Capgemini
Senior Software Engineer - GCP DevSecOps Engineer
Capgemini, Atlanta, Georgia, United States, 30383
Technical Skills
Linux system administration and security/hardening practices
Hands‑on experience with Cloud Access Security Broker (CASB) and Data Activity Monitoring
Familiarity with security tooling such as GuardDuty, SecurityHub, IAM
Understanding of DevOps, GitOps CI/CD implementation into the cloud using technologies such as Cloud Build, Jenkins, Tekton, and flux
Experience in continuous integration build tools such as SonarQube, JIRA, Nexus, Confluence, GIT, Bitbucket, Maven, Gradle, RunDeck
Experience setting up ingress, cloud load‑balancers, nginx traffic routing
Experience with setting up bare‑metal Kubernetes
Blue‑green and canary deployment
Experience with database upgrades in the cloud environment
Understanding of packaging with Helm charts
Experience with Grafana, dashboard and other system health visualization tools
Experience setting up container registry
Knowledge of Hashicorp Vault, GCP secrets manager
Containerization technologies such as Kubernetes, GKE
3+ years proven ability to work creatively and analytically in a problem‑solving environment
Familiarity with a minimum of 1 scripting language (Ruby/Python/Perl/Bash)
Familiarity with IaC tools such as Terraform
Excellent leadership, communication (written and oral) and interpersonal skills
1+ year GCP cloud platforms experience required; desirable to have cloud migrations experience
Understanding of DR and scalability, HA architecture
Preferred
IAM Recommenders
Knowledge of security scanner tools on IaC
Certified Kubernetes Security Specialist (CKS) certification from the CNCF
Understanding of the NIST cybersecurity framework
CISSP/CCSP or equivalent security certification is a plus
Familiarity with security and reporting frameworks, e.g., HITRUST, SOC2, NIST, a plus
Responsibilities
Secure cloud‑based servers (mainly Linux) based on prescriptive frameworks and compliance requirements
Incorporate security, compliance, and governance requirements into code and infrastructure pipelines
Apply DevOps automation principles and capabilities to manual and repetitive tasks
Review and plan infrastructure changes and new builds to comply with security requirements
Participate in incident response, triage, and investigation/remediation of infrastructure issues
Update and maintain documentation, audit trails, and artifacts relevant to security and compliance posture of the company
Assist in updating and maintaining documentation, audit trails, and artifacts relevant to the security and compliance posture of our application portfolio
Candidates should be flexible / willing to work across this delivery landscape which includes and not limited to Agile Applications Development, Support and Deployment.
Applicants for employment in the US must have valid work authorization that does not now and/or will not in the future require sponsorship of a visa for employment authorization in the US by Capgemini.
Qualifications
6-8 years experience (2 years min relevant in the role) and Bachelor’s Degree
Certification: Should have SE Level 1 and seeking Level 2
Proficiency in Business Analysis, Business Knowledge, Software Engineering, Testing, Data Management, Architecture Knowledge, and Technical Solution Design
Capgemini is an Equal Opportunity Employer encouraging diversity in the workplace. All qualified applicants will receive consideration for employment without regard to race, national origin, gender identity/expression, age, religion, disability, sexual orientation, genetics, veteran status, marital status or any other characteristic protected by law.
This is a general description of the duties, responsibilities and qualifications required for this position. Physical, mental, sensory or environmental demands may be referenced in an attempt to communicate the manner in which this position traditionally is performed. Whenever necessary to provide individuals with disabilities an equal employment opportunity, Capgemini will consider reasonable accommodations that might involve varying job requirements and/or changing the way this job is performed, provided that such accommodations do not pose an undue hardship.
#J-18808-Ljbffr
Linux system administration and security/hardening practices
Hands‑on experience with Cloud Access Security Broker (CASB) and Data Activity Monitoring
Familiarity with security tooling such as GuardDuty, SecurityHub, IAM
Understanding of DevOps, GitOps CI/CD implementation into the cloud using technologies such as Cloud Build, Jenkins, Tekton, and flux
Experience in continuous integration build tools such as SonarQube, JIRA, Nexus, Confluence, GIT, Bitbucket, Maven, Gradle, RunDeck
Experience setting up ingress, cloud load‑balancers, nginx traffic routing
Experience with setting up bare‑metal Kubernetes
Blue‑green and canary deployment
Experience with database upgrades in the cloud environment
Understanding of packaging with Helm charts
Experience with Grafana, dashboard and other system health visualization tools
Experience setting up container registry
Knowledge of Hashicorp Vault, GCP secrets manager
Containerization technologies such as Kubernetes, GKE
3+ years proven ability to work creatively and analytically in a problem‑solving environment
Familiarity with a minimum of 1 scripting language (Ruby/Python/Perl/Bash)
Familiarity with IaC tools such as Terraform
Excellent leadership, communication (written and oral) and interpersonal skills
1+ year GCP cloud platforms experience required; desirable to have cloud migrations experience
Understanding of DR and scalability, HA architecture
Preferred
IAM Recommenders
Knowledge of security scanner tools on IaC
Certified Kubernetes Security Specialist (CKS) certification from the CNCF
Understanding of the NIST cybersecurity framework
CISSP/CCSP or equivalent security certification is a plus
Familiarity with security and reporting frameworks, e.g., HITRUST, SOC2, NIST, a plus
Responsibilities
Secure cloud‑based servers (mainly Linux) based on prescriptive frameworks and compliance requirements
Incorporate security, compliance, and governance requirements into code and infrastructure pipelines
Apply DevOps automation principles and capabilities to manual and repetitive tasks
Review and plan infrastructure changes and new builds to comply with security requirements
Participate in incident response, triage, and investigation/remediation of infrastructure issues
Update and maintain documentation, audit trails, and artifacts relevant to security and compliance posture of the company
Assist in updating and maintaining documentation, audit trails, and artifacts relevant to the security and compliance posture of our application portfolio
Candidates should be flexible / willing to work across this delivery landscape which includes and not limited to Agile Applications Development, Support and Deployment.
Applicants for employment in the US must have valid work authorization that does not now and/or will not in the future require sponsorship of a visa for employment authorization in the US by Capgemini.
Qualifications
6-8 years experience (2 years min relevant in the role) and Bachelor’s Degree
Certification: Should have SE Level 1 and seeking Level 2
Proficiency in Business Analysis, Business Knowledge, Software Engineering, Testing, Data Management, Architecture Knowledge, and Technical Solution Design
Capgemini is an Equal Opportunity Employer encouraging diversity in the workplace. All qualified applicants will receive consideration for employment without regard to race, national origin, gender identity/expression, age, religion, disability, sexual orientation, genetics, veteran status, marital status or any other characteristic protected by law.
This is a general description of the duties, responsibilities and qualifications required for this position. Physical, mental, sensory or environmental demands may be referenced in an attempt to communicate the manner in which this position traditionally is performed. Whenever necessary to provide individuals with disabilities an equal employment opportunity, Capgemini will consider reasonable accommodations that might involve varying job requirements and/or changing the way this job is performed, provided that such accommodations do not pose an undue hardship.
#J-18808-Ljbffr