Senior AWS DevSecOps Engineer

NTT DATA

Kallang, SGonsitePosted Jul 24, 2026
Posting intelligenceActively listedReposted 8×, possible evergreen/ghost posting

Skills

terraformgitlabcicdawsgo

About the role

Make an impact with NTT DATA

Join a company that is pushing the boundaries of what is possible. We are renowned for our technical excellence and leading innovations, and for making a difference to our clients and society. Our workplace embraces diversity and inclusion – it’s a place where you can grow, belong and thrive.

The Senior AWS DevSecOps Engineer is responsible for embedding security controls throughout the Software Development Lifecycle (SDLC) and ensuring secure deployment of workloads across AWS cloud environments.

This role supports cloud migration and cloud-native deployments by implementing Shift-Left Security practices, conducting Infrastructure-as-Code (IaC) security reviews, automated security assessment by assessing security findings, validating compliance controls, and driving remediation efforts in collaboration with DevOps teams.

In addition, the role acts as the primary security advisor for cloud engineering teams, ensuring that AWS workloads, CI/CD pipelines, and deployment processes comply with security standards, compliance requirements

Key Responsibilities:

Shift-Left Security

Embed security controls throughout the development and deployment lifecycle.

Govern security implementation within GitLab.

Review and assess CI/CD pipelines to ensure security gates are enforced.

Conducting Terraform Infrastructure-as-Code (IaC) security reviews

Integrate security validation activities into the deployment process.

Promote secure-by-design and secure-by-default principles.

Review software delivery processes and identify opportunities for security improvements.

Terraform IaC Security Review

Conduct secure code reviews for Terraform Infrastructure-as-Code deployments.

Review and analyse generated by IaC scanning tools (Checkov, Terrascan).

Identify excessive IAM permissions and privilege escalation risks.

Assess network exposure and segmentation controls.

Validate encryption-at-rest and encryption-in-transit configurations.

Review logging and monitoring configurations.

Identify security misconfigurations and hardening gaps.

Provide remediation recommendations and validate fixes.

AWS Cloud Security Governance

Review AWS architecture and security configurations.

Assess AWS services including: IAM, AWS Config, Security Hub, GuardDuty, CloudTrail, KMS, Secrets Manager, VPC, Security Groups, EC2, S3

Validate implementation of security best practices.

Review cloud resource configurations against approved security baselines.

Vulnerability Management & Open Source Security

Review findings generated by IaC scanning tools (CheckOv, Terrascan).

Assess vulnerabilities identified in third-party libraries and dependencies.

Review CVE alerts and vulnerability exposure.

Perform risk prioritisation and remediation tracking.

Validate remediation effectiveness and closure evidence.

Assess residual risks and recommend compensating controls where required.

Security Governance, Compliance & Operational Assurance

Lead cloud security governance across AWS environments by conducting compliance assessments against corporate compliance requirements (Cloudscape, Codescape, AWS Security Best Practices, and internal security standards).

Perform security baseline reviews, AWS Config compliance assessments, and configuration drift monitoring.

Review cloud workload and AMI hardening controls, identify compliance gaps, recommend corrective actions, and support audit and regulatory compliance activities.

Provide security advisory to DevOps teams by analysing security findings, providing remediation recommendations, assessing security deviations, evaluating compensating controls, and documenting risk-based justifications where remediation is not immediately feasible.

Support security operations through any form of significant security risks where necessary.

Ensure security activities are delivered in accordance with project timelines by supporting change management, tracking remediation activities, monitoring security deliverables, conducting go-live readiness reviews, and driving continuous improvement of cloud security governance processes.

Collaborate closely with DevOps Engineers, Cloud Engineers, Architects, Security Teams, Project Managers, and business stakeholders to provide technical guidance, facilitate knowledge transfer, document security standards and remediation outcomes, and strengthen overall cloud security capability within the project and operational teams.

Knowledge and Attributes:

Strong troubleshooting and analytical skills in network and security domains.

Ability to work in high-pressure, mission-critical environments.

Good communication and stakeholder engagement skills.

Attention to detail and strong documentation practices.

Customer-focused mindset with commitment to service excellence.

Academic Qualifications and Certifications:

Bachelor’s degree in IT, Computer Science, or related field (or equivalent experience).

Preferred certifications:

Hashicorp Terraform Associate

AWS Certified Security

AWS Certified Solutions Architect - Associate

Security certifications (e.g., CCSP, Practical DevSecOps Professional (PDSP)) are advantageous

Experience with cloud security architectures.

Exposure to cloud security posture management.

Required experience:

5 years or more of experience in DevSecOps related work

Hands-on experience with:

GitLab and CI/CD pipeline administration

Infrastructure as a Code using Terraform

Familiar with AWS Security Services

Familiar with Security scanning tools (SAST, DAST, SCA)

Cloud security governance and compliance reviews

Vulnerability managemeng and remediation activities

Security policy enforcement and compliance

Strong understanding of hybrid cloud architectures.

Workplace type:

Hybrid Working

About NTT DATA

NTT DATA is a $30+ billion business and technology services leader, serving 75% of the Fortune

Global 100. We are committed to accelerating client success and positively impacting society through

responsible innovation. We are one of the world’s leading AI and digital infrastructure providers, with

unmatched capabilities in enterprise-scale AI, cloud, security, connectivity, data centers and

application services. Our consulting and industry solutions help organizations and society move

confidently and sustainably into the digital future. As a Global Top Employer, we have experts in more

than 70 countries. We also offer clients access to a robust ecosystem of innovation centers as well as

established and start-up partners. NTT DATA is part of NTT Group, which invests over $3 billion each

year in R&D.

Third parties fraudulently posing as NTT DATA recruiters

NTT DATA recruiters will never ask job seekers or candidates for payment or banking information during the recruitment process, for any reason. Please remain vigilant of third parties who may attempt to impersonate NTT DATA recruiters whether in writing or by phone in order to deceptively obtain personal data or money from you. All email communications from an NTT DATA recruiter will come from an @nttdata.com email address. If you suspect any fraudulent activity, please contact us.

Questions about this role

Click "Apply with AI Applyd" above. We auto-fill the application from your resume and answer screening questions in seconds. No copy and paste, no juggling tabs.

Compensation for Software Engineer roles in Singapore varies widely by seniority, employer size, and remote vs onsite arrangement. Check the salary range on this listing when published, or browse our Software Engineer hub for Singapore medians across recent openings.

Most applications complete in under 90 seconds. You can track the status in your dashboard and watch the screenshot proof land the moment the application submits.

AI Applyd supports Greenhouse, Lever, Ashby, Workday, iCIMS, SmartRecruiters, Personio, Teamtailor and other major ATS platforms. If we can submit through the platform, we do.

Want AI Applyd to auto-apply to roles like this?

We tailor your resume per posting, fill the forms, and track replies for you.