST pass Karat Assessment (Python focused). Salary Range: $80,000 to $100,000 per year Qualifications: BACHELOR OF COMPUTER SCIENCE