MoneyMul Technologies Private Limited is Hiring SecDevOps Engineer

Job Description
MoneyMul Technologies is building scalable and secure cloud-native solutions that support enterprise-grade applications and digital platforms. Our Cloud Center of Excellence (CCoE) focuses on delivering secure, automated, and compliant infrastructure practices while enabling engineering teams to innovate rapidly.
We work with leading enterprise customers and support large-scale systems used by millions of users globally.
About the Role
We are looking for a highly motivated SecDevOps Engineer to join our Cloud Center of Excellence team. In this role, you will bridge the gap between security, DevOps, and cloud infrastructure by building secure-by-design CI/CD systems, automating security practices, and improving the overall security posture of cloud-native environments.
You will work closely with development, operations, and security teams to integrate automated security controls without slowing down engineering productivity.
Key Responsibilities
Secure CI/CD & DevSecOps
- Design and maintain secure CI/CD pipelines using Jenkins, GitLab CI, or GitHub Actions
- Integrate automated security testing tools such as SAST, DAST, and SCA into deployment workflows
- Implement security validation processes using tools like SonarQube, OWASP ZAP, Trivy, and Snyk
- Support shift-left security practices across development and deployment lifecycles
Infrastructure & Cloud Security
- Manage Infrastructure as Code (IaC) using Terraform and Ansible
- Implement secure infrastructure patterns and compliance-focused configurations
- Harden cloud infrastructure environments across AWS, Azure, or GCP
- Configure and audit IAM policies, VPCs, security groups, and access controls
Container & Kubernetes Security
- Secure Docker containers and Kubernetes clusters in production environments
- Implement image scanning, runtime security policies, and container hardening practices
- Improve Kubernetes security posture through policy enforcement and operational controls
Vulnerability Management & Incident Response
- Monitor, scan, and remediate infrastructure and application vulnerabilities
- Collaborate with development teams to address security findings and CVEs
- Participate in incident response, root cause analysis, and security investigations
- Improve monitoring, alerting, and operational security visibility
Compliance & Governance
- Support compliance initiatives related to SOC2, ISO 27001, GDPR, and similar standards
- Assist with technical audits and security assessments
- Maintain security documentation, operational procedures, and engineering standards
Why Join MoneyMul Technologies?
- Work on large-scale enterprise platforms used by millions of users
- Collaborate directly with leadership and founding teams
- Exposure to modern DevSecOps and cloud-native security practices
- Opportunity to work with advanced AI-driven engineering workflows
- Fast-paced startup culture with continuous learning opportunities
- Comprehensive health and wellness benefits
- Strong focus on professional development and technical growth
Requirements
- 2-5+ years of experience in DevOps, DevSecOps, Cloud Security, or Infrastructure Engineering roles
- Strong hands-on experience with CI/CD tools such as Jenkins, GitLab CI, or GitHub Actions
- Practical experience with security scanning tools including SonarQube, Trivy, OWASP ZAP, Snyk, or Burp Suite
- Strong understanding of cloud security concepts across AWS, Azure, or Google Cloud Platform
- Experience configuring IAM policies, VPCs, security groups, and access controls
- Hands-on experience securing Docker containers and Kubernetes clusters
- Proficiency in scripting languages such as Python, Bash, or Go
- Familiarity with Infrastructure as Code tools like Terraform or Ansible
- Strong understanding of OWASP Top 10 vulnerabilities and mitigation strategies
- Experience with vulnerability management and remediation workflows
- Knowledge of monitoring, logging, and SIEM tools such as Splunk, ELK Stack, or Wazuh is a plus
- Familiarity with Policy as Code tools like Open Policy Agent (OPA) or Sentinel is an advantage
- Basic understanding of compliance frameworks such as HIPAA, PCI-DSS, GDPR, or SOC2
- Strong analytical, troubleshooting, and communication skills
- Ability to work collaboratively in fast-paced cloud engineering environments
- DevSecOps or security-related certifications are a plus