Free cookie consent management tool by TermsFeed Lead Software Engineer (DevOps Expert) | Antal Tech Jobs
Back to Jobs
1 Week ago

Lead Software Engineer (DevOps Expert)

decor
Pune, Maharashtra, India
Information Technology
Part-Time
Societe Generale Global Solution Centre

Overview

Reference 260002WZ

Responsibilities

a { text-decoration: none; color: #464feb; } tr th, tr td { border: 1px solid #e6e6e6; } tr th { background-color: #f5f5f5; }2. Application Security Ownership3. Server Patching & Compliance Management4. Governance, Risk & Compliance (ITRM Alignment)5. Remediation Coordination & Technical Guidance6. Security Monitoring & Continuous Improvement7. Incident Response & RCASkills & QualificationsTechnical Skills

  • Vulnerability Identification & Assessment
  • Perform vulnerability scanning
  • Analyze and validate vulnerabilities in the context of application architecture, APIs, integrations, OS configurations, and middleware.
  • Evaluate CVSS scores, exploitability, and real‑world applicability to the application.
  • Prioritize application and server vulnerabilities based on ITRM policies, business criticality, and threat intelligence.
  • Act as the primary security owner for the application.
  • Review application code, APIs, and data flows to identify security weaknesses.
  • Enforce best practices aligned with OWASP Top 10, SANS CWE Top 25, and secure coding standards.
  • Work with developers to ensure security defects are remediated as part of the SDLC.
  • Own the lifecycle of patching for OS, middleware, DB components, app servers, and supporting infrastructure.
  • Collaborate with infra/ops teams to ensure timely, accurate, and compliant patch deployments.
  • Maintain and track patch compliance against internal ITRM standards and external regulatory requirements.
  • Validate patches in lower environments, assess compatibility with the application, and plan patch windows to reduce downtime.
  • Ensure all missing patches—critical, high, and medium—are remediated within SLA.
  • Ensure the application meets internal IT Risk Management (ITRM) and audit expectations.
  • Maintain audit-ready documentation, including risk exceptions, evidence, and remediation plans.
  • Track SLA adherence for vulnerability closure (e.g., Critical < X days, High < Y days).
  • Support internal and external audits, providing artifacts and technical justifications.
  • Identify and document risk exceptions where remediation is not feasible.
  • Interpret vulnerability findings and provide actionable remediation guidance to engineering and infra teams.
  • Facilitate triage meetings with developers, infrastructure, and DevOps teams.
  • Validate implemented fixes and ensure vulnerabilities are fully resolved.
  • Track and escalate overdue vulnerabilities and patch failures.
  • Partner with SOC/SIEM teams to enhance monitoring of application/server security events.
  • Contribute to threat modeling, baseline security controls, and hardening guides.
  • Drive continuous improvement in vulnerability management processes, automation, and tooling.
  • Recommend security improvements to server configurations, network controls, and application design.
  • Participate in security incident investigations impacting the application or servers.
  • Provide root cause analysis (RCA) for recurring vulnerability or patching failures.
  • Recommend long-term fixes to eliminate systemic issues.
  • Strong knowledge in:
    • Vulnerability scanning
    • Patch management
    • Middleware patching (WebLogic, Tomcat, IIS, Apache, Nginx)
    • API & application security
    • Secure configuration/hardening (CIS Benchmarks, STIG)
  • Understanding of:
    • Secure SDLC
    • Identity & access (OAuth2, JWT, SSO)
    • Encryption, certificates, network security, firewalls
  • Ability to interpret:
    • CVSS scores
    • CIS controls
    • Compliance frameworks (PCI‑DSS, GDPR, ISO 27001)

    Required

    Profile required

    a { text-decoration: none; color: #464feb; } tr th, tr td { border: 1px solid #e6e6e6; } tr th { background-color: #f5f5f5; }

    • Soft Skills
      • Strong problem‑solving and analytical skills.
      • Excellent communication between security, dev, and infra teams.
      • Ability to drive remediation across multiple stakeholders.
      • Detail‑oriented with strong risk judgement.
    Why join us

    We are committed to creating a diverse environment and are proud to be an equal opportunity employer. All qualified applicants receive consideration for employment without regard to race, color, religion, gender, gender identity or expression, sexual orientation, national origin, genetics, disability, age, or veteran status”.

    Business insight

    At Société Générale, we are convinced that people are drivers of change, and that the world of tomorrow will be shaped by all their initiatives, from the smallest to the most ambitious. Whether you’re joining us for a period of months, years or your entire career, together we can have a positive impact on the future. Creating, daring, innovating, and taking action are part of our DNA. If you too want to be directly involved, grow in a stimulating and caring environment, feel useful on a daily basis and develop or strengthen your expertise, you will feel right at home with us!

    Still hesitating?

    You should know that our employees can dedicate several days per year to solidarity actions during their working hours, including sponsoring people struggling with their orientation or professional integration, participating in the financial education of young apprentices, and sharing their skills with charities. There are many ways to get involved.

    We are committed to support accelerating our Group’s ESG strategy by implementing ESG principles in all our activities and policies. They are translated in our business activity (ESG assessment, reporting, project management or IT activities), our work environment and in our responsible practices for environment protection.

    Share job
    Similar Jobs
    View All
    16 Hours ago
    Associate Devops Lead - GCP
    Information Technology
    • 2400000 - 3500000 INR - Annual
    • 6 - 10 Yrs
    • Greater Noida, Noida
    Responsibilities Design and deploy complex, multi-tier applications on GCP, ensuring scalability, reliability, and cost-efficiency. Manage and optimize workloads using GCP services like Compute Engine, Kubernetes Engine, BigQuery, Cloud Funct...
    decor
    16 Hours ago
    Director/ Senior Director - Data Delivery Partner (CPG Domain)
    Information Technology
    • 6000000 - 8000000 INR - Annual
    • 16 - 23 Yrs
    • Hyderabad
    Role Overview: We are seeking an experienced Account Delivery Head – Director level to lead end-to end delivery for strategic accounts in the Consumer Packaged Goods (CPG) domain, with a strong focus on Data Engineering, Advanced Analytics, and Da...
    decor
    23 Hours ago
    Quality Engineering Architect
    Information Technology
    • 9 - 12 Yrs
    • Ahmedabad, Indore, Hyderabad
    Your mission, roles and requirements: Design and implement scalable automation frameworks while defining the overall testing tool landscape for the organization. The role focuses on building robust test harnesses, significantly reducing testing cy...
    decor
    1 Day ago
    Senior Maps Data Engineer
    AI & Machine Learning Advancement
    • 6 - 10 Yrs
    • Hyderabad
    Job Opening: Maps Data Engineer Location: Hyderabad Experience: 6+ years About Antal: Antal International, East Patel Nagar Delhi, is a leading recruitment consultancy having expertise in connecting top talent across IT, Manufact...
    decor
    1 Day ago
    Maps Data Engineer
    AI & Machine Learning Advancement
    • 4 - 7 Yrs
    • Hyderabad
    Job Opening: Maps Data Engineer Location: Hyderabad Experience: 4+ years About Antal: Antal International, East Patel Nagar Delhi, is a leading recruitment consultancy having expertise in connecting top talent across IT, Manufact...
    decor
    2 Days ago
    ETL Developer/Data Engineer
    Information Technology
    • Bangalore, Karnataka, India
    DescriptionAbout the Organization :G N Solutions Pvt. Ltd. is a trusted IT company providing state-of- the-art solutions, services and products to our clients spread across diverse domains and geographies. We are one of the privileged IBM Business Pa...
    decor
    2 Days ago
    Vision Group - Senior Software Engineer
    Information Technology
    • Bangalore, Karnataka, India
    DescriptionRequired Mandatory Skills : Architecture Design Dot Net .Net Core JavaScript SQL Server Azure Cloud MicroservicesJob Responsibilities Responsible for delivering high quality software on time Works closely with Engineering leads and other d...
    decor
    2 Days ago
    Cloud Native Architect - Azure
    Information Technology
    • Bangalore, Karnataka, India
    EPAM is a leading global provider of digital platform engineering and development services. We are committed to having a positive impact on our customers, our employees, and our communities. We embrace a dynamic and inclusive culture. Here you will c...
    decor

    Talk to us

    Feel free to call, email, or hit us up on our social media accounts.
    Social media