Job Description
Role Purpose
Skill : Github SME (L3/L4)
   Location : Onshore (Syd.) & Offshore (Chennai)
We’re seeking a highly skilled and security-focused GitHub Subject Matter Expert (SME) to drive the modernization and secure consolidation of our code repositories onto the strategic GitHub Enterprise Cloud platform. This role is central to enforcing enterprise-level security standards, implementing modern identity management, and ensuring robust governance across our entire development ecosystem.
The SME will serve as the top technical authority on GitHub architecture, policy enforcement, and complex integrations, transforming our development practices to align with DevSecOps best practices.
Key Responsibilities and Deliverables
The SME will lead and execute initiatives across four critical areas, directly impacting developer productivity and organizational security:
1. Enterprise Identity and Access Management (IAM)
- EMU Implementation: Design and implement the migration from existing Single Sign-On (SSO) to Enterprise Managed Users (EMU) to centralize user lifecycle management and enforce corporate identity standards.
 - IdP Integration: Serve as the technical lead for integrating GitHub Enterprise Cloud with our Identity Provider (IdP) (e.g., Azure AD/Google Workspace) for seamless SSO and Multi-Factor Authentication (MFA).
 - RBAC and Policy: Define, implement, and enforce a Role-Based Access Control (RBAC) model founded on the principle of least privilege across all GitHub Organizations.
 - Token Governance: Overhaul and formalize the Personal Access Token (PAT) policy, implementing short-lived expiry dates and fine-grained permissions for both human and service accounts.
 
2. Repository Migration and CMDB Integration
- Discovery & Migration: Identify, catalogue, and prepare all code repositories across the Woolworths Group for migration to GitHub, ensuring no code is left behind.
 - CMDB Synchronization: Integrate the GitHub repository catalogue with the central Configuration Management Database (CMDB), automating the synchronization of metadata (e.g., repository owner) for real-time visibility and reporting.
 
3. Code Security and Secret Management
- Secret Scanning: Implement and manage GitHub Secret Scanning across all repositories to identify and triage embedded secrets (API keys, passwords).
 - Proactive Protection: Review Push Protection globally across all GitHub repositories to proactively block new secrets from being committed to code history.
 - Vulnerability Management: Systematically analyze secret findings, prioritize remediation efforts based on vulnerability and risk, and formalize the migration of all active secrets into an approved vaulting solution.
 
4. API Security and Incident Response
- API Security Review: Lead a security review of our API utilization and exposure across platforms like Apigee, Microsoft Graph, and Azure API Gateway, using CodeQL to analyze usage patterns and potential vulnerabilities in the code.
 - Incident Activity: Perform in-depth security code reviews to remediate identified issues and quickly identify repositories affected by security incidents, prioritizing those that are externally facing.
 
͏
Required Skills and Qualifications
Technical and Analytical Expertise (Must-Haves)
- Deep GitHub Administration: Extensive, hands-on experience managing and governing GitHub Enterprise Cloud environments, including organization and enterprise-level settings.
 - Identity & Access Management: Proven expertise in SAML SSO, SCIM, and IdP integration (e.g., Azure AD/Google Workspace). Experience with the entire EMU setup and migration lifecycle
 - DevSecOps Automation: Strong scripting skills (e.g., Python, Bash) and experience with GitHub Actions/Workflows to automate security policies, repository metadata updates (CMDB integration), and remediation tasks.
 - API Security: Strong understanding of API security principles (OAuth, scopes, token usage) and experience reviewing code that integrates with major platforms (Apigee, Microsoft Graph).
 
Good to have
- Azure devops admin experience
 
Soft Skills and Certifications
- Analytical Rigor: Exceptional analytical skills with the ability to translate complex security findings (CodeQL results) into prioritized, actionable technical remediation plans.
 - Communication: Excellent verbal and written communication skills, capable of articulating complex security risks to both technical engineers and executive stakeholders.
 
Certification (mandatory): GitHub Certified Administrator or equivalent enterprise security certification (e.g., related to cloud security or identity management).
͏
- Team Management
	
- Resourcing
		
- Forecast talent requirements as per the current and future business needs
 - Hire adequate and right resources for the team
 - Train direct reportees to make right recruitment and selection decisions
 
 - Talent Management
		
- Ensure 100% compliance to Wipro’s standards of adequate onboarding and training for team members to enhance capability & effectiveness
 - Build an internal talent pool of HiPos and ensure their career progression within the organization
 - Promote diversity in leadership positions
 
 - Performance Management
		
- Set goals for direct reportees, conduct timely performance reviews and appraisals, and give constructive feedback to direct reports.
 - Incase of performance issues, take necessary action with zero tolerance for ‘will’ based performance issues
 - Ensure that organizational programs like Performance Nxtarewell understood and that the team is taking the opportunities presented by such programs to their and their levels below
 
 - Employee Satisfaction and Engagement
		
- Lead and drive engagement initiatives for the team
 - Track team satisfaction scores and identify initiatives to build engagement within the team
 - Proactively challenge the team with larger and enriching projects/ initiatives for the organization or team
 - Exercise employee recognition and appreciation
 
 
 - Resourcing
		
 
͏
Deliver
| No. | Performance Parameter | Measure | 
| 1. | Continuous Integration, Deployment & Monitoring | 100% error free on boarding & implementation | 
| 2. | CSAT | Manage service tools  Troubleshoot queries Customer experience  | 
		
| 3. | Capability Building & Team Management | % trained on new age skills, Team attrition %, Employee satisfaction score | 
Experience: 8-10 Years .
Reinvent your world. We are building a modern Wipro. We are an end-to-end digital transformation partner with the boldest ambitions. To realize them, we need people inspired by reinvention. Of yourself, your career, and your skills. We want to see the constant evolution of our business and our industry. It has always been in our DNA - as the world around us changes, so do we. Join a business powered by purpose and a place that empowers you to design your own reinvention.