Infosys24d ago
New
New
DevSecOps Application Security Engineer
EngineeringSecurity Engineer
0 views0 saves0 applied
Quick Summary
Requirements Summary
⦁ A collaborative spirit and excellent communication skills.
Technical Tools
EngineeringSecurity Engineer
The Infosys Retail, Consumer Goods, and Logistics unit stands as a globally respected partner of choice, dedicated to helping clients achieve their business goals through cutting-edge technology and seamless services. Our unit offers a dynamic forum where projects and teams can effectively learn, adopt, and excel in all technologies. We foster a vibrant community that leverages shared skills and experiences to deliver high-quality, value-enhanced solutions. Join us and become part of a team that drives innovation, operational efficiency, and sustainable growth in the retail, consumer goods, and logistics sector. Together, we can shape the future of these industries and achieve remarkable success.
In the assigned Job Role of Infrastructure Consultant 2, your Area Of Responsibility will be as below:
⦁ Collaborate with internal and client teams to resolve complex incidents, conduct root cause analyses, and document findings with preventive recommendations
⦁ Participate in evaluation of client IT infrastructure, prepare actionable assessment reports, and support due diligence to document infrastructure maturity and improvement opportunities
⦁ Contribute to the design of scalable, cost-effective IT infrastructure solutions, review reusable components, and develop technical documentation for deployed systems
⦁ Align release schedules and environment readiness, execute deployments as per protocols, perform post-deployment testing, and manage version control to track changes
⦁ Co-ordinate maintenance schedules, emergency fixes, and technology upgrades while ensuring uninterrupted integration into existing systems and processes
⦁ Facilitate performance data analysis across systems, coordinate insights on system behavior, and support capacity planning to optimize performance
⦁ Conduct security checks, recovery drills, and compliance audits, implement security measures, and coordinate continuity plans to maintain adherence to standards
⦁ Gather feedback to identify automation opportunities, analyze existing infrastructure processes, and propose enhancements for efficiency gains
⦁ Act as liaison with onsite, offshore, and vendor teams to document project requirements, ensuring effective collaboration
⦁ Develop a centralized repository of technical and procedural knowledge, leveraging insights from other projects to drive efficiency and retain organizational expertise
Your contribution to the team:
⦁ A collaborative spirit and excellent communication skills.
⦁ Ability to handle complex incidents and implement resolutions
⦁ A knack for conducting IT infrastructure assessment and identifying key optimization opportunities
⦁ Focused approach towards deployment management, system optimization, and process automation initiatives including sector specific focus
⦁ The ability to work with cross-functional teams
⦁ Collaborate with internal and client teams to resolve complex incidents, conduct root cause analyses, and document findings with preventive recommendations
⦁ Participate in evaluation of client IT infrastructure, prepare actionable assessment reports, and support due diligence to document infrastructure maturity and improvement opportunities
⦁ Contribute to the design of scalable, cost-effective IT infrastructure solutions, review reusable components, and develop technical documentation for deployed systems
⦁ Align release schedules and environment readiness, execute deployments as per protocols, perform post-deployment testing, and manage version control to track changes
⦁ Co-ordinate maintenance schedules, emergency fixes, and technology upgrades while ensuring uninterrupted integration into existing systems and processes
⦁ Facilitate performance data analysis across systems, coordinate insights on system behavior, and support capacity planning to optimize performance
⦁ Conduct security checks, recovery drills, and compliance audits, implement security measures, and coordinate continuity plans to maintain adherence to standards
⦁ Gather feedback to identify automation opportunities, analyze existing infrastructure processes, and propose enhancements for efficiency gains
⦁ Act as liaison with onsite, offshore, and vendor teams to document project requirements, ensuring effective collaboration
⦁ Develop a centralized repository of technical and procedural knowledge, leveraging insights from other projects to drive efficiency and retain organizational expertise
Your contribution to the team:
⦁ A collaborative spirit and excellent communication skills.
⦁ Ability to handle complex incidents and implement resolutions
⦁ A knack for conducting IT infrastructure assessment and identifying key optimization opportunities
⦁ Focused approach towards deployment management, system optimization, and process automation initiatives including sector specific focus
⦁ The ability to work with cross-functional teams
Requirements
~2 min read
• Application Security Testing: Conduct SAST/SCA using GHAS and DAST using Burp Suite; validate and classify vulnerabilities aligned with OWASP.
• DevSecOps & Integration: Integrate GHAS into CI/CD, automate scans across SDLC, configure policies, reduce false positives, and enable shift-left security with development teams.
• Vulnerability Management: Analyze findings, provide remediation guidance, track vulnerabilities through lifecycle, and support risk-based prioritization.
• Reporting & Stakeholder Management: Prepare technical and executive reports, communicate findings with stakeholders, and support audits, compliance, and AppSec initiatives. • Security Advisory & Review: Conduct secure code reviews and architecture level assessments; Coordinate with development teams on secure coding and mitigation strategies.
• Knowledge Of: SDLC and DevSecOps practices, microservices/API/cloud security, strong analytical/problem-solving skills, and stakeholder communication/consulting experience.
Good to Have:
• Exposure to SAST (Fortify, SonarQube), DAST (Netsparker, Fortify on Demand), and SCA (BlackDuck, Dependabot) tools
• Certifications: CEH, OSCP, GWAPT, CSSLP, CISSP
• Experience in threat modeling and architecture reviews • Bachelor’s degree or foreign equivalent required from an accredited institution. Will also consider three years of progressive experience in the specialty in lieu of every year of education.
• This position may require relocation and/or travel to work/project location.
• Candidates authorized to work for any employer in the United States without employer-based visa sponsorship are welcome to apply. Infosys is unable to provide immigration sponsorship for this role now or in the future.
• DevSecOps & Integration: Integrate GHAS into CI/CD, automate scans across SDLC, configure policies, reduce false positives, and enable shift-left security with development teams.
• Vulnerability Management: Analyze findings, provide remediation guidance, track vulnerabilities through lifecycle, and support risk-based prioritization.
• Reporting & Stakeholder Management: Prepare technical and executive reports, communicate findings with stakeholders, and support audits, compliance, and AppSec initiatives. • Security Advisory & Review: Conduct secure code reviews and architecture level assessments; Coordinate with development teams on secure coding and mitigation strategies.
• Knowledge Of: SDLC and DevSecOps practices, microservices/API/cloud security, strong analytical/problem-solving skills, and stakeholder communication/consulting experience.
Good to Have:
• Exposure to SAST (Fortify, SonarQube), DAST (Netsparker, Fortify on Demand), and SCA (BlackDuck, Dependabot) tools
• Certifications: CEH, OSCP, GWAPT, CSSLP, CISSP
• Experience in threat modeling and architecture reviews • Bachelor’s degree or foreign equivalent required from an accredited institution. Will also consider three years of progressive experience in the specialty in lieu of every year of education.
• This position may require relocation and/or travel to work/project location.
• Candidates authorized to work for any employer in the United States without employer-based visa sponsorship are welcome to apply. Infosys is unable to provide immigration sponsorship for this role now or in the future.
What We Offer
~1 min readAlong with competitive pay, as a full-time Infosys employee you are also eligible for the following benefits:
✓Medical/Dental/Vision/Life Insurance
✓Long-term/Short-term Disability
✓Health and Dependent Care Reimbursement Accounts
✓Insurance (Accident, Critical Illness , Hospital Indemnity, Legal)
✓401(k) plan and contributions dependent on salary level
✓Paid holidays plus Paid Time Off
Location & Eligibility
Where is the job
Richardson, United States
On-site at the office
Who can apply
US
Listing Details
- Posted
- September 3, 2026
- First seen
- September 27, 2026
- Last seen
- September 27, 2026
Posting Health
- Days active
- 0
- Repost count
- 0
- Trust Level
- 13%
- Scored at
- September 27, 2026
Signal breakdown
freshnesssource trustcontent trustemployer trust
External application
Similar Security Engineer jobs
View all →Cybersecurity Engineer II | SIEM and EDR (Remote)
Software Cybersecurity Engineer
Cybersecurity Engineer Sr
Security Engineer – Produktsicherheit (m/w/d)
Cloud Security Engineer - OCI (Oracle Cloud Infrastructure)
Remote
Cloud Security Engineer (Oracle Cloud Infrastructure - OCI)
Remote
Browse Similar Jobs
Devops Engineer3.3kFullstack Developer2kEngineering Manager1.9kSecurity1.8kSoftware Architect1.6kQa Engineer1.6kMechanical Engineer1.6kElectrical Engineer1.4kBackend Developer1.3kProject Engineer1.3kDevOps & Infrastructure1.2kFrontend Developer994Design Engineer966Process Engineer690Quality Engineer686Mobile Developer663Product Engineer654Backend Engineering599Data Engineering547Embedded Engineer520
Newsletter
Stay ahead of the market
Get the latest job openings, salary trends, and hiring insights delivered to your inbox every week.
A
B
C
D
No spam. Unsubscribe at any time.