DevSecOps Engineer

Uberall

Brasil

Sur place

BRL 240 000 - 420 000

Plein temps

14 jours+
Générateur de candidature

N’envoyez pas de CV générique — générez un CV et une lettre de motivation adaptés à ce poste précis.

Passez les filtres ATS

Résumé du poste

Uberall is seeking a proactive DevSecOps Engineer with 5+ years of hands-on experience to join our growing engineering team. You will focus on security-first engineering, building secure cloud infrastructure, CI/CD pipelines, and observability stacks while collaborating with a small team of five DevOps engineers.

You will implement security-as-code practices across the development lifecycle, integrate automated security tooling, and contribute to SOC2/HIPAA/GDPR compliance efforts.

Qualifications

  • Excellent track record in DevSecOps or security-focused engineering.
  • Hands-on experience with cloud security, IaC, and CI/CD security integration.
  • Strong knowledge of Terraform and Kubernetes security best practices.
  • Experience with AWS services including IAM, EC2, RDS, and OpenSearch.
  • Ability to work asynchronously in a distributed, remote-friendly team.

Responsabilités

  • Integrate automated security scanning (SAST/DAST) into CI/CD pipelines.
  • Maintain cloud infrastructure compliance with SOC2, HIPAA, GDPR via automated policies.
  • Implement security-as-code in Terraform/IaC and maintain GitOps workflows.
  • Monitor and respond to cloud security incidents with cross-team collaboration.
  • Design and manage AWS-based infrastructure, including EC2, RDS, OpenSearch, and EKS.
  • Hardening Kubernetes clusters with network policies, RBAC, and pod security standards.
  • Document processes and decisions clearly; report to Head of DevOps.

Connaissances

DevSecOps
Security tooling
Shift-left security
DevOps
AWS
IAM
EC2
RDS
EKS
OpenSearch
Kubernetes
Terraform
CI/CD
Scripting (Bash)
GitOps
Helm
Kustomize
FluxCD
Vulnerability scanning

Outils

GitLab CI
Istio
Helm
Kustomize
FluxCD

Description du poste

About the Role

We are looking for a proactive and skilled DevSecOps Engineer with 5+ years of hands-on experience to join our growing engineering team. You'll be working closely with a small team of five DevOps engineers to build, maintain, and scale secure cloud infrastructure, CI/CD pipelines, and observability stacks. We value a security-first engineering mindset where you will integrate security-as-code practices throughout the entire development lifecycle. If your background is in DevOps, that is a great fit, provided you have always focused on and enjoyed the security aspects of your work, and are now ready to fully commit to a dedicated security role.

We value collaboration, strong communication, and a growth mindset: you'll be expected to contribute ideas, give and receive feedback, and work independently to ensure our platform is as secure as it is performant.

Your Responsibilities
  • Integrate automated security scanning (SAST, DAST, container scanning) into CI/CD pipelines to ensure early detection of vulnerabilities.
  • Maintain and audit cloud infrastructure compliance (e.g., SOC2, HIPAA, GDPR) through automated policies.
  • Implement security best practices within Terraform/IaC to ensure "security-as-code" consistency.
  • Monitor and respond to cloud security incidents, collaborating closely with security and compliance teams.
  • Design, implement, and maintain cloud infrastructure primarily on AWS, with strong focus on EC2, RDS, OpenSearch, and EKS.
  • Help to manage the Kubernetes clusters running our microservices (we have over a hundred in production) as well as the legacy EC2-based platform.
  • Hardening Kubernetes clusters by implementing network policies, RBAC, and secure pod security standards to protect our microservices environment.
  • Collaborate on maintaining our Infrastructure as Code (IaC) maintenance using Terraform.
  • Identify opportunities for automation and optimization in deployment and infrastructure management.
  • Document processes, infrastructure, and decisions clearly and effectively.
  • Partner closely with our Information Security Lead on compliance audits, control evidence, and security roadmap prioritization, while reporting into the Head of DevOps for day-to-day work.
Your Profile

Experience with our stack:

  • Proven experience in a DevSecOps or security-focused engineering role.
  • Familiarity with modern security tooling (vulnerability management, secrets management etc.).
  • Strong understanding of "shift-left" security principles.
  • 3+ years of experience in a DevOps or similar role.
  • Deep experience with AWS services, especially IAM, EC2, RDS, EKS, and OpenSearch.
  • Solid understanding and hands-on experience with Kubernetes and related tooling (we use Helm, Kustomize and FluxCD but we value knowing and adhering to the GitOps practices more than the specific tools).
  • Strong proficiency in Terraform for infrastructure automation.
  • Experience in CI/CD tools.
  • Bash or other shell scripting knowledge

Soft Skills & Mindset:

  • Highly proactive and self-motivated; able to identify and address issues before they escalat e.
  • Strong communication skills, both verbal and written. We are a remote and distributed team so we focus on effective and async communication.
  • Comfortable working collaboratively within a distributed team but also capable of driving tasks independently.
  • Open to giving and receiving feedback, and eager to grow with the team.
  • Analytical mindset with attention to detail and commitment to high-quality work.
Nice-to-Have
  • Experience with GitLab CI and GitLab in general.
  • Familiarity with the JVM.
  • Experience in cost optimization on AWS.
  • Having worked with Istio or other service meshes.
  • Exposure to GRC/compliance automation tooling (Drata, Vanta, or similar)
  • Experience with Vulnerability/dependency scanning tools
Obtenez votre examen gratuit et confidentiel de votre CV.

ou faites glisser et déposez votre fichier ici.

Similar jobs

Postes similaires à comparer

DevOps / Site Reliability Engineer ID70127
DevOps / Site Reliability Engineer ID70127

AgileEngine • São Bernardo do Campo

Sur place
BRL 354 789 - 506 842
Professional growth
Competitive compensation
Exciting projects
+1
Senior DevSecOps Engineer
Senior DevSecOps Engineer

Antisec • Brésil

Sur place
BRL 180 000 - 280 000
Senior Cloud Infrastructure Engineer ( Governance )
Senior Cloud Infrastructure Engineer ( Governance )

Platform Science, Inc. • Londrina

Sur place
BRL 180 000 - 360 000
Staff DevOps Engineer
Staff DevOps Engineer

WEX • São Paulo

Sur place
BRL 300 000 - 420 000
Dev OPs Engineer
Dev OPs Engineer

ANTAS PTE. LTD. • Região Norte

Sur place
BRL 120 000 - 180 000
DevOps Engineer
DevOps Engineer

ST Engineering iDirect • São Paulo

Sur place
BRL 120 000 - 180 000
Security Engineering Manager, AWS DevSecOps
Security Engineering Manager, AWS DevSecOps

Rig Globalconsulting • São Paulo

Sur place
BRL 220 416 - 330 624
Senior DevSecOps Engineer
Senior DevSecOps Engineer

AgileEngine • Brésil

Sur place
BRL 456 157 - 608 210
Professional growth
Competitive compensation
Flextime
+1
DevOps Engineer
DevOps Engineer

Tenchi Security • Brésil

Sur place
BRL 111 600 - 167 400
Senior DevOps Engineer ID56470
Senior DevOps Engineer ID56470

AgileEngine • Brasília

Sur place
BRL 414 508 - 621 762
Professional growth
Competitive compensation
Exciting projects
+1