Nagarro Softwares Pvt. Ltd

Senior Staff Engineer (Devops)

Nagarro Softwares Pvt. Ltd
Gurgaon/Gurugram
Not disclosed
Work from OfficeWork from Office
Full TimeFull Time
Min. 7 yearsMin. 7 years

Job Description

Senior Staff Engineer (Devops)

Company Description

👋🏼We're Nagarro.

We are a Digital Product Engineering company that is scaling in a big way! We build products, services, and experiences that inspire, excite, and delight. We work at a scale — across all devices and digital mediums, and our people exist everywhere in the world (18500+ experts across 39 countries, to be exact). Our work culture is dynamic and non-hierarchical. We are looking for great new colleagues. That is where you come in!

Job Description

Requirements

  • Experience : 7.5+ years
  • Strong experience in DevOps and AWS, with hands-on exposure to enterprise cloud and security environments.
  • Strong expertise in enterprise secrets management and end-to-end IAM.
  • Strong knowledge of Azure Entra ID, RBAC, ABAC, and CyberArk.
  • Proven experience delivering at least one enterprise transformation involving secrets management, IAM, PAM, DevSecOps, cloud security, or machine identity.
  • Strong understanding of authentication, authorization, RBAC, ABAC, least privilege, federation, workload identity, privileged access, service accounts, access reviews, and audit controls.
  • Hands-on experience with Azure IAM services, including Entra ID, Azure Managed Identity, and Service Principals.
  • Hands-on experience with AWS IAM, including IAM roles, policies, STS, and OIDC federation.
  • Experience with at least two enterprise secrets management technologies such as Azure Key Vault, AWS Secrets Manager, HashiCorp Vault, CyberArk Conjur, Akeyless, Thales CipherTrust, External Secrets Operator, or Secrets Store CSI Driver.
  • Strong experience working across hybrid environments spanning cloud and on-premises workloads.
  • Experience integrating secrets management and IAM controls with CI/CD platforms such as Azure DevOps, GitHub Actions, Jenkins, or GitLab.
  • Experience with Kubernetes security, workload identity, service accounts, and secrets management.
  • Ability to define enterprise standards, target-state architecture, migration plans, governance models, and practical engineering patterns.
  • Strong stakeholder management skills across security, cloud, platform, infrastructure, application, risk, compliance, and audit teams.
  • Experience working in regulated enterprise environments such as financial services, banking, insurance, healthcare, or similar industries.
  • Experience with CyberArk PAM, HashiCorp Vault Enterprise, machine identity, certificate lifecycle management, or dynamic secrets.
  • Experience with policy-as-code and security automation tools such as Terraform, Azure Policy, AWS Organizations/SCPs, OPA, Sentinel, Checkov, Prisma Cloud, or Wiz.
  • Experience with secret scanning and remediation tools such as GitHub Advanced Security, GitGuardian, Gitleaks, or TruffleHog.
  • Experience defining security dashboards and metrics for secrets compliance, IAM access hygiene, credential rotation, onboarding progress, exceptions, and risk reduction.
  • Strong understanding of multi-cloud secrets management and IAM processes.
  • Strong analytical, problem-solving, communication, and technical documentation skills.
  • Ability to work effectively with geographically distributed engineering and security teams.

Responsibilities

  • Assess current enterprise secrets management and IAM practices across Azure, AWS, on-premises platforms, Kubernetes, CI/CD pipelines, applications, databases, APIs, and service accounts.
  • Define target-state architecture for enterprise secrets management, IAM integration, workload identity, privileged access, credential rotation, auditing, and governance.
  • Establish enterprise standards for secrets storage, access, rotation, ownership, naming, tagging, expiry, exception handling, and decommissioning.
  • Define appropriate use cases for centralized secrets management platforms versus cloud-native services such as Azure Key Vault and AWS Secrets Manager.
  • Design IAM access models using Azure Entra ID, AWS IAM, RBAC, ABAC, roles, policies, groups, service principals, managed identities, and OIDC federation.
  • Implement least-privilege access models across cloud, application, infrastructure, and workload environments.
  • Support application teams in onboarding and migrating from insecure, manual, or inconsistent secrets and IAM practices.
  • Integrate secrets management and IAM controls with CI/CD pipelines, Kubernetes, databases, APIs, legacy applications, logging, monitoring, and SIEM platforms.
  • Design and support workload identity, machine identity, service accounts, privileged access, and automated credential rotation.
  • Define and implement governance processes covering ownership, support, access reviews, exception management, control monitoring, and reporting.
  • Develop practical reference architectures, engineering standards, onboarding playbooks, implementation patterns, and technical documentation.
  • Work closely with security, cloud, platform, infrastructure, application, risk, compliance, and audit teams to drive enterprise security initiatives.
  • Support IAM and secrets management transformation initiatives across hybrid and multi-cloud environments.
  • Define migration strategies, implementation roadmaps, and adoption plans for enterprise secrets and IAM capabilities.
  • Establish dashboards and metrics covering secrets compliance, IAM access hygiene, credential rotation, onboarding progress, exceptions, and risk reduction.
  • Support secret scanning and remediation initiatives across source code repositories and development environments.
  • Promote DevSecOps practices and secure-by-design principles across development and engineering teams.
  • Collaborate with development teams across India, the UK, and Dalian to drive consistent security practices and implementation standards.
  • Provide technical guidance on CyberArk PAM, HashiCorp Vault Enterprise, machine identity, certificate lifecycle management, and dynamic secrets.
  • Drive continuous improvement of enterprise IAM, secrets management, privileged access, and cloud security controls.

Qualifications

Bachelor’s or master’s degree in computer science, Information Technology, or a related field.

Experience Level

Senior Level

Job role

Work location
Work locationGurugram, India
Department
DepartmentSoftware Engineering
Role / Category
Role / CategoryDevOps
Employment type
Employment typeFull Time
Shift
ShiftDay Shift

Job requirements

Experience
ExperienceMin. 7 years

About company

Name
NameNagarro Softwares Pvt. Ltd
Job posted by Nagarro Softwares Pvt. Ltd

Similar jobs you can apply for

Software Quality Assurance and Testing
SBI Payment Services Pvt. Ltd.

Senior Test Engineer

SBI Payment Services Pvt. Ltd.
Gurgaon/Gurugram
Work from Office
Full Time
Min. 5 years
Microsoft Corporation India Pvt Ltd.

Technology Analyst

Microsoft Corporation India Pvt Ltd.
Gurgaon/Gurugram
Work from Office
Full Time
Min. 15 years
Gartner India Research & Advisory Services Private Limited

Lead Software Engineer

Gartner India Research & Advisory Services Private Limited
Gurgaon/Gurugram
Work from Office
Full Time
Min. 8 years
Accenture India Private Limited

QA Lead

Accenture India Private Limited
Gurgaon/Gurugram
Work from Office
Full Time
Min. 5 years
Gartner India Research & Advisory Services Private Limited

Senior Software Engineer

Gartner India Research & Advisory Services Private Limited
Gurgaon/Gurugram
Work from Office
Full Time
Min. 4 years
Jones Lang Lasalle Property Consultants India Pvt Ltd

Engineering Team Lead

Jones Lang Lasalle Property Consultants India Pvt Ltd
Gurgaon/Gurugram
Work from Office
Full Time
Min. 3 years

You can expect a minimum salary of 0 INR. The salary offered will depend on your skills, experience and performance in the interview.

The candidate should have completed the required education and people who have 7 to 31 years are eligible to apply for this job. You can apply for more jobs in Gurgaon/Gurugram to get hired quickly.

The candidate should have sound communication skills and sound communication skills for this job.

Both Male and Female candidates can apply for this job.

No, it's not a work from home job and can't be done online. You can explore and apply for other work from home jobs in Gurgaon/Gurugram at apna.

No work-related deposit needs to be made during your employment with the company.

Go to the apna app and apply for this job. Click on the apply button and call HR directly to schedule your interview.

The last date to apply for this job is . For more details, download apna app and find Full Time jobs in Gurgaon/Gurugram . Through apna, you can find jobs in 64 cities across India. Join NOW!