2 months ago
Responsibilities
- Engineer and maintain CI/CD pipelines, build and release processes, artifact versioning, and promotion strategies.
- Build and operate Kubernetes, Docker, and cloud infrastructure using infrastructure-as-code.
- Integrate security scanning and quality gates into the software development lifecycle.
- Triage vulnerabilities, prioritize remediation, and drive findings to closure with development teams.
- Implement logging, metrics, tracing, observability, and incident-support practices.
- Automate operational and security tasks using Bash, Python, or equivalent scripting.
- Harden operating systems, containers, and Kubernetes environments using secure configuration, RBAC, network policies, and least privilege.
- Coach developers, create clear runbooks, and promote secure engineering practices.
Requirements
- At least 8 years of experience is required.
- Strong hands-on CI/CD engineering experience with Jenkins, GitLab CI, or Azure DevOps, including build and release patterns, artifact versioning, and promotion strategies.
- Solid Kubernetes and Docker experience plus experience with AWS, Azure, or GCP and IAM concepts.
- Experience with Terraform, CloudFormation, or Bicep, including reusable modules and safe state management.
- Practical implementation of SAST, SCA, DAST, secrets scanning, container image scanning, and pipeline security gates.
- Experience triaging vulnerabilities, prioritizing risk, coordinating remediation, and tracking findings to closure.
- Knowledge of logging, metrics, tracing, incident support, and observability tools such as Splunk, ELK, Prometheus, Grafana, or OpenTelemetry.
- Bash and Python or equivalent scripting experience for automation and tool integration.
- Experience with OS, container, and Kubernetes hardening, RBAC, network policies, and least privilege.
- Experience with Git workflows, code reviews, branching strategies, and agile delivery teams.
- Ability to coach developers, write runbooks, and drive security adoption.
- Basic understanding of payment flows is required.
- Policy-as-code, threat modeling, secrets management, advanced Kubernetes security, supply-chain security, platform engineering, and regulated-environment experience are preferred.
- Relevant optional certifications include CKAD, CKA, Security+, AZ-500, AWS Security, and Terraform Associate.
Benefits
- Immediate-joiner opportunity.
- Location: Bengaluru or Pune.
- Opportunities for career growth and advancement.
- Inclusive, open workplace culture.
Tech Stack
AWSAzureBashDockerGitGitLab CI/CDGoogle Cloud PlatformGrafanaJenkinsKubernetesPrometheusPythonSplunkTerraform
About Capco
Capco, a Wipro company, is a global technology and management consultancy specializing in driving digital transformation in the financial services industry. With a growing client portfolio comprising of over 100 global organizations, Capco operates at the intersection of business and technology by combining innovative thinking with unrivalled industry knowledge to deliver end-to-end data-driven solutions and fast-track digital initiatives for banking and payments, capital markets, wealth and asset management, insurance, and the energy sector. Capco’s cutting-edge ingenuity is brought to life through its Innovation Labs and award-winning Be Yourself At Work culture and diverse talent.
