PAR Technology

Senior Devops Engineer

PAR Technology Gurugram, Haryana, India

Software Development · 1,001-5,000 employees

Yesterday
Remote devops Senior (5-10 yrs) Full-time India
Log in to apply, save this posting, or score it against your profile with AI.

About the role

You will design, build, and operate secure CI/CD pipelines and cloud infrastructure while embedding security into every stage of the software development lifecycle. Additionally, you will manage container security, cloud networking, and observability stacks to ensure robust, scalable, and compliant production environments.

What they look for

DevOps Cloud Security CI/CD AWS Azure Kubernetes Docker Infrastructure-as-code Terraform Python Go Networking Observability Security Scanning Compliance Threat Modeling

Requirements

The role requires 6-10 years of experience in DevOps, platform, or security engineering with at least 3 years focused on DevSecOps or cloud security. Candidates must possess strong hands-on skills in cloud platforms, Kubernetes, infrastructure-as-code, and networking fundamentals.

Full description

For over four decades, PAR Technology Corporation (NYSE: PAR) has been a leader in restaurant technology, empowering brands worldwide to create lasting connections with their guests. Our innovative solutions and commitment to excellence provide comprehensive software and hardware that enable seamless experiences and drive growth for over 100,000 restaurants in more than 110 countries. Embracing our "Better Together" ethos, we offer Unified Customer Experience solutions, combining point-of-sale, digital ordering, loyalty and back-office software solutions as well as industry-leading hardware and drive-thru offerings. To learn more, visit partech.com or connect with us on LinkedIn, X (formerly Twitter), Facebook, and Instagram.

We are looking for a Senior DevOps Engineer to embed security into every stage of how PAR builds, ships, and operates software. You will sit at the intersection of platform engineering and security, owning the tooling, automation, and guardrails that let dozens of product teams move fast without compromising the trust of the brands and guests who rely on us. This is a hands-on senior role: you will design secure CI/CD and cloud infrastructure, hunt down risk before it reaches production, and raise the security bar for the entire engineering organization.

What You'll Do

  • Design, build, and operate secure CI/CD pipelines with integrated SAST, DAST, SCA, secrets scanning, and container image scanning — making the secure path the easy path for product teams.
  • Harden and automate cloud infrastructure (AWS and/or Azure) using infrastructure-as-code, with security policies enforced as code through tools such as OPA, Sentinel, or native policy engines.
  • Own container and orchestration security across Docker and Kubernetes: image provenance, runtime protection, network policies, and admission controls.
  • Implement and tune cloud security posture management, vulnerability management, and threat detection; drive findings to remediation with engineering teams.
  • Build and maintain secrets management, identity, and least-privilege access patterns (IAM, workload identity, service mesh mTLS).
  • Lead threat modeling and secure design reviews for new services and architectures; partner with product engineering early rather than auditing late.
  • Respond to and run post-incident analysis for security events; improve detection, alerting, and runbooks after every incident.
  • Design and manage cloud networking: VPC/VNet architecture, subnetting, routing, NAT, VPC peering and transit gateways, private endpoints/PrivateLink, and hybrid connectivity (site-to-site VPN, Direct Connect/ExpressRoute).
  • Operate edge and traffic-layer security: load balancers (ALB/NLB, NGINX, HAProxy), API gateways, WAF, DDoS protection, CDN configuration, DNS management, and TLS certificate lifecycle/PKI automation.
  • Implement GitOps-based delivery (ArgoCD or Flux) with Helm/Kustomize, and progressive delivery patterns such as blue-green and canary releases with automated rollback.
  • Build and run the observability stack — metrics, logging, tracing, and alerting (Prometheus, Grafana, ELK/OpenSearch, Datadog, or equivalents) — with SLOs and actionable, low-noise alerts.
  • Manage artifact repositories and software supply chain: image registries, SBOM generation, artifact signing and provenance (Sigstore/Cosign, SLSA).
  • Drive capacity, autoscaling, and cost optimization across compute, storage, and network layers without compromising the security posture.
  • Champion compliance-relevant engineering controls (e.g., PCI DSS, SOC 2) and automate evidence collection wherever possible.
  • Mentor engineers across teams on secure coding and operational security practices; act as a force multiplier, not a gatekeeper.

Unleash your Potential

  • 6–10 years of experience across DevOps, platform, or security engineering, with at least 3 years focused on DevSecOps or application/cloud security in production environments.
  • Deep hands-on experience with CI/CD platforms (e.g., GitHub Actions, GitLab CI, Jenkins, Azure DevOps) and embedding security tooling into them.
  • Strong cloud engineering skills on AWS and/or Azure, including IAM, networking, encryption, and logging/monitoring services.
  • Production experience with Kubernetes and containers, including securing clusters and workloads at scale.
  • Proficiency with infrastructure-as-code (Terraform, CloudFormation, or similar) and at least one scripting/programming language (Python, Go, or Bash).
  • Solid networking fundamentals: TCP/IP, DNS, HTTP/HTTPS, TLS, routing and switching concepts, firewalls, security groups/NACLs, network segmentation, and troubleshooting with tools like tcpdump, dig, and Wireshark.
  • Hands-on cloud networking experience: VPC/VNet design, load balancing, ingress controllers, service mesh (Istio/Linkerd), private connectivity, and zero-trust network patterns.
  • Experience running observability tooling (Prometheus, Grafana, ELK, Datadog, or similar) and using it to drive reliability and security outcomes.
  • Working knowledge of application security: OWASP Top 10, dependency and supply-chain risk, secrets hygiene, and secure SDLC practices.
  • Experience with security scanning and monitoring tooling (e.g., Snyk, Trivy, SonarQube, Wiz, Prisma Cloud, Falco, or equivalents).
  • Clear, pragmatic communication — able to explain risk and trade-offs to both engineers and leadership, and to influence without authority.

Nice to Have

  • Security certifications such as CISSP, CKS, OSCP, AWS/Azure security specialty, or GIAC; networking certifications such as CCNA or AWS Advanced Networking.
  • Experience with multi-region, high-availability architectures, disaster recovery, and chaos engineering practices.
  • Experience in payments, fintech, retail, or other PCI DSS-regulated environments.
  • Exposure to zero-trust architectures, SIEM/SOAR platforms, or building internal security platforms and paved-road tooling.
  • Contributions to open-source security tooling or active participation in the security community.

Interview Process:

Interview #1: Phone Screen with Talent Acquisition Team

Interview #2: Video interview with the Technical Teams (via MS Teams/F2F)

Interview #3: Video interview with the Technical Teams (via MS Teams/F2F)

Interview #4: Video interview with the Hiring Manager (via MS Teams/F2F)

PAR is proud to provide equal employment opportunities (EEO) to all employees and applicants for employment without regard to race, color, religion, sex, national origin, age, disability or genetics. We also provide reasonable accommodations to individuals with disabilities in accordance with applicable laws. If you require reasonable accommodation to complete a job application, pre-employment testing, a job interview or to otherwise participate in the hiring process, or for your role at PAR, please contact accommodations@partech.com. If you’d like more information about your EEO rights as an applicant, please visit the US Department of Labor's website.

Similar roles