Senior Devsecops Engineer (São Paulo Based)

1Global

Campinas

Presencial

BRL 210 000 - 300 000

Tempo integral

14 dias+

Recebe mais respostas dos empregadores

Envia um currículo específico para a oferta em poucos minutos.

Vantagens oferecidas por esta oferta de emprego

CLT contract
Quarterly performance bonuses
Meal allowance paid into Caju card
Extended parental leave
Health insurance with SulAmérica
Daycare allowance

Resumo da oferta

1GLOBAL is seeking a Senior DevSecOps / Cloud Security Engineer to strengthen security across cloud and hybrid infrastructure. You will embed security into design and deployment, implement cloud-native controls in AWS, and harden Kubernetes environments while guiding best practices across CI/CD pipelines.

You will lead vulnerability management, IAM and secrets practices, and collaborate with DevOps and IP teams to ensure secure-by-design solutions.

Qualificações

  • 3+ years Cloud Security / DevSecOps / Infrastructure Security
  • Strong AWS security fundamentals (IAM, KMS, GuardDuty, Config, Security Hub)
  • Solid Linux security and cloud networking fundamentals
  • Hands-on Kubernetes security (RBAC, NetworkPolicies, pod security, image scanning)
  • Infrastructure as Code (Terraform) and Git-based workflows
  • Scripting for automation (Python or Go or Bash)
  • Experience with vulnerability management and container security
  • Security-first mindset with strong troubleshooting skills
  • Experience with WAFs and cloud DDoS protection
  • Comfortable with packet inspection, flow analysis, and traffic monitoring

Responsabilidades

  • Design, implement, and evolve scalable cloud security controls across AWS multi-account environments using security-as-code principles
  • Own Kubernetes security architecture including workload isolation, RBAC, pod security standards, and network segmentation
  • Embed security automation into CI/CD pipelines, including image scanning, IaC validation, and policy enforcement
  • Continuously assess cloud and Kubernetes environments for vulnerabilities, misconfigurations, and emerging threats
  • Design and maintain strong IAM and secrets management practices, enforcing least-privilege access
  • Partner with DevOps, Platform, and IP/Network teams to deliver security controls as code and by design
  • Analyze network traffic and security telemetry using flow logs, metrics, and targeted packet inspection where required
  • Ensure alignment with internal security policies and external frameworks (CIS, NIST, ISO 27001, etc.)
  • Produce and maintain clear documentation, including security architectures, runbooks, and incident response playbooks
  • Act as a security champion, driving best practices, awareness, and secure engineering culture across teams

Conhecimentos

Cloud security
AWS security fundamentals
Kubernetes security
Automation scripting
Vulnerability management
Network security
Threat monitoring
Security best practices

Ferramentas

Terraform
Git-based workflows
Python
Go
Bash

Descrição da oferta de emprego

About Us

1GLOBAL is a technology-driven global mobile communications provider, delivering global connectivity solutions to enterprises and consumers. Powered by a best-in-class telecom platform with its own owned and operated global mobile core network in 15 countries, fully fledged in-house developed eSIM technology, and an extensive portfolio of telecom licenses; 1GLOBAL operates as a fully regulated telecommunications provider across 43 countries worldwide.

The company serves many of the world’s leading banks, multinational enterprises, global retailers and digital-first businesses, including neo-banks, global fast moving consumer goods companies, travel leaders, and payment service providers. Today, 1GLOBAL connects more than 80 million people and devices globally, enabling our customers to launch, scale, and innovate with confidence in the mobile ecosystem.

1GLOBAL is a profitable, fast-growing business. With full-year revenues in 2025 exceeding US$200 million and profits of over US$25 million, we generate strong cash flows to fund our growth allowing us to continuously invest in infrastructure, platform innovation, and global expansion. In 2026 also the parent of the Lidl Group acquired a 10% interest in 1GLOBAL as part of a deal for Lidl to offer globally to its 180 million consumers communication services. Recent years have marked a defining phase in 1GLOBAL’s journey, with major enterprise and mass-consumer client wins accelerating its evolution into a global mobile connectivity powerhouse, purpose-built to enable consumer brands to enter and succeed with their own aspirations to offer telecommunications services to their clients.

Founded in 2022 by experienced technology entrepreneurs, Hakan Koç and Pyrros Koussios, 1GLOBAL has rapidly emerged as a European technology leader shaping the future of global telecommunications. It operates as a fully regulated Mobile Virtual Network Operator (MVNO) in 15 countries and as a regulated telecom operator in an additional 28 markets. Headquartered in the Netherlands, with world-class R&D hubs in Lisbon, Berlin, and São Paulo, its team of close to 550 experts across 16 countries is united by a single ambition: to redefine global mobile connectivity through technology, scale, and execution excellence.

About the Ideal Candidate

We are looking for a talented Senior DevSecOps / Cloud Security Engineer to join our Technology Department, with a focus on strengthening and automating our security posture across cloud and hybrid infrastructure.

As a DevSecOps / Cloud Security Engineer, you will be responsible for embedding security into every stage of our infrastructure lifecycle, from design to deployment. You will lead the implementation of cloud-native security controls in AWS, harden Kubernetes environments, and drive best practices across CI/CD pipelines. Your role includes continuous vulnerability management, network protection, monitoring for threats, and working with development, DevOps and IP teams to ensure secure-by-default practices. You’ll also proactively identify risks, secure network perimeters, and automate remediation wherever possible.

About the Role
  • Design, implement, and evolve scalable cloud security controls across AWS multi-account environments using security-as-code principles
  • Own Kubernetes security architecture including workload isolation, RBAC, pod security standards, and network segmentation
  • Embed security automation into CI/CD pipelines, including image scanning, IaC validation, and policy enforcement
  • Continuously assess cloud and Kubernetes environments for vulnerabilities, misconfigurations, and emerging threats
  • Design and maintain strong IAM and secrets management practices, enforcing least-privilege access
  • Partner with DevOps, Platform, and IP/Network teams to deliver security controls as code and by design
  • Analyze network traffic and security telemetry using flow logs, metrics, and targeted packet inspection where required
  • Ensure alignment with internal security policies and external frameworks (CIS, NIST, ISO 27001, etc.)
  • Produce and maintain clear documentation, including security architectures, runbooks, and incident response playbooks
  • Act as a security champion, driving best practices, awareness, and secure engineering culture across teams
Requirements
About You
  • A minimum of 3+ years Cloud Security / DevSecOps / Infrastructure Security
  • Strong AWS security fundamentals (IAM, KMS, GuardDuty, Config, Security Hub)
  • Solid Linux security and cloud networking fundamentals
  • Hands‑on Kubernetes security (RBAC, NetworkPolicies, pod security, image scanning)
  • Infrastructure as Code (Terraform) and Git-based workflows
  • Scripting for automation (Python or Go or Bash)
  • Experience with vulnerability management and container security
  • Security‑first mindset with strong troubleshooting skills
  • Experience with WAFs and cloud DDoS protection
  • Comfortable with packet inspection, flow analysis, and traffic monitoring (tcpdump, Wireshark, Suricata, etc.)
Benefits
What we offer?
  • CLT contract — enjoy job stability and reliable benefits that value your work
  • Quarterly performance bonuses to reward your hard work and achievements
  • Meal allowance paid into Caju card — R$100 per working day
  • Extended parental leave — 180 days of maternity leave and 20 days of paternity leave
  • Health insurance with SulAmérica — 50% covered by the company
  • Daycare allowance provided to mothers with children under 3 years old — R$500 per month per child
Why 1GLOBAL?
  • Growth Opportunities: Advance your career in one of the fastest growing telecommunications companies, expanding over 50% year‑on‑year under the leadership of successful tech entrepreneurs.
  • Major Transaction Exposure: Be in the driver’s seat for transactions that will have an impact on the future telco industry.
  • Work with a Talented Team: From the Board and the Founders to the Senior Management Team, you will collaborate daily with the most capable and renowned external advisors and constantly being exposed to talented and driven individuals.
  • Dynamic Work Environment: Thrive in a collaborative, fast‑paced workplace where innovation is encouraged, and every contribution counts.
  • Professional Development: Work alongside industry experts to enhance your skills and knowledge in a cutting‑edge field.
  • International Experience: Gain opportunities to work in different 1GLOBAL offices around the world as you grow within the company.
  • Open Communication Culture: Join a team where your ideas are heard, and open dialogue is encouraged, fostering a supportive and transparent work environment.
  • Get Things Done Attitude: Be part of a results‑driven team that values efficiency, creativity, and the drive to make a tangible impact in the industry.

1GLOBAL is an equal opportunity employer, we value your character as much as your talent. Diversity drives our innovation, and we offer a collaborative, dynamic, and international work environment. We are excited for you to join our mission to revolutionise connectivity globally.

Obtém a tua avaliação gratuita e confidencial do currículo.
ou arrasta e larga o ficheiro aqui.
Similar jobs

Ofertas semelhantes que vale a pena comparar

Senior Devsecops Engineer (São Paulo Based)
Senior Devsecops Engineer (São Paulo Based)

1Global • Rio de Janeiro

Presencial
BRL 180 000 - 300 000
CLT contract
Quarterly performance bonuses
Meal allowance paid into Caju card
+3
Senior DevSecOps Engineer (São Paulo Based)
Senior DevSecOps Engineer (São Paulo Based)

1GLOBAL • São Paulo

Presencial
BRL 180 000 - 300 000
Health insurance
Meal allowance
Parental leave
+1
Senior DevSecOps Engineer (São Paulo Based)
Senior DevSecOps Engineer (São Paulo Based)

1GLOBAL • São Bernardo do Campo

Híbrido
BRL 223 200 - 334 800
CLT contract
Quarterly performance bonuses
Meal allowance
+3
Java Team Lead - São Paulo Based
Java Team Lead - São Paulo Based

1GLOBAL • São Paulo

Presencial
BRL 120 000 - 180 000
CLT contract
Quarterly performance bonuses
Meal allowance paid into Caju card
+4
.NET Software Engineer
.NET Software Engineer

1GLOBAL • São Paulo

Presencial
BRL 150 000 - 240 000
Meal allowance paid into Caju card—R$
Health insurance with SulAmérica
Extended parental leave
+1
DevOps Engineer - Infrastructure Provisioning & Maintenance
DevOps Engineer - Infrastructure Provisioning & Maintenance

1GLOBAL • Região Geográfica Intermediária de São Paulo

Presencial
BRL 180 000 - 260 000
CLT contract
Quarterly performance bonuses
Meal allowance
+4
Java Software Engineer
Java Software Engineer

1GLOBAL • São Paulo

Híbrido
CLT contract with reliable benefits
Quarterly performance bonuses
Meal allowance
+3
Backend Software Engineer - Golang or Java
Backend Software Engineer - Golang or Java

1GLOBAL • São Paulo

Presencial
BRL 180 000 - 300 000
CLT contract
Quarterly performance bonuses
Meal allowance paid into Caju card
+3
Voice and Services Engineer - São Paulo/Rio de Janeiro Based
Voice and Services Engineer - São Paulo/Rio de Janeiro Based

1GLOBAL • São Paulo

Presencial
BRL 167 400 - 223 200
CLT contract with job stability
Quarterly performance bonuses
Meal allowance paid into Caju card — R$100 per working day
+4
Voice and Services Engineer (São Paulo/Rio de Janeiro Based)
Voice and Services Engineer (São Paulo/Rio de Janeiro Based)

1GLOBAL • Curitiba

Presencial
BRL 100 000 - 150 000
Quarterly performance bonuses
Meal allowance of R$100 per working day
Health insurance (50% covered)
+2