Sr Engineer, Software
TMUS Global Solutions
- Hyderabad, Telangana
- Permanent
- Full-time
- Design, develop, and implement secure cloud infrastructure and automation pipelines across AWS and Azure.
- Build and maintain GitOps-driven workflows for cloud provisioning, configuration, and deployment.
- Develop and maintain golden images (e.g., hardened AMIs, Azure VM templates, container base images) to standardize secure deployments.
- Implement and manage Identity and Access Management (IAM) policies, roles, and federations for secure access control.
- Develop and integrate cloud logging, monitoring, and observability solutions (e.g., CloudWatch, Azure Monitor, ELK, Prometheus).
- Use Ansible for configuration management and automation of cloud and security environments.
- Develop infrastructure as code (IaC) using Terraform for consistent and secure resource provisioning.
- Write automation and tooling scripts in Python and Go to enhance cloud security and operations.
- Collaborate with DevOps, Security, and Application teams to integrate CI/CD and security automation.
- Participate in threat modeling, security assessments, and remediation of vulnerabilities.
- Document architecture, design decisions, and security configurations.
- Mentor junior engineers and foster best practices in cloud security engineering.
- Bachelors degree in computer science, Engineering, or related field.
- 58 years of experience in cloud engineering, DevSecOps, or cloud security roles.
- Strong hands-on experience with AWS and/or Azure services and architectures.
- Proven ability to build, harden, and maintain golden images for servers, containers, and virtual machines.
- Deep knowledge of IAM, security policies, roles, and access automation.
- Proven experience with GitOps, Terraform, and Ansible for cloud provisioning and configuration management.
- Experience building and maintaining cloud monitoring, logging, and alerting frameworks.
- Proficiency in at least one modern programming language (e.g., Python, Go)
- Experience integrating security into CI/CD pipelines and containerized environments (Docker, Kubernetes).
- Strong problem-solving, analytical thinking, and collaboration skills.
- Excellent written and verbal communication skills.
- Cloud security engineering, GitOps, IAM, Terraform, Ansible, CNAPP (e.g., Wiz. Prisma Cloud), Python/Go scripting, Cloud logging & monitoring, golden image creation, and CI/CD integration. APIs, Building and developing , Git based technologies, how to design and build GitOps, Infra as code is a must - Terraform or similar
- Automation scripting - Ansible or similar (creating automation)
- Strong Fundamentals of CNAPP are mandatory
- Experience with policy-as-code and compliance automation frameworks.
- Knowledge of network security principles, including firewalls, VPCs, and service mesh.
- Familiarity with DevSecOps, Zero Trust, and security observability frameworks.
- Exposure to GenAI tools or security automation through machine learning (nice to have).
- Familiarity with CNAPP platforms (e.g., Wiz, Prisma Cloud, Orca, etc.) and CSPM/CWPP principles.