DevSecOps Engineer

Abacusdigitalth β€” Thailand Β· Posted ~4 hours ago

Mid Full-time

Skills

CI/CD GitHub Actions SAST SCA Secrets Scanning Container Security Terraform Terragrunt AWS Kubernetes EKS Infrastructure as Code Automation

πŸ”“ Log in to save this job, tailor your resume & track your apply process β€” 7 days free, no card needed.

Log in to add to target list

Summary ✨ AI‑Generated

A DevSecOps engineering role focused on building secure delivery pipelines, managing cloud infrastructure as code, and operating reliable containerized workloads. You will integrate security and quality checks throughout the software lifecycle, automate infrastructure on a major cloud platform, maintain Kubernetes environments, and improve operational efficiency. The role also explores safe, governed use of AI coding agents across engineering and infrastructure workflows.

Highlights

Security-focused DevSecOps role covering the full software delivery lifecycle, cloud infrastructure, Kubernetes operations, automation, and responsible adoption of AI coding agents.

Description

We're expanding our DevSecOps team. You'll build secure delivery pipelines, run infrastructure as code on AWS, keep our Kubernetes workloads reliable β€” and help bring every team along to the same standard. What Will You Do Build and maintain CI/CD pipelines (GitHub Actions) with a shift-left approach β€” security and quality scanning (SAST, dependency/SCA, secrets, container images) integrated from the developer's machine through every stage of the SDLC.Build, improve, and maintain infrastructure as code with Terraform/Terragrunt on AWS, following the Landing Zone Architecture.Bring the agentic AI age into every layer of our work β€” apply AI coding agents and automation across CI/CD, code, and cloud infrastructure so we build and maintain systems more effectively, and help define the guardrails to use them safely.Operate containerized workloads on Kubernetes (EKS) and keep them secure, cost-effective, and reliable.Automate repetitive operational work β€” if we do it by hand more than once, you design the solution to solve it.Triage findings from security scanners and monitoring alerts; work with dev teams to verify fixes.Shine a light on the blind spots β€” build and tune monitoring, alerting, and availability dashboards so we know about issues before our customers do.Support security incident response β€” help investigate, contain, and follow up on findings through to remediation.Support compliance work β€” collect evidence, implement controls, and keep security configurations documented.Help drive adoption of DevSecOps standards across teams β€” demonstrate practices with working examples, document them clearly, and patiently bring skeptical teams on board. Who We Are Looking For Bachelor's degree in Computer Science, Information Security, or a related fieldHands-on with AWS (GCP a plus) β€” able to build, deploy, and maintain a service end to endHands-on Kubernetes experience (we run EKS) and solid container fundamentalsScripting in Python, NodeJS, or shellLinux and networking fundamentals (TCP/IP layers, DNS, routing, firewalls) for troubleshootingGit-based workflows and CI/CD experienceHands-on use of AI-assisted engineering tools (coding agents, LLM tooling) in daily work β€” with the judgment to verify what they produceAutomation mindset, systematic problem-solving, and self-drive β€” with something concrete to show for itClear communicator who inspires teams to adopt new practices β€” leading with evidence and working examples, not authority What's great if you have: Terraform/Terragrunt, GitHub ActionsGitOps with ArgoCDCloud security and OWASP basicsDatadog or similar observability platformsExperience building agentic workflows β€” MCP integrations, AI-driven pipeline automation, or custom agents/skillsHome lab, consistent self-paced learning, or open-source contributions