Berani Digital ID is looking for a
DevSecOps Engineer
with a passion for securing software development and deployment processes for our client (on-site). Join our team to incorporating cutting-edge security practices across Dev, Sec, and Ops teams.
General Qualifications
- Minimum 2 years of experience in a DevOps or DevSecOps role.
- Deep understanding of secure software development lifecycle (SSDLC).
- Experience working in hybrid environments (on-premise and cloud).
- Proficiency in scripting with
Bash, Python, or Go
. - Ability to work independently and collaborate cross-functionally with Dev, Sec, and Ops teams.
Technical Expertise
Infrastructure & Containerization
- Hands-on experience with OpenShift (preferably v4.x), including:
- Deployment strategies (blue/green, canary).
- RBAC and namespace management.
- Securing image registries and pod-level security.
- Knowledge of JFrog Artifactory and Xray for artifact scanning.
- Expertise in Jenkins pipelines, such as:
- Writing and maintaining CI/CD as code.
- Securing Jenkins using secrets management and access control.
- Solid understanding of Docker and Kubernetes concepts.
AWS Cloud Experience
- Proficiency in:
- AWS CodePipeline, CodeBuild, CodeDeploy.
- EKS (Elastic Kubernetes Service) setup and security hardening.
- AWS IAM, security groups, KMS, and S3 encryption policies.
- AWS WAF, GuardDuty, and Security Hub.
- Experience automating infrastructure using
Terraform
or
AWS CloudFormation
.
Security & Compliance
- Familiarity with:
- SAST, DAST, SCA tools (e.g., SonarQube, OWASP ZAP, Trivy).
- Secrets management tools like HashiCorp Vault, AWS Secrets Manager, or Kubernetes Secrets.
- Container image scanning and vulnerability management.
Preferred Skills
- Experience with SIEM tools (e.g., Splunk, ELK) for security log correlation.
- Expertise in building immutable infrastructure and zero-trust networking.
- Knowledge of incident response procedures and automated security alerting.
Soft Skills
- Strong analytical and troubleshooting skills.
- Good documentation habits (e.g., runbooks, security procedures).
- Effective communication to bridge Dev, Sec, and Ops teams.
- Eager to learn and adapt to new tools and technologies.
Application Details
Interested candidates can send their applications to
or apply via LinkedIn by
Nov 9, 2025
. Only shortlisted candidates will be notified. Thank you