Description
Synechron is a leading digital consulting firm with 17,000+ collaborative employees in 60+ global offices across 20+ countries.
From our solid financial services industry foundation, we have become a prominent global digital consulting firm for large financial services and technology firms.
With a key focus on trust, and in partnership with our clients, we’re leading modernization and digital optimization journeys with expertise that spans Consulting, Data, Design, Cloud and Engineering across various industries.
We can provide you with customized end-to-end solutions that drive business value.
We are looking for an experienced and motivated DevSecOps Engineer – AWS, Kubernetes, GitLab & ASPM to join our technology and security engineering team.
The successful candidate will be responsible for designing, implementing, securing, and operating cloud infrastructure, CI/CD pipelines, application security controls, and platform automation services.
The role will work closely with Security, Platform, Engineering, and DevOps teams to drive secure engineering practices, platform adoption, and continuous improvement.
Job Description:
Responsibilities
Design, deploy, operate, and secure AWS infrastructure across enterprise environments.Work with AWS services including VPC, IAM, EC2, ECS/EKS, Lambda, S3, CloudWatch, Route 53, RDS, Secrets Manager, AWS Inspector, and AWS Security Hub.Design secure AWS networking architectures, including network segmentation, access controls, routing, connectivity, and monitoring.Design, implement, optimize, and troubleshoot GitLab CI/CD pipelines.Integrate DevSecOps controls into GitLab workflows, including security testing, quality gates, vulnerability scanning, and compliance checks.Implement and operate Application Security Posture Management (ASPM) solutions, preferably Apiiro or Legit Security.Integrate SAST, DAST, SCA, container security, secret detection, and infrastructure security tools into CI/CD pipelines.Develop platform automation services and operational tooling using advanced Python, REST APIs, and scripting.Build and maintain Terraform modules for cloud infrastructure, security controls, Kubernetes platforms, and shared services.Design, deploy, and secure Kubernetes and Amazon EKS environments.Apply container security principles across Docker images, registries, workloads, configurations, and runtime environments.Improve platform observability through monitoring, metrics, logs, tracing, dashboards, and alerting.Work with tools such as Prometheus, Grafana, OpenTelemetry, and AWS-native monitoring services.Support integrations with ServiceNow and CMDB platforms where required.Troubleshoot cloud, pipeline, security, application, and container-related issues.Collaborate with Security, Platform, Engineering, DevOps, and Architecture teams to improve secure software delivery.Provide technical leadership, mentoring, documentation, and engineering enablement.Drive adoption of cloud security, DevSecOps, automation, and secure platform practices.
Required Skills & Experience
5+ years of experience deploying and operating AWS infrastructure.Strong knowledge of AWS services, including VPC, IAM, EC2, ECS/EKS, Lambda, S3, CloudWatch, Route 53, RDS, Secrets Manager, AWS Inspector, and Security Hub.Experience designing secure AWS networking architectures.Strong hands-on experience with Terraform and Infrastructure as Code.Experience designing and implementing GitLab CI/CD pipelines.Experience optimizing and troubleshooting CI/CD workflows.Practical experience implementing DevSecOps controls in GitLab.Experience with ASPM tools, preferably Apiiro or Legit Security.Strong understanding of vulnerability management, SAST, DAST, SCA, container security, secret detection, and infrastructure security.Advanced Python skills, including automation scripting, REST API integrations, and platform automation.Strong experience with Kubernetes, Amazon EKS, and Docker.Understanding of container security concepts and secure image management.Experience integrating security tooling into CI/CD workflows.Strong stakeholder management, communication, documentation, problem-solving, and collaboration skills.Experience working across Security, Platform, Engineering, and DevOps teams.
Additional Experience
Experience with one or more of the following will be an advantage:
QualysJFrog ArtifactoryPrometheusGrafanaOpenTelemetryServiceNowCMDB integrationsHelmJenkinsDatadog, Splunk, or similar observability platforms
What You’ll Bring
A security-first approach to cloud and platform engineering.Strong technical ownership and a continuous-improvement mindset.The ability to translate security requirements into practical engineering controls.Strong communication skills across technical and non-technical stakeholders.A willingness to mentor engineers and drive platform adoption.The ability to operate effectively in a fast-paced, collaborative environment.