DevSecOps Engineer - A26208
ExternalPrepare for this interview
EliteAI-generated questions, company research, and talking points tailored to this role
About the role
Activate Interactive Pte Ltd ("Activate") is a leading technology consultancy headquartered in Singapore with a presence in Malaysia and Indonesia. Our clients are empowered with quality, cost-effective, and impactful end-to-end application development, like mobile and web applications, and cloud technology that remove technology roadblocks and increase their business efficiency. We believe in positively impacting the lives of people around us and the environment we live in through the use of technology. Hence, we are committed to providing a conducive environment for all employees to realize their full potential, who in turn have the opportunity to continuously drive innovation. We are searching for our next team members to join our growing team. If you love the idea of being part of a growing company with exciting prospects in mobile and web technologies that create positive impact on people's lives, then we would love to hear from you. This is a 12 months fixed term contract role. What will you do? We are seeking an experienced DevSecOps with Observability Engineer to join our team and drive the implementation of secure, scalable, and comprehensively observable cloud infrastructure. The successful candidate will be responsible for building and maintaining CI/CD pipelines, implementing security controls throughout the development lifecycle, and establishing enterprise-grade observability practices that provide deep insights into system performance, security posture, and operational health across our entire technology stack. Infrastructure & Cloud Management Design, implement, and maintain cloud infrastructure on AWS using Infrastructure as Code principles. Manage containerized applications using Amazon EKS and ensure optimal performance, security, and cost efficiency. Collaborate with development teams to architect scalable solutions that meet both functional and non-functional requirements whilst embedding observability from the ground up. Security Controls Implementation Implement and maintain security controls throughout the development lifecycle, from code commit to production deployment. Integrate automated security testing, static and dynamic code analysis, and vulnerability scanning into CI/CD pipelines. Establish security gates and approval processes that prevent vulnerable code from reaching production environments. Develop and enforce security policies for container images, infrastructure configurations, and application deployments with comprehensive security observability. Advanced Monitoring & Observability Design and implement enterprise-grade observability solutions using ELK Stack or Prometheus-Grafana to provide comprehensive insights into system performance, security events, and operational health. Architect distributed tracing solutions using OpenTelemetry to monitor application performance across complex microservices architectures and troubleshoot issues with precision. Create sophisticated dashboards, alerts, and reporting mechanisms that provide actionable insights to stakeholders whilst ensuring security events, performance anomalies, and operational issues are proactively identified and investigated. Implement observability-driven incident response and post-mortem processes. CI/CD Pipeline Management Build, maintain, and optimise CI/CD pipelines using GitLab Runners to enable rapid, reliable, and secure software delivery. Embed security controls and observability instrumentation at every stage of the pipeline including pre-commit hooks, automated security testing, compliance checks, and deployment validation. Implement automated testing, security scanning, and deployment processes that support continuous integration and deployment practices whilst maintaining zero-trust security principles and comprehensive pipeline observability. Infrastructure as Code & Policy as Code Implementation Leverage Infrastructure as Code tools, particularly Terraform, to automate infrastructure provisioning and management with built-in security controls, compliance checks, and observability instrumentation. Implement Policy as Code frameworks to codify governance, compliance, and security policies that are automatically enforced across all infrastructure deployments. Develop custom automation scripts and tools to streamline operational processes whilst ensuring security standards and observability requirements are maintained. Integrate and utilize GenAI-based coding agents to enhance development productivity and code quality, implementing appropriate security guardrails and observability for AI-assisted development. Observability Strategy & Implementation Develop and execute comprehensive observability strategies that encompass metrics, logs, traces, and events across the entire application and infrastructure stack. Implement service level objectives (SLOs) and service level indicators (SLIs) to measure and improve system reliability. Design and maintain observability platforms that support real-time mo
Your Match
How well this role fits your profile.
Company Intel
What employees say
Worked at Activate Interactive Pte Ltd? Share your experience