IN_Associate_DevSecOps_Advisory Corporate_Advisory_Gurugram
Core
Perform technical assessments of SDLC processes, review security controls in CI/CD pipelines, and evaluate infrastructure-as-code and containerization practices to safeguard sensitive data.
Role type
Associate DevSecOps Security Analyst
Builds
Secure software delivery pipelines and resilient digital infrastructure
Domain
Cybersecurity / Risk Advisory
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure
Required skills
CI/CD pipeline assessment, source code management validation, infrastructure-as-code evaluation, secrets management, secure coding practices, cloud-native development, containerization, IAM, Okta
Preferred skills
DevSecOps, Okta, IAM
Technologies
GitHub, Jenkins, Azure DevOps, GitHub Actions, Azure, Docker, Kubernetes
Responsibilities
Perform technical assessments of SDLC processes including code deployment and automated testing; Review and validate controls around source code management, build automation, and release management; Evaluate the use of infrastructure-as-code, containerization, and cloud-native development practices; Assess the effectiveness of security controls embedded in the SDLC and secrets management; Collaborate with engineering and DevOps teams to identify control gaps and recommend improvements; Support assurance work by collecting evidence and preparing working papers
Seniority
Associate, hands-on IC