
Job Description:
Job Title: DevSecOps Engineering Manager – FSI Domain
Job Summary
We are looking for an experienced DevSecOps Engineering Manager with a strong background in the Financial Services Industry (FSI) to lead and implement secure, scalable, and automated CI/CD platforms across enterprise environments. The ideal candidate will have deep expertise in DevSecOps practices, cloud security, AI-driven automation, and regulatory compliance aligned with banking and financial sector standards.
________________________________________
Key Responsibilities
• Lead the design and implementation of enterprise-wide DevSecOps frameworks within regulated FSI environments.
• Build and manage secure CI/CD pipelines integrating SAST, SCA, API Security, Secret Scanning, and IaC security controls.
• Implement Policy-as-Code and Compliance-as-Code across application build and deployment pipelines.
• Drive adoption of SBOM / HBOM / MBOM / CBOM frameworks to enhance software supply chain transparency.
• Integrate DevSecOps controls into MLOps and LLMOps pipelines ensuring secure AI/ML lifecycle management.
• Enable vulnerability prioritization using real-time threat intelligence and risk-based remediation strategies.
• Design AI-driven automated security workflows for:
o Policy deviation detection
o Scan result analysis
o Fix generation
o Automated pull request creation
o Audit trail maintenance
• Develop centralized compliance management solutions aligned with financial regulatory frameworks.
• Implement API Security testing and linting as part of CI/CD pipelines.
• Collaborate with development, infrastructure, QA, and security teams to enforce DevSecOps governance across IDE, build-time, deployment-time, and runtime stages.
• Lead infrastructure automation using IaC tools such as Puppet, Terraform, and Ansible.
• Support enterprise cloud platforms (Azure / AWS) ensuring CIS & STIG aligned configurations.
________________________________________
Required Skills & Expertise
• DevSecOps Implementation in Banking / Financial Services domain
• CI/CD Tools – Azure DevOps, Jenkins
• Cloud Platforms – Microsoft Azure, AWS
• Security Tools – Qualys, Aqua, Vault
• DevSecOps Practices – SAST, SCA, IaC Security, API Security
• Containerization – Docker, Kubernetes (EKS)
• Infrastructure as Code – Puppet, Ansible
• Monitoring Tools – Grafana, Splunk, Nagios
• Programming – Python, Shell Scripting
• Policy Engines – OPA
• SBOM Implementation & Secure Software Supply Chain
• IAM Integration & Secrets Management
________________________________________
FSI Domain Experience
• Experience working in regulated financial environments with strict compliance requirements.
• Implementation of secure DevSecOps pipelines aligned with enterprise banking security standards.
• Delivered centralized compliance platforms improving audit readiness and governance efficiency.
• Enhanced API and application security posture within CI/CD pipelines.
• Automated vulnerability remediation improving developer productivity and reducing
Get empowered by NTT DATA Business Solutions!
We transform. SAP® solutions into Value
Recruiter Name: Srinija Adapa
Recruiter Email ID: Srinija.Adapa@bs.nttdata.com
NTT DATA Business Solutions is a fast-growing international IT company and one of the world’s leading SAP partners. We are a full service provider delivering everything from business consulting to implementation of SAP solutions, including hosting services and support.