yoinka

Architect - DevOps 4D

Genpact

1401-G-India: DLF Commercial Building 3, Phase V, GurugramMidH-1B sponsor company
Sign in to applyVerified 1h ago
Location
1401-G-India: DLF Commercial Building 3, Phase V, Gurugram
Work model
On-Site
Level
Mid
H-1B history
63 approvals (FY2023)
Posted
21h ago

Skills

AzureCI/CDDatabricksGitPythonServerlessServiceNow

About this role

Architect - DevOps Ready to turn bold ideas into real-world impact?  At Genpact, we don’t just adapt to change, we lead it. AI and digital innovation are transforming the way businesses work, and we’re at the forefront of it. Genpact’s AI Gigafactory , our industry-first accelerator, exemplifies how we scale advanced technology solutions to help global enterprises work smarter, grow faster, and transform at scale. Whether tackling complex challenges through large-scale models or agentic AI , our breakthrough solutions tackle companies’ most complex challenges.   If you thrive in a fast-moving, innovation-driven environment, love building and deploying cutting-edge AI solutions, and want to push the boundaries of what’s possible, this is your moment.    Genpact (NYSE: G) is an agentic and advanced technology solutions company. We leverage process intelligence and artificial intelligence to deliver measurable outcomes. With a strong partner ecosystem and decades of client trust, we provide innovative solutions that transform how businesses run. Powered by a team with an active learning mindset and client centricity at its core, we deliver lasting value for the world’s leading enterprises.  Get to know us at genpact.com and on LinkedIn , YouTube , X , and Facebook .

Job Description

Key Responsibilities Application Code Security (Primary Accountability) Design, implement, and enforce the mandatory SAST (Static Application Security Testing) scanning pipeline for all NH2030 code before Databricks deployment Configure GitHub Advanced Security (or equivalent) for the NH2030 GitHub repositories: code scanning, secret scanning, and dependency review Define and enforce the code review process including OWASP Top 10 compliance checks for all application code Own the security gate in the CI/CD pipeline: no deployment proceeds without a passing security scan Triage and remediate security findings from SAST scans; track findings to closure in the security register Conduct periodic security reviews of notebooks, Python/PySpark scripts, and DLT pipeline code for common vulnerabilities   Library & Dependency Management Establish and maintain the approved library list for NH2030 workloads on both classic and serverless Databricks compute Implement dependency pinning across all NH2030 project requirements files (requirements.txt, pyproject.toml, etc.) to prevent supply chain attacks Run regular vulnerability scans on all library dependencies using tools such as Dependabot, Snyk, or Safety Coordinate with ADP Platform Team to request library and init script whitelisting for classic compute Ideally establish and maintain an internal Nexus/Artifactory proxy repository stocked with pre-vetted, trusted libraries for NH2030 teams For serverless compute: since no centralised restriction is possible, own full end-to-end responsibility for dependency vetting, pinning, and vulnerability management Review and approve all init script and JAR file whitelisting requests before submission to ADP team   GitHub Repository Security & Connectivity Identify all GitHub repositories required by the NH2030 programme for Databricks Git integration Submit and manage workspace-level GitHub repository whitelisting configuration (ADP default: no repos whitelisted) Configure branch protection rules, required review policies, and CODEOWNERS on NH2030 repositories Monitor repository access and audit logs for unauthorised access or anomalous activity   FQDN Whitelisting & Egress Security Identify and document all external FQDNs required by NH2030 serverless and classic compute workloads Prepare and submit FQDN whitelisting requests via ServiceNow: classic compute to FCP Azure Firewall, serverless compute to ADP network policies Validate that whitelisted FQDNs are the minimum required (least-privilege egress principle) Review FQDN requests from development teams to ensure they are justified and do not introduce risk Monitor for unauthorised egress attempts

Architect - DevOps 4D at Genpact — 1401-G-India: DLF Commercial Building 3, Phase V, Gurugram | Yoinka