Job Description
About the Role:
We are seeking an experienced DevSecOps Engineer who is passionate about automation, secure infrastructure, and building highly compliant, cloud-native platforms. You will take ownership of designing and managing secure, scalable infrastructure for our healthcare SaaS platform deployed in Azure.
This is a hands-on, high-impact role that requires deep experience in DevOps automation, infrastructure as code (IaC), and cloud security best practices. You'll work closely with engineering, security, and compliance teams to ensure our environments are secure, scalable, and auditable.
Required Technical Skill Set
- Strong expertise in Azure infrastructure (VMs, networking, firewalls, RBAC, PIM, NSGs, Azure Monitor, Private Endpoints).
- Expert-level knowledge of Infrastructure as Code (IaC) using Terraform (must be able to build and manage complete infra).
- Experience with CI/CD automation tools: Azure DevOps Pipelines (YAML), GitHub Actions.
- Solid experience with secure Docker containerization and deployment.
- Deep understanding of DevSecOps practices (SAST, DAST, container image scanning, secrets management).
- Working knowledge of Azure security services: Microsoft Defender for Cloud, Sentinel (SIEM), Azure Key Vault.
- Comfortable writing automation scripts (PowerShell, Bash, or Python preferred).
- Exposure to network security architecture in cloud environments (subnetting, firewalls, DNS, load balancers).
- Ability to implement compliance controls for HIPAA / SOC 2 (access logs, audit trails, encryption, retention policies).
Key Responsibilities:
Infrastructure & Cloud Automation (IaC-first mindset)
- Design and provision infrastructure (VMs, containers, networking, firewalls) using Terraform / ARM Templates.
- Build fully automated infrastructure pipelines in Azure DevOps or GitHub Actions.
- Ensure environments are consistent, repeatable, and version-controlled (GitOps principles).
- Implement automated hardening, secrets rotation, and audit logging.
Secure CI/CD Engineering
- Design & maintain CI/CD pipelines for infrastructure and applications with a focus on security and reliability.
- Integrate security testing (SAST, DAST, container scans) into every pipeline.
- Drive secure deployment practices including blue-green, canary deployments, and zero-downtime releases.
Cloud Infrastructure & Security Ownership
- Set up and manage secure Azure environments including network segmentation, NSGs, private endpoints, firewalls, and PIM/RBAC.
- Implement security telemetry and threat detection using Microsoft Defender and Microsoft Sentinel (SIEM).
- Build monitoring dashboards and alerting systems using Azure Monitor / Application Insights.
Security & Compliance (HIPAA / SOC 2)
- Collaborate with compliance teams to implement HIPAA & SOC 2 controls across cloud and DevOps.
- Drive infrastructure-level audit logging, encryption, access control, and business continuity features.
- Prepare for and support security audits, risk assessments, and policy enforcement.
Ideal Candidate Profile
- 5 - 7 years in a DevOps / Cloud Security role.
- Hands-on with Azure DevOps, Terraform, Docker, and Azure security controls.
- Experience with CI/CD automation (YAML Pipelines, GitHub Actions).
- Deep understanding of cloud networking and IAM (RBAC, Entra ID, PIM).
- Strong knowledge of security best practices in regulated industries (HIPAA/SOC 2)
Job Classification
Industry: IT Services & Consulting
Functional Area / Department: IT & Information Security
Role Category: IT Infrastructure Services
Role: IT Infrastructure Services - Other
Employement Type: Full time
Contact Details:
Company: Intellih Analytics
Location(s): Kolkata
Keyskills:
Terraform
Azure infrastructure
Docker containerization
automation scripts
Infrastructure as Code
DevSecOps
CI/CD automation
HIPAA / SOC 2