Senior DevSecOps & Observability Engineer
johnsoncontrols
Job Description
- DevSecOps Strategy & Implementation: Drive adoption of DevSecOps culture, embedding security into CI/CD pipelines and development workflows.
- CI/CD Automation: Design, implement, and maintain pipelines using Jenkins, Azure DevOps, TeamCity, and Octopus Deploy.
- Cloud Infrastructure Management: Provision and manage resources on AWS and Azure using Infrastructure-as-Code tools (Terraform, CloudFormation, ARM templates).
- Deployment Expertise: Deploy applications on Virtual Machines (VMs), Azure App Services, and containerized environments (Docker, Kubernetes/OpenShift).
- Observability & Monitoring: Implement and manage observability solutions using Dynatrace, Splunk, Datadog, AWS CloudWatch, and Azure Monitor/Insights.
- Security & Compliance: Integrate security scanning tools (SAST, DAST, container security) into pipelines; ensure compliance with industry standards.
- Collaboration: Work closely with development teams to ensure secure, reliable, and automated delivery of applications.
- Incident Response & Performance Optimization: Monitor system health, troubleshoot issues, and optimize performance across environments.
Required Skills:
- Strong experience in DevSecOps methodologies, automation, and secure SDLC practices.
- Hands-on expertise with CI/CD tools: Jenkins, Azure DevOps (Pipelines), TeamCity, Octopus Deploy.
- Cloud platforms: AWS and Azure, including networking, security groups, and resource provisioning.
- Infrastructure-as-Code: Terraform, AWS CloudFormation, Azure ARM templates.
- Deployment knowledge across VMs, App Services, and Containers.
- Observability tools: Dynatrace, Splunk, Datadog, Azure Monitor.
- Scripting: Shell, PowerShell, Python.
- Familiarity with Agile Scrum and tools like JIRA.