Staff DevSecOps Engineer

Chennai

At FourKites we have the opportunity to tackle complex challenges with real-world impacts. Whether it’s medical supplies from Cardinal Health or groceries for Walmart, the FourKites platform helps customers operate global supply chains that are efficient, agile and sustainable.

Join a team of curious problem solvers that celebrates differences, leads with empathy and values inclusivity

We are seeking an experienced DevSecOps Engineer with a strong background in cloud security, infrastructure management, and secure software development. The ideal candidate will have extensive hands-on expertise across major cloud platforms, containerization technologies, and security frameworks. You will be responsible for architecting, implementing, and maintaining secure cloud environments while ensuring that security is seamlessly integrated throughout the development lifecycle.

What you’ll be doing: 

Cloud Infrastructure & Security
  • Architect and secure highly available, scalable, and fault-tolerant systems across AWS and Azure environments.
  • Design and implement Layer 3/Layer 4 firewalls, network segmentation, and secure routing policies.
  • Deploy and manage Intrusion Detection (IDS), Intrusion Prevention (IPS), and Endpoint Detection and Response (EDR) solutions for servers, containers, and cloud workloads.
  • Implement container and Kubernetes security for EKS (Amazon Elastic Kubernetes Service) and AKS (Azure Kubernetes Service) — ensuring zero-vulnerability base images, runtime protection, and least-privilege configurations.
  • Manage cloud-native security services such as WAF, Shield , CSPM (Cloud Security Posture Management), and CNAPP (Cloud-Native Application Protection Platform).
  • Ensure 99.99% uptime while maintaining a strong defense-in-depth security posture.
DevOps & Automation
  • Develop and maintain Infrastructure-as-Code (IaC) using Terraform, CloudFormation, and Azure Resource Manager (ARM) templates.
  • Build secure CI/CD pipelines integrating SAST, DAST, IaC scanning, container scanning, and EDR integrations for runtime visibility.
  • Automate deployments and security validation using Ansible, Chef, Puppet, Jenkins, or GitHub Actions.
  • Enforce image signing, vulnerability scanning, and policy enforcement to ensure zero-vulnerability images are promoted to production.
  • Integrate open-source and commercial security tools (e.g., Trivy, Aqua, Wiz, Prisma Cloud, Checkov, SonarQube) for continuous assurance.
Security Engineering & Governance
  • Implement and maintain CSPM and CNAPP solutions to detect misconfigurations and enforce compliance baselines across AWS and Azure.
  • Develop and automate security controls, configuration baselines, and hardening standards using policy-as-code.
  • Perform threat modeling, risk analysis, and vulnerability remediation for cloud and containerized workloads.
  • Document security architectures, DevSecOps workflows, and compliance evidence.
  • Provide security training and awareness sessions for DevOps and development teams.
API & Application Security
  • Implement API security best practices, including OAuth2, JWT, rate limiting, and gateway-level authentication.
  • Integrate SAST/DAST and dependency scanning tools within CI/CD pipelines.
  • Troubleshoot and manage SSL/TLS, certificates, and key rotation processes.
  • Enforce secure coding, linting, and code review standards across projects.
Monitoring & Incident Response
  • Lead incident detection, containment, and response activities for cloud and containerized workloads.
  • Configure and maintain EDR and SIEM/SOAR tools for unified visibility and automated threat response.
  • Implement automated response playbooks using AWS Lambda or Azure Functions for real-time mitigation.
  • Conduct root cause analysis (RCA) and develop post-incident improvement plans.
Who You Are
  • 8+ years of experience in DevSecOps, Cloud Security, or Security Engineering.
  • Strong hands-on experience with AWS and Azure, including EKS and AKS security hardening.
  • Expertise in EDR implementation and maintenance across cloud and containerized environments.
  • Deep understanding of Kubernetes, container security, and zero-vulnerability image pipelines.
  • Skilled in integrating SAST, DAST, and IaC security tools into automated CI/CD pipelines.
  • Strong experience with CSPM and CNAPP platforms for compliance and risk management.
  • Proficiency in Terraform, CloudFormation, ARM, and scripting languages (Python, Bash, PowerShell).
  • Solid understanding of network, cloud, and endpoint security principles.
  • Strong communicator with the ability to bridge DevOps, Security, and Product teams.
  • Proactive learner, passionate about automation and cloud-native security innovation.
Preferred Qualifications
  • Certifications: AWS Certified Security – Specialty, Azure Security Engineer Associate, CKS, CISSP, or CEH.
  • Hands-on experience with CSPM/CNAPP/EDR platforms (e.g., Lacework, Defender for Cloud, CrowdStrike, ).
  • Familiarity with SOC 2, ISO 27001, or NIST frameworks.
  • Experience implementing Zero-Trust Architecture.
  • Experience mentoring DevOps/Security Engineers and improving team maturity.

Who we are:
FourKites®, the leader in AI-driven supply chain transformation for global enterprises and pioneer of advanced real-time visibility, turns supply chain data into automated action. FourKites’ Intelligent Control Tower™ breaks down enterprise silos by creating a real-time digital twin of orders, shipments, inventory and assets. This comprehensive view, combined with AI-powered digital workers, enables companies to prevent disruptions, automate routine tasks, and optimize performance across their supply chain. FourKites processes over 3.2 million supply chain events daily — from purchase orders to final delivery — helping 1,600+ global brands prevent disruptions, make faster decisions and move from reactive tracking to proactive supply chain orchestration.

Working at FourKites
We provide competitive compensation with stock options, outstanding benefits and a collaborative culture for all employees around the globe, including:

5 global recharge days, in addition to standard holidays, and a hybrid, flexible approach to work.
Parental leave for all parents, an annual wellness stipend and volunteer days also provide you with time and resources for self care and to care for others.
Opportunities throughout the year to learn and celebrate diversity.
Access to leading AI tools and foundation models, with the freedom to experiment and find creative ways to be more effective in your role
And we're always listening for new ways to support everyone in and out of the office.  


Create a Job Alert

Interested in building your career at FourKites? Get future opportunities sent straight to your email.

Apply for this job

*

indicates a required field

Phone
Resume/CV*

Accepted file types: pdf, doc, docx, txt, rtf

Cover Letter

Accepted file types: pdf, doc, docx, txt, rtf


Education

Select...
Select...
Select...
Select...
Select...

Voluntary Self-Identification

For government reporting purposes, we ask candidates to respond to the below self-identification survey. Completion of the form is entirely voluntary. Whatever your decision, it will not be considered in the hiring process or thereafter. Any information that you do provide will be recorded and maintained in a confidential file.

As set forth in FourKites’s Equal Employment Opportunity policy, we do not discriminate on the basis of any protected group status under any applicable law.

Select...
Select...
Race & Ethnicity Definitions

If you believe you belong to any of the categories of protected veterans listed below, please indicate by making the appropriate selection. As a government contractor subject to the Vietnam Era Veterans Readjustment Assistance Act (VEVRAA), we request this information in order to measure the effectiveness of the outreach and positive recruitment efforts we undertake pursuant to VEVRAA. Classification of protected categories is as follows:

A "disabled veteran" is one of the following: a veteran of the U.S. military, ground, naval or air service who is entitled to compensation (or who but for the receipt of military retired pay would be entitled to compensation) under laws administered by the Secretary of Veterans Affairs; or a person who was discharged or released from active duty because of a service-connected disability.

A "recently separated veteran" means any veteran during the three-year period beginning on the date of such veteran's discharge or release from active duty in the U.S. military, ground, naval, or air service.

An "active duty wartime or campaign badge veteran" means a veteran who served on active duty in the U.S. military, ground, naval or air service during a war, or in a campaign or expedition for which a campaign badge has been authorized under the laws administered by the Department of Defense.

An "Armed forces service medal veteran" means a veteran who, while serving on active duty in the U.S. military, ground, naval or air service, participated in a United States military operation for which an Armed Forces service medal was awarded pursuant to Executive Order 12985.

Select...

Voluntary Self-Identification of Disability

Form CC-305
Page 1 of 1
OMB Control Number 1250-0005
Expires 04/30/2026

Why are you being asked to complete this form?

We are a federal contractor or subcontractor. The law requires us to provide equal employment opportunity to qualified people with disabilities. We have a goal of having at least 7% of our workers as people with disabilities. The law says we must measure our progress towards this goal. To do this, we must ask applicants and employees if they have a disability or have ever had one. People can become disabled, so we need to ask this question at least every five years.

Completing this form is voluntary, and we hope that you will choose to do so. Your answer is confidential. No one who makes hiring decisions will see it. Your decision to complete the form and your answer will not harm you in any way. If you want to learn more about the law or this form, visit the U.S. Department of Labor’s Office of Federal Contract Compliance Programs (OFCCP) website at www.dol.gov/ofccp.

How do you know if you have a disability?

A disability is a condition that substantially limits one or more of your “major life activities.” If you have or have ever had such a condition, you are a person with a disability. Disabilities include, but are not limited to:

  • Alcohol or other substance use disorder (not currently using drugs illegally)
  • Autoimmune disorder, for example, lupus, fibromyalgia, rheumatoid arthritis, HIV/AIDS
  • Blind or low vision
  • Cancer (past or present)
  • Cardiovascular or heart disease
  • Celiac disease
  • Cerebral palsy
  • Deaf or serious difficulty hearing
  • Diabetes
  • Disfigurement, for example, disfigurement caused by burns, wounds, accidents, or congenital disorders
  • Epilepsy or other seizure disorder
  • Gastrointestinal disorders, for example, Crohn's Disease, irritable bowel syndrome
  • Intellectual or developmental disability
  • Mental health conditions, for example, depression, bipolar disorder, anxiety disorder, schizophrenia, PTSD
  • Missing limbs or partially missing limbs
  • Mobility impairment, benefiting from the use of a wheelchair, scooter, walker, leg brace(s) and/or other supports
  • Nervous system condition, for example, migraine headaches, Parkinson’s disease, multiple sclerosis (MS)
  • Neurodivergence, for example, attention-deficit/hyperactivity disorder (ADHD), autism spectrum disorder, dyslexia, dyspraxia, other learning disabilities
  • Partial or complete paralysis (any cause)
  • Pulmonary or respiratory conditions, for example, tuberculosis, asthma, emphysema
  • Short stature (dwarfism)
  • Traumatic brain injury
Select...

PUBLIC BURDEN STATEMENT: According to the Paperwork Reduction Act of 1995 no persons are required to respond to a collection of information unless such collection displays a valid OMB control number. This survey should take about 5 minutes to complete.