Job Title: Senior DevSecOps Engineer (AWS)
Location: [Hyderabad/Hybrid]
Experience: 5+ Years
About Us:
www.Chryselys.com is a "Great Place to Work" certified, Pharma Analytics & Business consulting company that delivers data-driven insights leveraging AI-powered, cloud-native platforms to achieve high-impact transformations.
We specialize in digital technologies and advanced data science techniques that provide strategic and operational insights.
Who we are:
People - Our team of industry veterans, advisors and senior strategists have diverse backgrounds and have worked at top tier companies.
Quality - Our goal is to deliver the value of a big five consulting company without the big five cost.
Technology - Our solutions are Business centric built on cloud native technologies.
Job Summary
We are looking for a skilled DevSecOps Engineer to build, automate, and secure cloud infrastructure on AWS. The role focuses on CI/CD automation, containerized workloads, Kubernetes (EKS), Python scripting, and embedding security across the DevOps lifecycle, including vulnerability management and penetration testing.
Key Responsibilities
- Design and manage AWS infrastructure using Terraform/CloudFormation.
- Build and maintain CI/CD pipelines.
- Deploy and operate Docker and Kubernetes (EKS) workloads.
- Integrate security controls into pipelines (Shift-left security).
- Manage IAM, networking, and secrets securely.
- Perform vulnerability scanning and penetration testing.
- Monitor, optimize, and troubleshoot systems.
AWS Services
EC2, Lambda, EKS, ECS, S3, EBS, EFS, VPC, ALB/NLB, Route53, IAM, KMS, Secrets Manager, WAF, GuardDuty, Inspector, Security Hub, RDS, DynamoDB, CloudWatch, OpenSearch (OSS), Bedrock models.
Required Skills
- Strong AWS cloud architecture and services knowledge
- Docker & Kubernetes (EKS)
- Python & Bash scripting
- CI/CD automation
- Infrastructure as Code (Terraform/CloudFormation)
- Networking, TLS, encryption, IAM
- DevSecOps & vulnerability management
Security Testing
- SAST, DAST, SCA, IAST
- Container image scanning
- Infrastructure security scanning
- Secrets scanning
- Penetration testing (application & infrastructure)
Tools
Jenkins/GitHub Actions, Terraform, Helm, Docker, Kubernetes, Ansible, Prometheus, Grafana, OpenSearch, Trivy, Snyk, SonarQube, OWASP ZAP, Burp Suite, Nessus.
Good To Have
- AWS DevOps or Security Certification
- CKA / CEH / OSCP