DevSecOps Engineer
CIED Group is looking for a DevSecOps Engineer to own infrastructure, deployment, and security across our products, including RightOrigins and RightData. We run a mix of AWS, DigitalOcean, and Azure, with Django, DRF, Postgres, and Celery at the core, plus a growing set of containerized and serverless services supporting our RAG and multi agent workloads. This role researches and chooses the right tools and infrastructure patterns as we scale, builds and runs what gets chosen, and owns the security posture of our systems end to end, including scanning, vulnerability management, and coordination of external audits and assessments.
Key Responsibilities
- Research, evaluate, and recommend infrastructure and tooling choices as our systems scale, and take ownership once a direction is chosen
- Design and maintain CI/CD pipelines using Jenkins and self hosted GitLab CI
- Own and evolve infrastructure across AWS, DigitalOcean, and Azure, including networking, IAM, and service configuration
- Manage infrastructure as code using Terraform and Ansible across services and environments
- Work with containerized deployments and orchestration, including Kubernetes and serverless container services
- Design scaling strategies suited to variable and bursty workloads, including services that need to scale down to nothing when idle
- Own container and dependency scanning as part of the CI/CD pipeline, and drive remediation of findings
- Implement and maintain SAST and DAST practices across the codebase and running services
- Coordinate and manage VAPT engagements with external vendors, from scoping through remediation tracking
- Own access control and secrets management across environments, including tools like Teleport
- Monitor system performance, cost, reliability, and security posture, and proactively flag where changes are needed
- Work with backend and architecture teams to turn system requirements into concrete infrastructure and security decisions
- Set up and maintain logging, metrics, tracing, and security monitoring across services, including agent based workloads
- Support compliance related work, such as responding to client security questionnaires and maintaining evidence for certifications like ISO 27001
- Write and maintain documentation, runbooks, and infrastructure and security diagrams for the team
- Keep up with new tooling and practices across DevOps and security, and bring in what's actually useful
Required Qualifications
Experience
- 4+ years in DevOps, SRE, infrastructure, or security engineering, with real ownership of both infrastructure and security responsibilities
- Hands on experience running infrastructure across AWS and at least one other cloud (DigitalOcean or Azure)
- Experience with containerized and serverless deployments
- Experience with infrastructure as code, ideally Terraform and Ansible
- Experience building CI/CD pipelines with tools like Jenkins or GitLab CI
- Experience running container and dependency scanning in a CI/CD pipeline and acting on results
- Experience with SAST and DAST tooling and practices
- Experience coordinating or directly conducting VAPT, including working with external security vendors
Technical Competencies
- Comfortable with container orchestration, particularly Kubernetes
- Solid grasp of core cloud services across networking, IAM, storage, and compute
- Understanding of asynchronous task processing and how it shapes infrastructure decisions
- Experience with monitoring and observability tools
- Working knowledge of access management and secrets management tooling
- Able to independently weigh tooling and vendor options and make calls that account for cost, scale, and security risk
- Comfortable interpreting security findings and prioritizing remediation based on real risk, not just severity labels
Preferred Qualifications
- Experience supporting infrastructure for AI or agent based systems
- Experience supporting ISO 27001 or similar compliance frameworks
- Experience responding to client facing security or due diligence questionnaires
- Enough familiarity with Django based systems to reason about how application workloads map to infrastructure and security decisions
Scope of Role
This role owns infrastructure, deployment, and security decisions across CIED Group's products. It works closely with the Senior Architect on system design and with backend teams on deployment needs, and it is the primary owner of security posture, including scanning, vulnerability management, and external audit coordination. This is a hands on role, not an advisory one.
Who we are:
At CIED Group, we are on a mission to make the global food supply chain more efficient, intelligent and transparent. We design technologies that build data trust and drive productivity across the agri-food supply chain, from the farm to the consumer's plate.
Our flagship product, RightOrigins, is an agentic AI platform that drives automation throughout the supply chain workflows. We also provide traceability services and build custom audit management tools for food certification bodies, simplifying regulatory compliance and audit inspection processes with a digital, collaborative approach.
At CIED Group, every idea is built around one core belief: when data drives credibility, trust follows naturally.
What we offer:
● Friendly environment
● Chance to own responsibility and demonstrate accountability
● Chance to develop innovative skills & ideas
● Company parties, team events and the opportunity to work with great colleagues from all over the world
● Medical Insurance
Industry: IT
Employment Type: Full-time
Location: Remote
Job Details
Salary
₹100,000 – ₹125,000/yr
Experience
Mid · 4+ yrs