Managed Services CMS_ Senior Associate (Sr. Analyst) - DevSecOps
PwC
Job Description
Essential Functions
- Infrastructure Management: Design, implement, and manage scalable, secure, and reliable cloud infrastructure using Azure service
- Continuous Integration/Continuous Deployment (CI/CD): Develop and maintain CI/CD pipelines using GitHub Actions to automate the build, test, deployment, and security scanning processes.
- Monitoring and Logging: Manage monitoring, logging, and alerting systems to ensure high availability, performance, and security of applications.
- Collaboration: Work closely with development, QA, security, and operations teams to ensure smooth integration, delivery, and security of software solutions.
- Security: Implement security standards and regulations in the DevOps processes, ensuring compliance with industry standards and regulations. This includes integrating security tools and practices into the CI/CD pipelines, assisting with regular security assessments, and addressing vulnerabilities.
- Documentation: Create and maintain comprehensive documentation for infrastructure, CI/CD pipelines, security measures, and operational procedures.
Minimum Requirements
- Experience: Minimum of four years of experience in a DevOps or DevSecOps role with a focus on Azure, GitHub DevOps practices, and Terraform from a secure infrastructure mind-set.
- Certifications in Azure (e.g., Microsoft Certified: Azure DevOps Engineer Associate, Microsoft Certified: Azure Administrator Associate.)
- Two years of experience with Terraform in an Azure environment or Operational support of Azure resources through Terraform.
- Familiarity with agile methodologies and practices.
- Understanding of networking concepts and security best practices in a cloud environment.
- Knowledge of monitoring and logging tools like Azure Monitor, Prometheus, Grafana, and ELK stack.
- Expertise in scripting languages such as PowerShell, Bash, Python, or GO.
- Experience with security tools and practices, such as static code analysis, vulnerability scanning, and incident response.
- Proficiency with DevOps and Azure services including GitHub Enterprise, Azure Kubernetes Service (AKS), and Infrastructure as Code with Terraform in Azure.
- Strong experience with GitHub Enterprise; specifically in GitHub Actions/Workflows.
- Hands-on experience with containerization and orchestration tools such as Docker and Kubernetes.