Senior DevSecOps Engineer

Reposted 9 Days Ago
Be an Early Applicant
Singapore
In-Office
Senior level
Information Technology
The Role
The Senior DevSecOps Engineer will enhance security in CI/CD pipelines, automate security policies, manage cloud infrastructure, and support incident response processes, collaborating closely with clients and teams.
Summary Generated by Built In

Founded in Switzerland in 1968, Zühlke is owned by its partners and located across Europe and Asia. We are a global transformation partner, with engineering and innovation in our DNA. We're trusted to help clients envision and build their businesses for the future – to run smarter today while adapting for tomorrow’s markets, customers, and communities. Our multidisciplinary teams specialise in tech strategy and business innovation, digital solutions and applications, and device and systems engineering. We excel in complex, regulated spaces including health and finance, connecting strategy, tech implementation, and operational services to help clients become more effective, resilient businesses.

 

If you share our values and want to do the best work, for the right reasons, we can offer you the chance to do it on a global scale and play a real role in shaping our exciting journey.

The role. 

We are looking for an engaged and passionate DevOps (DevSecOps Focused) Engineer who is excited by the opportunity to help build systems for our clients while being an important part of our fast-growing Singapore office. At Zuhlke Singapore, we take on innovative projects across many industries and you’ll play a critical role in working closely with clients to develop, test, ship, and run software that meets their needs. You will contribute to the success of our clients while also rapidly learning and further developing your own skills.  

 

DevSecOps / Security Enablement 

 

  • Embed security controls in CI/CD pipelines (e.g., SAST, DAST, dependency checks, container scans). 

  • Automate enforcement of security policies (e.g., secret detection, SBOM generation, license policy gates). 

  • Collaborate with DOE Lead and CISO to implement compliance controls (NIST, GovTech standards).Integrate tools like SonarQube, Trivy, Snyk, Checkov, or custom scanners into pipelines. 

  • Maintain infrastructure hardening and secure baseline templates (e.g., CIS benchmarks, AMI/Container baselines). 

  • Co-own audit and logging configurations (e.g., CloudTrail, Security Hub, WAF logs, GuardDuty alerts). 

 

Cloud Infrastructure & CICD Operations 

  • Maintain and improve secure, automated CI/CD pipelines. 

  • Define IaC security validation steps (e.g., Terraform policy-as-code with OPA or Checkov).

  • Implement backup, DR, and secrets management workflows in alignment with platformguardrails. 

  • Support runtime observability with secure logging and alerting pipelines (e.g., ELK/Opensearch, Prometheus, Grafana).

Day 2 Operations Collaboration 

  • Support vulnerability triage and incident response processes. 

  • Maintain operational runbooks with security context for SRE rotations. 

  • Contribute to secure service rollout (mTLS, ALB/NLB policies, header validations, etc.). 

  • Collaborate to address hardening gaps in Day 2 operations. 

 

 

What’s important to us. 

  • At least 3 years of combined DevOps/Security Engineering experience. 

  • Hands-on experience in securing AWS cloud infrastructure (IAM, KMS, GuardDuty, WAF). 

  • Hands-on experience in commercial security tools (Next GEN Firewalls, Database Activity Monitoring). 

  • Proven experience integrating security checks into GitOps / CI pipelines (e.g., GitLab CI, GitHub Actions, Jenkins). 

  • Solid experience with container security: Docker image scanning, Kubernetes RBAC, admission controllers. 

  • Proficiency in scripting (Bash, Python, or similar) for automation. 

  • Familiarity with compliance requirements: NIST 80053, CIS benchmarks. 

  • Strong diagnostic skills, especially in cloud networking, TLS configurations, and log analysis. 

  • Experience with IaC (Terraform/Helm), GitOps, and configuration management. 

  • Bonus: Experience conducting or responding to security audits or VAPT findings. 

 

What we offer 

  • Work life blend: we offer a safe & healthy workplace, with flexible working hours and the possibility to work from home 

  • Profit share scheme: In addition to your annual salary, you may receive a profit share defined by the company’s success in the previous year 

  • Global and Diverse Zühlke community: witness how colleagues from all our 17 offices across the globe come together to create a unique, positive and inclusive work culture, learning from one another at annual team camps, and celebrating year-end parties and other local festivities. 

  • Committed to development: we are committed to the growth of our people and are investing in your development. We’re empowering you to build the skills you need to make a positive impact, both personally and for our clients, today and in the future. 

 

If you feel you don't meet all the requirements, we are still happy to get to know you, learn more about your ambitions and ideas and look forward to receiving your application!  

We welcome people from all backgrounds, regardless of their gender, personality, national origin, race, religion, colour, sexual orientation, gender identity, age, marital status, disability or veteran status.

Top Skills

AWS
Bash
Checkov
Docker
Elk
Github Actions
Gitlab Ci
Gitops
Grafana
Guardduty
Iam
Jenkins
Kms
Kubernetes
Prometheus
Python
Snyk
Sonarqube
Terraform
Trivy
Waf
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Schlieren
1,627 Employees
Year Founded: 1968

What We Do

Zühlke is a global transformation partner, with engineering and innovation in our DNA. We're trusted to help clients envision and build their businesses for the future – to run smarter today while adapting for tomorrow’s markets, customers, and communities.

Our multidisciplinary teams specialise in tech strategy and business innovation, digital solutions and applications, and device and systems engineering. We excel in complex, regulated spaces including health and finance, connecting strategy, tech implementation, and operational services to help clients become more effective, resilient businesses.

Founded in Switzerland in 1968, Zühlke is owned by its partners and located across Europe and Asia. Our venture capital arm, Zühlke Ventures, provides start-up financing in HealthTech.

Imprint: https://www.zuehlke.com/en/imprint

Similar Jobs

Airwallex Logo Airwallex

Software Engineer

Artificial Intelligence • Fintech • Payments • Financial Services • Generative AI
In-Office
Singapore, SGP
1800 Employees

Motorola Solutions Logo Motorola Solutions

Sales Executive

Artificial Intelligence • Hardware • Information Technology • Security • Software • Cybersecurity • Big Data Analytics
Hybrid
Singapore, SGP
21000 Employees

ServiceNow Logo ServiceNow

Architect

Artificial Intelligence • Cloud • HR Tech • Information Technology • Productivity • Software • Automation
Remote or Hybrid
Singapore, SGP
28000 Employees
Hybrid
Singapore, SGP
289097 Employees

Similar Companies Hiring

Axle Health Thumbnail
Logistics • Information Technology • Healthtech • Artificial Intelligence
Santa Monica, CA
17 Employees
Scrunch AI Thumbnail
Software • SEO • Marketing Tech • Information Technology • Artificial Intelligence
Salt Lake City, Utah
Standard Template Labs Thumbnail
Software • Information Technology • Artificial Intelligence
New York, NY
10 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account