Senior Azure Devsecops Engineer

Growth Acceleration Partners

Medellín

A distancia

COP 180.000.000 - 300.000.000

Jornada completa

Hace 5 días
Sé de los primeros/as/es en solicitar esta vacante
Generador de candidaturas

Una candidatura hecha para este puesto de trabajo — un currículum y una carta de presentación adaptados que responden directamente a la oferta.

Supera los filtros ATS

Descripción de la vacante

Growth Acceleration Partners seeks a Senior Azure DevSecOps Engineer to lead security design, implementation, and automation across our Azure cloud ecosystem and CI/CD pipelines. You will embed security into every SDLC phase, partnering with DevOps, engineering, and product teams to safeguard cloud infrastructure, apps, and APIs.

Combine cloud security expertise with AI‑driven security tools to stay ahead of evolving threats.

Formación

  • Bachelor's degree in Computer Science, Cybersecurity, Information Technology, Software Engineering, or related field.
  • 7+ years of professional experience in Cloud Security, Application Security, DevSecOps, or Information Security with strong Azure focus.
  • Hands-on experience architecting and managing security controls within Azure (Azure AD/Entra ID, Defender for Cloud, Key Vault).
  • Experience embedding automated security checks into CI/CD pipelines (Azure DevOps, GitHub Actions, Jenkins) using SAST/DAST/IAST.
  • Threat modeling, vulnerability management, and container/Kubernetes (AKS) security expertise.
  • Scripting skills (Python, PowerShell, Bash) for automation and log analysis.
  • Experience with AI-assisted developer tools or AI-powered security solutions.

Responsabilidades

  • Architect, implement, and maintain enterprise security controls across Azure environments (IAM, network, container security).
  • Embed secure SDLC practices into automated CI/CD pipelines with SAST/DAST/IAST and dependency scanning.
  • Lead threat modeling assessments and design mitigation for microservices, containers, and serverless apps.
  • Deploy and manage Web Application Firewalls, API Gateways, and centralized secrets management.
  • Monitor cloud security events using SIEM, CSPM, and CWPP platforms and participate in incident response.
  • Develop cloud reference architectures, policies, and automated compliance guardrails.
  • Leverage AI tooling to automate security workflows and log analysis.
  • Mentor developers on secure coding across engineering teams.

Conocimientos

Azure Security
DevSecOps
CI/CD Pipelines
Threat Modeling
Python Scripting
AI Security
Secure Coding
AKS Security

Educación

Bachelor's Degree in Computer Science or related field

Herramientas

Terraform
Bicep
Azure DevOps
GitHub Actions
Jenkins

Descripción del empleo

WHAT WE DO

Founded in 2007, Growth Acceleration Partners (GAP) is a consulting and technology services company. We consult, design, build and modernize revenue-generating software and data engineering solutions for clients. With modernization services and AI tools, we help businesses achieve a competitive advantage through technology. GAP’s remote, integrated engineering teams use end-to-end solutions to innovate and align with your business goals. We have 600+ English-speaking engineers based in Latin America and approximately 20 U.S.-based engineers. With some of the highest customer satisfaction scores in the industry, GAP’s focus is customer and employee success.

GAP is a woman-owned company headquartered in Austin Texas. We are a values-based company focused on growing our people by investing in education, onsite English classes and training in the latest technologies, including AI, data analytics and machine learning. Our goal is to provide solutions for our customers that help them achieve critical business outcomes, while enabling our GAPSters and our communities to attain long‑term success.

Summary

We are looking for a Senior Azure DevSecOps Engineer to lead the design, implementation, and automation of security controls across our Microsoft Azure cloud ecosystem and CI/CD pipelines. In this high‑impact role, you will embed security into every phase of the Software Development Lifecycle (SDLC), partnering closely with DevOps, engineering, and product teams to safeguard cloud infrastructure, applications, and APIs. You will combine deep cloud security expertise with modern AI‑driven security tools, threat modeling, and automated DevSecOps workflows to proactively defend against evolving threats and ensure continuous platform compliance.

Education
  • Bachelor’s Degree in Computer Science, Cybersecurity, Information Technology, Software Engineering, or a related technical field.

Professional Experience
  • 7+ years of professional experience in Cloud Security, Application Security, DevSecOps, or Information Security with a strong focus on Microsoft Azure

  • Hands-on experience architecting and managing security controls within Azure (Azure AD / Entra ID, Defender for Cloud, Key Vault, Application Gateways)

  • Proven track record embedding automated security checks into CI/CD pipelines (Azure DevOps, GitHub Actions, Jenkins) using SAST, DAST, IAST, and dependency scanning

  • Demonstrated expertise in threat modeling, vulnerability management, penetration testing, and container/Kubernetes (AKS) security

  • Experience using scripting languages (Python, PowerShell, or Bash) to build security automation and log analysis workflows

  • Practical experience integrating AI-assisted developer tools (e.g., GitHub Copilot) or AI-powered threat detection and remediation into software delivery practices

Key Responsibilities
  • Architect, implement, and maintain enterprise security controls across Azure environments, encompassing IAM, network security, container security, and workload protection

  • Embed secure SDLC practices into automated CI/CD pipelines, integrating SAST/DAST/IAST tools, dependency scanning, and OWASP Top 10 compliance checks

  • Lead threat modeling assessments, evaluate cloud architecture risks, and design mitigation strategies for microservices, containers, and serverless applications

  • Deploy and manage Web Application Firewalls (WAF), API Gateways, and centralized secrets management solutions

  • Monitor cloud security events using SIEM, CSPM, and CWPP platforms, assisting in threat hunting and incident response procedures

  • Develop and maintain cloud reference architectures, security policies, and automated compliance guardrails

  • Leverage AI productivity tools and security scripting (Python, PowerShell, Bash) to automate repetitive security workflows, log analysis, and triage

  • Collaborate cross‑functionally with engineering teams to mentor developers on secure coding standards and proactive risk reduction

Required Technical Skills

Strong experience in several of the following areas:

  • Cloud & Azure Security: Deep technical proficiency with Microsoft Azure, Azure AD / Entra ID, Defender for Cloud, Azure Key Vault, Network Security Groups, and Application Gateways

  • DevSecOps & CI/CD Pipelines: Experience integrating automated security testing into Azure DevOps, GitHub Actions, or Jenkins pipelines

  • Application Security & Tooling: Secure SDLC methodologies, OWASP Top 10, SAST/DAST/IAST tools, dependency scanning, and container/Kubernetes (AKS) security

  • WAF & API Protection: Hands‑on experience with Web Application Firewalls (e.g., Cloudflare, F5, Akamai), API Gateways, and secrets management

  • Scripting & IaC: Proficient in Python, PowerShell, or Bash for automation, alongside Infrastructure as Code (Terraform or Bicep)

  • AI Security Integration: Familiarity with AI‑driven security automation, AI code assistants (GitHub Copilot, Cursor), or AI‑powered log analysis tools

Nice to Have
  • Industry security certifications (e.g., CySA+, Azure Security Engineer Associate AZ-500, CISSP, or CCSP)

  • Hands‑on experience with Cloud Security Posture Management (CSPM) platforms, SIEM tools, serverless security, and ITSM platforms (e.g., ServiceNow)

  • Exposure to securing AI/ML workloads, vector databases, or LLM API endpoints in Azure cloud environments

Soft Skills
  • Advanced English proficiency (written and verbal)

  • Exceptional analytical, diagnostic, and risk‑assessment capabilities

  • Strong consultative and communication skills to influence secure design decisions across engineering and business teams

  • Proactive mindset with high technical autonomy, accountability, and eagerness to stay ahead of emerging cybersecurity threats

At Growth Acceleration Partners, we're an equal opportunity employer committed to building a diverse and inclusive team. We value everyone's unique background, and we provide equal opportunities regardless of race, color, creed, religion, sexual orientation, gender identity, age, national origin, disability, marital status, veteran status or any other personal right protected by law. We foster a culture of belonging and strive to provide a welcoming environment where everyone feels safe to contribute and grow.

Consigue la evaluación confidencial y gratuita de tu currículum.

o arrastra y suelta tu archivo aquí

Similar jobs

Puestos de trabajo similares que vale la pena comparar

Senior Azure DevSecOps Engineer: Cloud Security Lead
Senior Azure DevSecOps Engineer: Cloud Security Lead

Growth Acceleration Partners • Medellín

A distancia
COP 180.000.000 - 300.000.000
Senior DevOps Engineer (Azure)
Senior DevOps Engineer (Azure)

MPS Group LLC • Bogotá ciudad

Presencial
COP 120.000.000 - 180.000.000
8995 - Cybersecurity Cloud, Infrastructure and ITOps Senior, Lead Argentina, Colombia, Mexico, Paraguay, Bolivia, United Kingdom Published 7 days ago
8995 - Cybersecurity Cloud, Infrastructure and ITOps Senior, Lead Argentina, Colombia, Mexico, Paraguay, Bolivia, United Kingdom Published 7 days ago

Unosquare, Inc. • Colombia

A distancia
COP 186.840.000 - 280.260.000
Cloud Engineer (Azure)
Cloud Engineer (Azure)

Aptimized • Colombia

Presencial
COP 120.000.000 - 180.000.000
Microsoft IAM & Infrastructure Security Engineer - Senior
Microsoft IAM & Infrastructure Security Engineer - Senior

Cognizant • Colombia

Presencial
COP 12.000.000 - 18.000.000
Senior/Lead DevSecOps Engineer (Azure, Terraform, Sentinel)
Senior/Lead DevSecOps Engineer (Azure, Terraform, Sentinel)

N-iX • Colombia

Presencial
COP 300.812.193 - 434.506.501
Flexible working format
Competitive salary
Education reimbursement
+2
Senior Cybersecurity Operations Analyst
Senior Cybersecurity Operations Analyst

Kruger Inc. • Medellín

Presencial
COP 120.000.000 - 180.000.000
Solution Architect (.NET/C#) - Cloud Enablement, Remote: Colombia - Costa Rica, Fulltime.
Solution Architect (.NET/C#) - Cloud Enablement, Remote: Colombia - Costa Rica, Fulltime.

Gorilla Logic • Colombia

Presencial
COP 378.561.000 - 567.841.000
Senior Cloud Infrastructure Engineer, Talent Pipeline (Remote LATAM)
Senior Cloud Infrastructure Engineer, Talent Pipeline (Remote LATAM)

Atmosera • Colombia

A distancia
COP 186.840.000 - 280.260.000
Remote work
Travel opportunities
Senior .NET Engineer – Azure
Senior .NET Engineer – Azure

Applaudo • Bogotá

Presencial
COP 120.000.000 - 220.000.000