> Markdown version of [/jobs/ext/3002652-intl-india-cloud-aws-ci-cd-sme](https://www.wearedevelopers.com/jobs/ext/3002652-intl-india-cloud-aws-ci-cd-sme). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # INTL India - Cloud (AWS) & CI/CD SME - **Company:** Insight Global - **Location:** Boston, TN, United States - **Experience:** Experienced - **Salary:** $27,040.0 - $33,280.0 - **Contract:** Permanent contract - **Skills:** Kubernetes Security, Amazon Web Services, Cloud Computing, Cloud Computing Security, Cloud Engineering, Cyber Security, Continuous Integration, DevOps, Identity and Access Management, Issue Tracking Systems, Software Repository, Software Security, Functional Dependencies, Infrastructure Automation Frameworks, Information Technology, Devsecops - **Published:** September 19, 2026 - **Apply:** https://dejobs.org/x/x/709313D02A0D40FCAB0562E22BBEB645/job/ ## About the Role 3-6 years of hands-on experience in cloud security operations, DevSecOps, CI/CD security, or a closely related security engineering role -Deep experience securing CI/CD pipelines (security of the pipeline infrastructure itself and security within the pipeline) -Ability to script and automate operational security workflows -Hands-on experience investigating and remediating hardcoded secrets in production repositories, including credential rotation, commit-history remediation, and prevention strategy design -Demonstrated skill in reviewing IaC templates for security misconfigurations and writing specific, developer-friendly remediation guidance -Solid understanding of IAM design, cloud networking, and secure configuration principles across at major cloud platforms (AWS preferred) -Experience managing security findings against SLAs in an enterprise environment including escalation, exception handling, and stakeholder communication -Ability to translate complex technical findings into clear, actionable remediation guidance for both developers and non-technical stakeholders -Comfort working in a globally distributed team with cross-functional dependencies across cloud engineering, DevOps, and architecture groups -Experience working within a complex, matrix-structured global organization -Ability to operate and tune cloud security posture tooling at enterprise scale, including policy customization, alert lifecycle management, and cross-team remediation workflows -Relevant industry certifications in cloud security or container security -Experience with IT service management platforms for incident tracking and workflow management -Familiarity with agile delivery practices and sprint-based work management -Experience contributing to compliance audit preparation or evidence collection -Bachelor's degree in Computer Science, Information Technology, or equivalent practical experience ## Description Insight Global is seeking a remote Cloud & CI/CD Security SME to join a global consulting firm. This person would be joining their Security Operations - Attack Surface Management (ASM) team within the organizations Information Security & Risk Management (ISRM) function as a Subject Matter Expert in Cloud security, CI/CD pipeline security, and Infrastructure-As-Code (IaC) security. This person will be responsible for owning the end-to-end lifecycle of security finding, from detection and triage through remediation guidance, SLA tracking, escalation, and closure across the organizations multi-cloud environment, CI/CD pipelines, and code repositories. You would be expected to provide remediation guidance on cloud and code security matters to engineering, DevOps, and architecture teams, while building and maintaining runbooks and operational playbooks for the ASM team. ## Related Videos - [DevSecOps: Injecting Security into Mobile CI/CD Pipelines](https://www.wearedevelopers.com/videos/273-devsecops-injecting-security-into-mobile-ci-cd-pipelines) - [Securing Your Web Application Pipeline From Intruders](https://www.wearedevelopers.com/videos/53-securing-your-web-application-pipeline-from-intruders) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [From DevOps to Scaled DevOps: How We’re Rebuilding Continuous Delivery as a Platform](https://www.wearedevelopers.com/videos/100018-from-devops-to-scaled-devops-how-we-re-rebuilding-continuous-delivery-as-a-platform) - [Enabling automated 1-click customer deployments with built-in quality and security](https://www.wearedevelopers.com/videos/83-enabling-automated-1-click-customer-deployments-with-built-in-quality-and-security) - [DevSecOps: Security in DevOps](https://www.wearedevelopers.com/videos/36-devsecops-security-in-devops) ## Related Articles - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [7 Cloud Computing Trends Coming in 2025 for Developers](https://www.wearedevelopers.com/magazine/412-7-cloud-computing-trends-coming-in-2025-for-developers) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed)