Description review

TL /ATL DevSecOps

MindPlus (Pvt) Ltd · Sri Lanka · back to the listing

HR standards

57/100

needs work

Title ↔ description

87/100

strong

Reads as

Security Engineer

91% confident

What this role officially is

ICT security administrator — ESCO, the EU occupation classification

ICT security administrators plan and carry out security measures to protect information and data from unauthorised access, deliberate attack, theft and corruption.

Also known as: network security administrator, system security administrator, ICT security administrators, IT security administrator

How others title the same work

Large employers

  • Security Risk Management Specialist Canonical Ltd.
  • Security Software Engineer Canonical Ltd.
  • Senior Security Operations Engineer Canonical Ltd.
  • Staff Security Operations Engineer Canonical Ltd.
  • Ubuntu Security Engineer Canonical Ltd.

Startups

  • Security Engineer (Bangalore, India) AiPrise
  • Security & Trust Engineer Alex
  • Elucid | Senior Security Engineer | Boston, MA | ONSITE (hybrid) | $130k–$170k Elucid
  • Factory | Security Engineer | ONSITE, San Francisco, CA | Full-Time Factory
  • Factory | Security Engineer | Onsite in San Francisco | Full-time Factory

What the listing never says

  • 34 bullet points. Long requirement lists deter qualified candidates, who read them as hard gates. Scope clarity
  • No pay range published. Candidates cannot tell whether applying is worth their time. Pay transparency

The listing, marked up

Nothing in the wording of this listing tripped a check. The scores above still judge how complete and coherent it is.

About the Client

Our Client is a data and technology partner to the Financial Services Industry, with offices in Sydney, Melbourne, Wollongong, and Colombo, Sri Lanka. At its core, the organisation specialises in data-driven transformation and business optimisation. It partners with clients to transform business functions through the effective use of data and interoperability, offering a wide range of services and solutions.

About the Role

We are seeking a Team Lead / Associate Team Lead – DevSecOps to lead a team of engineers in integrating security across development and operations. This role focuses on building and scaling secure CI/CD pipelines, cloud environments, and application security practices through automation and strong governance.

In addition to DevSecOps leadership, experience in Security Operations (SOC), threat detection, and incident response will be highly beneficial. The role requires close collaboration with security teams to enhance the organisation's overall security posture and response capabilities.

Key Responsibilities

• Lead and mentor a team of DevSecOps engineers across cloud, application, and infrastructure security domains.

• Define and drive DevSecOps strategy, standards, and best practices across the organisation.

• Architect and oversee secure CI/CD pipelines, including SAST, DAST, SCA, container, and IaC scanning.

• Design and implement security solutions across Azure, AWS, and hybrid environments.

• Ensure secure Infrastructure as Code (IaC) practices using Terraform, ARM, or similar tools.

• Guide the implementation of container and Kubernetes security, including RBAC, network policies, and image scanning.

• Oversee secrets and identity management, including Azure Key Vault, AWS Secrets Manager, and IAM.

• Drive the automation of security processes, controls, and incident response integrations.

• Collaborate with DevOps, SOC, and engineering teams to embed security across the SDLC.

• Establish and monitor security KPIs, metrics, and reporting.

• Support and lead compliance initiatives such as SOC 2, ISO 27001, and CIS benchmarks.

• Align DevSecOps practices with threat detection and response strategies in coordination with SOC teams.

• Manage stakeholder and client engagements, providing technical leadership and guidance.

Requirements

• Team Lead: 6–8+ years of experience in DevOps, Security, or DevSecOps, including leadership experience.

• Associate Team Lead: 5+ years of experience with strong technical expertise and emerging leadership capabilities.

• Strong hands-on experience with CI/CD tools such as Azure DevOps, GitHub Actions, and Jenkins.

• Deep familiarity with cloud platforms (Azure and/or AWS) and security architecture.

• Strong experience with containerisation technologies such as Docker and Kubernetes.

• Proficiency in scripting (PowerShell, Python, Bash) and Infrastructure as Code (Terraform preferred).

• Strong understanding of application security (OWASP Top 10) and secure SDLC practices.

• Expertise in IAM, RBAC, Zero Trust, and network security principles.

• Proven experience in mentoring teams and managing technical projects.

Nice to Have (Highly Beneficial)

• Experience with security tools such as SonarQube, Snyk, Checkmarx, Prisma Cloud, or similar.

• Advanced experience in Kubernetes security and policy enforcement.

• Experience with policy-as-code tools such as OPA and Azure Policy.

• Hands-on experience with Azure Sentinel, Microsoft Defender suite, and Intune.

• Strong knowledge of KQL for threat detection and advanced analytics.

• Familiarity with Logic Apps or similar tools for security automation.

• Prior experience in Security Operations (SOC), incident response, or threat monitoring.

• Experience leading DevSecOps transformations or large-scale implementations.

Certifications

• Microsoft Cybersecurity Architect Expert

• Azure Solutions Architect Expert

• AWS Security Specialty

• CISSP, CKS, or equivalent

Interested candidates may send their CV to

Originally posted on Himalayas

How this was produced

Highlights are found by rule, not by a model: each one is a phrase matched at a known position, and every note is a template we wrote. The two scores come from a typed-decision model (Jev) that reads the listing against the official role definition and real listings for the same role, and returns probabilities rather than prose — it never writes any of the words on this page, and never chooses what to highlight.

Deterministic penalty applied to the HR score: 8 points (from 65 before penalties). Reviewed 21 Sep 2026.