Assurity Trusted Solutions (ATS) is a wholly owned subsidiary of the Government Technology Agency (GovTech). As a Trusted Partner over the last decade, ATS offers a comprehensive suite of products and services ranging from infrastructure and operational services, authentication services, governance and assurance services as well as managed processes. In a dynamic digital and cyber landscape, where trust & collaboration are key, ATS continues to drive mutually beneficial business outcomes through collaboration with GovTech, government agencies and commercial partners to mitigate cyber risks and bolster security postures.
We are looking for a DevSecOps Engineer to join us!
Role and Responsibilities:
- Design, implement, and manage CI/CD pipelines using GitLab to support continuous integration, delivery, and deployment.
- Develop and maintain automated scripts and tools to enhance DevSecOps processes including SCA (Software Composition Analysis) and container scanning.
- Manage and optimize AWS services including ECS, ECR, Aurora, WAF, Network Firewall, Transit Gateway, ALB, and NLB to ensure secure and efficient cloud infrastructure.
- Implement security best practices in cloud environments, focusing on identity management, logging, monitoring, and incident response.
- Collaborate with development and operations teams to promote a security-first mindset and embed security practices throughout the software development lifecycle.
- Conduct regular security assessments, vulnerability scans, and penetration tests to identify and remediate security weaknesses.
- Monitor and respond to security incidents and anomalies in real-time, providing analysis and recommendations for corrective actions.
- Stay up-to-date with the latest security trends, vulnerabilities, and technologies to ensure robust defenses against potential threats.
- Good to Have: Knowledge in MS Entra, MS Graph API, Node.js, MongoDB, and AWS Lambda (Python Serverless).
Qualifications:
- Education: Bachelor’s degree in Computer Science, Information Technology, or a related field.
- Experience:
- 2+ years of proven experience in DevSecOps and/or Cloud Services management and deployment, with a strong focus on AWS and/or Azure services.
- Hands-on experience with GitLab CI/CD pipelines.
- Experience with security tools and practices including SCA, container scanning, and penetration testing.
- Good to Have: Experience with GCC-2.0.
Skills:
- Proficiency in managing AWS services (ECS, ECR, Aurora, WAF, Network Firewall, Transit Gateway, ALB, NLB).
- Strong scripting skills (Python, Bash, etc.) for automation.
- Familiarity with containerization technologies (Docker, Kubernetes).
- Excellent understanding of security principles and best practices.
- Strong problem-solving skills and attention to detail.
- Excellent communication and teamwork skills.
Preferred Qualifications:
- Certifications:
- Required: Associate-level AWS certifications (e.g., AWS Certified SysOps Administrator, AWS Certified Developer).
- Good to have: Azure certifications (e.g., SC-300, AZ-104).
- Additional Experience:
- Experience with Infrastructure as Code (IaC) tools such as Terraform or CloudFormation.
- Background in software development with knowledge of secure coding practices.
- Soft Skills:
- Ability to thrive in a fast-paced, agile environment.
Proven track record of proactive problem-solving and innovation.
Requirements:
- Comfortable with a 5-year direct contract (with perm benefits)
- At least 5 years of experience in the above domain areas
Join us and discover a meaningful and exciting career with Assurity Trusted Solutions!
The remuneration package will commensurate with your qualifications and experience.
We thank you for your interest and please note that only shortlisted candidates will be notified.
By submitting your application, you agree that your personal data may be collected, used and disclosed by Assurity Trusted Solutions Pte. Ltd. (ATS), GovTech and their service providers and agents in accordance with ATS's privacy statement which can be found at: https://www.assurity.sg/privacy.html or such other successor site.
Benefits
- A wholly-owned subsidiary of GovTech.
- We promote a learning culture and encourage you to grow and learn.
- A competency framework is in place to help you grow your career with us.