Senior DevSecOps Engineer - São Paulo Based

1GLOBAL

São Paulo

Presencial

BRL 327 690 - 655 380

Tempo integral

14 dias+

Recebe mais respostas dos empregadores

Envia um currículo específico para a oferta em poucos minutos.

Vantagens oferecidas por esta oferta de emprego

Growth Opportunities
Dynamic Work Environment
Professional Development
International Experience
Open Communication Culture

Resumo da oferta

An established industry player is seeking a talented Senior DevSecOps/Cloud Security Engineer to enhance their security posture across cloud and hybrid infrastructures. This role involves embedding security at every stage of the infrastructure lifecycle, implementing cloud-native security controls, and leading best practices in CI/CD pipelines. The successful candidate will work in a dynamic environment, collaborating with talented professionals while contributing to innovative solutions that empower enterprises to maximize their mobile connectivity. This is an exciting opportunity to make a significant impact in a fast-growing telecommunications company that values diversity and fosters professional development.

Qualificações

  • 5+ years in DevSecOps or Cloud Security roles with strong AWS expertise.
  • Hands-on experience with Kubernetes security and network security principles.

Responsabilidades

  • Design and implement scalable cloud security controls in AWS.
  • Lead Kubernetes security architecture and integrate security into CI/CD pipelines.

Conhecimentos

AWS Security Services
Kubernetes Security
Network Security Principles
DevSecOps Practices
Scripting/Programming (Python, Go, Bash)
Infrastructure as Code (Terraform, Ansible)
Vulnerability Management
Packet Inspection and Traffic Monitoring
Compliance Frameworks (ISO 27001, SOC2)
Ethical Hacking

Formação académica

Bachelor's Degree in Computer Science or related field

Ferramentas

CrowdStrike
Tenable
Terraform
Ansible
Wireshark
GitOps (Argo CD, Flux)

Descrição da oferta de emprego

1GLOBAL is a technology-driven global mobile communications provider dedicated to empowering enterprises worldwide to unlock the full growth potential of mobile connectivity. With a best-in-class telecom technology platform, a comprehensive suite of globally viable regulatory licenses, and privileged access to the telecom wholesale market, 1GLOBAL is uniquely positioned to deliver seamless compliance and connectivity solutions. Serving the world’s leading banks, corporations, and digital-first businesses—including neo-banks, travel companies, and payment service providers—1GLOBAL connects over 43 million devices globally.


With 2024 full-year revenue exceeding US$100 million, 1GLOBAL is a profitable business generating significant cash flows to fund its ongoing investments in infrastructure, transformation, and growth. 2024 saw major client wins and marked 1GLOBAL’s evolution from a multi-market telecommunication provider to a global technology-driven mobile connectivity powerhouse.


Established in 2022 by experienced tech founders and entrepreneurs Hakan Koç and Pyrros Koussios, 1GLOBAL is a European technology leader driving digital transformation in the global telecommunications market. It operates as a fully regulated Mobile Virtual Network Operator (“MVNO”) in nine countries and as a regulated telecommunications operator in an additional 31 countries. Headquartered in the Netherlands, with world-class R&D hubs in Lisbon, Berlin, and São Paulo, 1GLOBAL employs over 400 experts across 13 countries.

Position Overview

We are looking for a talentedSenior DevSecOps / Cloud Security Engineerto join our Technology Department, with a focus on strengthening and automating our security posture across cloud and hybrid infrastructure.

We are open to hiring this role inLisbon, Portugal, orSão Paulo, Brazil.

As a DevSecOps /Cloud SecurityEngineer, you will be responsible for embedding security into every stage of our infrastructure lifecycle, from design to deployment. You will lead the implementation of cloud-native security controls in AWS, harden Kubernetes environments, and drive best practices across CI/CD pipelines. Your role includes continuous vulnerability management, network protection, monitoring for threats, and working with development, DevOps and IP teams to ensure secure-by-default practices. You’ll also proactively identify risks, secure network perimeters, and automate remediation wherever possible.

A new hire in Sao Paulo would spend their first week in Lisbon/Berlin for onboarding.

Key responsibilities

  • Design and implement scalable cloud security controls in AWS multi-account environments
  • Lead Kubernetes security architecture, including PodSecurity, RBAC, and network policies
  • Enforcezero trust network architectureand secure segmentation across cloud and hybrid environments
  • Integrate security automation into CI/CD pipelines (image scanning, SAST, IaC analysis)
  • Deploy and manage CrowdStrike, Tenable, and similar endpoint and vulnerability management tools
  • Continuously monitor infrastructure for vulnerabilities, threats, and misconfigurations
  • Enforce least privilege IAM policies and secure secrets management
  • Conduct regular audits, penetration testing, and hardening of cloud workloads and host systems
  • Conductnetwork traffic inspectionusing tools like VPC Flow Logs, packet capture, or NetFlow
  • Collaborate with DevOps and IP teams on security-as-code principles
  • Maintain compliance with internal policies and external standards (e.g. CIS, NIST, ISO 27001)
  • Tune and respond to alerts from WAF, IDS/IPS, and SIEM systems
  • Document security controls, incident response playbooks, and operational runbooks
  • Champion a security-first culture through collaboration, training, and awareness

Minimum Qualifications

  • A minimum of 5 years in DevSecOps, Cloud Security, or Infrastructure Security roles
  • Strong expertise in AWS security services (IAM, KMS, GuardDuty, Config, Security Hub, etc.)
  • In-depth understanding ofnetwork securityprinciples (firewalls, routing, segmentation, VPNs, IPsec, etc.)
  • Proven hands-on experience with Kubernetes security (RBAC, NetworkPolicies, OPA/Gatekeeper, Admission Controllers)
  • Experience operating CrowdStrike Falcon and Tenable Nessus / Tenable.io
  • Experience with WAFs, DDoS protection,NIDS/NIPS,and threat intelligence integrations
  • Comfortable withpacket inspection, flow analysis,and traffic monitoring (tcpdump, Wireshark, Suricata, etc.)
  • Proficiency in Infrastructure as Code (Terraform, Terragrunt) and configuration management (Ansible, Packer)
  • Strong scripting/programming skills (Python, Go, or Bash) for automation and tooling
  • Solid understanding of Linux security hardening and secure cloud networking
  • Familiarity with service mesh security in Istio or similar
  • Experience with GitOps workflows using tools like Argo CD or Flux
  • Understanding of vulnerability management, secure software development lifecycle (SSDLC), and security controls for containers
  • Exposure to compliance frameworks like ISO 27001, SOC2, NIST, PCI-DSS is a plus
  • Excellent analytical and problem-solving skills with a proactive mindset
  • Certifications such as AWS Certified Security Specialty, CKS, OSCP, or CISSP is a plus
  • Experience with multi-cloud security (Azure/GCP)
  • Background in ethical hacking, bug bounty programs, or red teaming
  • Familiarity with tools like Falco, Sysdig, Trivy, or eBPF-based runtime security tools

Why 1GLOBAL?

  • Growth Opportunities:Advance your career in one of the fastest growing telecommunications companies, expanding over 40% year-on-year under the leadership of successful tech entrepreneurs.
  • Major Transaction Exposure:Be in the driver’s seat for transactions that will have an impact on the future telco industry.
  • Work with a Talented Team:From the Board and the Founders to the Senior Management Team, you will collaborate daily with the most capable and renowned external advisors, and constantly being exposed to talented and driven individuals.
  • Dynamic Work Environment:Thrive in a collaborative, fast-paced workplace where innovation is encouraged, and every contribution counts.
  • Professional Development:Work alongside industry experts to enhance your skills and knowledge in a cutting-edge field.
  • International Experience:Gain opportunities to work in different 1GLOBAL offices around the world as you grow within the company.
  • Open Communication Culture:Join a team where your ideas are heard, and open dialogue is encouraged, fostering a supportive and transparent work environment.
  • Get Things Done Attitude:Be part of a results-driven team that values efficiency, creativity, and the drive to make a tangible impact in the industry.


1GLOBAL is an equal opportunity employer, we value your character as much as your talent. Diversity drives our innovation, and we offer a collaborative, dynamic, and international work environment. We are excited for you to join our mission to revolutionise connectivity globally.

Obtém a tua avaliação gratuita e confidencial do currículo.
ou arrasta e larga o ficheiro aqui.
Similar jobs

Ofertas semelhantes que vale a pena comparar

Senior DevSecOps Engineer (São Paulo Based)
Senior DevSecOps Engineer (São Paulo Based)

1GLOBAL • São Bernardo do Campo

Híbrido
BRL 223 200 - 334 800
CLT contract
Quarterly performance bonuses
Meal allowance
+3
Senior DevSecOps Engineer (São Paulo Based)
Senior DevSecOps Engineer (São Paulo Based)

1GLOBAL • São Paulo

Presencial
BRL 180 000 - 300 000
Health insurance
Meal allowance
Parental leave
+1
Backend Software Engineer - Golang or Java
Backend Software Engineer - Golang or Java

1GLOBAL • São Paulo

Presencial
BRL 180 000 - 240 000
Meal allowance (Caju card)
Health insurance
Parental leave
+1
Staff Infrastructure Engineer (Lisbon-Based)
Staff Infrastructure Engineer (Lisbon-Based)

1Global • São Paulo

Presencial
BRL 535 000 - 773 000
Growth Opportunities
Major Transaction Exposure
Work with a Talented Team
+5
Data Engineer
Data Engineer

1GLOBAL • São Paulo

Presencial
BRL 180 000 - 260 000
Meal allowance (Caju card)
Health insurance with SulAmérica
Extended parental leave - 180 days
+2
Voice and Services Engineer (São Paulo/Rio de Janeiro Based)
Voice and Services Engineer (São Paulo/Rio de Janeiro Based)

1GLOBAL • São Paulo

Presencial
BRL 220 000 - 320 000
Meal allowance
Health insurance
Parental leave
+2
Voice and Services Engineer (São Paulo/Rio de Janeiro Based)
Voice and Services Engineer (São Paulo/Rio de Janeiro Based)

1GLOBAL • Porto Alegre

Presencial
BRL 150 000 - 230 000
CLT contract
Quarterly performance bonuses
Meal allowance paid into Caju card
+3
.NET Software Engineer
.NET Software Engineer

1GLOBAL • São Paulo

Presencial
BRL 150 000 - 240 000
Meal allowance paid into Caju card—R$
Health insurance with SulAmérica
Extended parental leave
+1
DevOps Engineer - Infrastructure Provisioning & Maintenance
DevOps Engineer - Infrastructure Provisioning & Maintenance

1GLOBAL • Região Geográfica Intermediária de São Paulo

Presencial
BRL 180 000 - 260 000
CLT contract
Quarterly performance bonuses
Meal allowance
+4
Java Software Engineer
Java Software Engineer

1GLOBAL • São Paulo

Híbrido
CLT contract with reliable benefits
Quarterly performance bonuses
Meal allowance
+3