DevSecOps Engineer
We are looking for a DevSecOps Engineer (Lead level) to establish and manage the CI/CD infrastructure and DevSecOps practices for a large-scale ESB-to-AWS-native migration. The role involves building automated pipelines using Bitbucket, AWS CodeBuild, CodePipeline, ECR, and ArgoCD to deploy Apache Camel routes on EKS, Lambda functions, Step Functions, CDK stacks, and EventBridge configurations across environments. The candidate will embed security scanning, vulnerability assessment, and compliance checks into the pipeline. Experience with containerized deployments on EKS, GitOps (ArgoCD), and AWS-native CI/CD tooling is essential.
At Zensar, we're "experience-led everything". We are committed to conceptualizing, designing, engineering, marketing, and managing digital solutions and experiences for over 130 leading enterprises. We are a company driven by a bold purpose: Together, we shape experiences for better futures. Whether for our clients, our people, or the world around us, this belief powers everything we do. At the heart of our culture is ONE with Client - a set of four core values that reflect who we are and how we work: One Zensar, Nurturing, Empowering, and Client Focus.Part of the $4.8 billion RPG Group, we're a community of 10,000+ innovators across 30+ global locations, including Milpitas, Seattle, Princeton, Cape Town, London, Zurich, Singapore, and Mexico City. Explore Life at Zensar and join us to Grow. Own. Achieve. Learn. to be the best version of yourself.
We believe the best work happens when individuality is celebrated, growth is encouraged, and well-being is prioritized. We are an equal employment opportunity (EEO) and affirmative action employer, committed to creating an inclusive workplace. All qualified applicants will be considered without regard to race, creed, color, ancestry, religion, sex, national origin, citizenship, age, sexual orientation, gender identity, disability, marital status, family medical leave status, or protected veteran status.
Required Skills & Competencies
8-12 years of IT experience with at least 4-5 years in DevOps/DevSecOps roles on AWS
Strong hands-on experience with AWS CI/CD services
Experience with GitOps and ArgoCD for Kubernetes (EKS) deployments
Proficiency with AWS CDK or CloudFormation for Infrastructure as Code
Experience with container orchestration on Amazon EKS (Docker, Kubernetes, Helm)
Knowledge of security tooling: AWS Inspector, Secrets Manager, ACM, KMS, IAM policies
Experience with Bitbucket/GitHub for source control and branching strategies
Good-to-Have
Familiarity with Apache Camel / Spring Boot deployment pipelines
Exposure to AWS Service Catalog and Audit Manager
AWS DevOps Engineer Professional certification
Qualifications
Bachelor's degree in Computer Science or related field
CI/CD Pipeline Design & Implementation
Build and maintain CI/CD pipelines using Bitbucket CodeBuild CodePipeline ECR ArgoCD for EKS-based Camel/Spring Boot deployments.
Automate deployment of CDK stacks for API Gateway, EventBridge, SQS, S3, Transfer Family, and Lambda resources.
Enable multi-environment promotion with gated approvals.
Security & Compliance Integration
Integrate AWS Inspector for container vulnerability scanning and dependency checks.
Implement secrets management (AWS Secrets Manager), certificate management (ACM Public/Private CA for mTLS), and KMS encryption.
Enforce IAM least-privilege policies and security guardrails across all deployment pipelines.
Infrastructure as Code & Drift Detection
Manage AWS CDK stacks for all infrastructure provisioning - ensure version-controlled, repeatable deployments.
Implement AWS Config drift detection to prevent configuration inconsistencies across environments.
Platform Operations & Observability
Set up pipeline monitoring and alerting using CloudWatch metrics and alarms.
Support integration of OpenTelemetry instrumentation into build pipelines for automated observability setup.