Co-creating Solutions for a Better Future
Senior Security Analyst – DevSecOps
Location
Brazil
Posted
63 days ago
Salary
0
Seniority
Senior
Job Description
Senior Security Analyst – DevSecOps
Stefanini Brasil
• Lead the adoption of DevSecOps practices in solutions delivered by vendors, ensuring the incorporation of security requirements, definition of controls (security gates), and generation of audit evidence • Work together with Cybersecurity specialists to conduct security assessments of systems and services, including Threat Modeling and support for Penetration Testing, from coordination to follow-up on remediation • Perform and support Secure SDLC activities, including requirements definition, architecture reviews, and release validation • Support identity and access management (IDAM) controls, including Movers, Leavers processes, and access recertification • Implement and maintain service account controls, including dynamic password management (rotation, least privilege, and traceability) • Support integrations and cryptographic processes involving HSMs, ensuring alignment with controls and operational key management procedures • Execute and support production changes following established standards (e.g., change governance, testing, and documentation) • Manage and escalate technical risks that may impact operations or customers, acting on incidents, problems, and changes • Maintain technical documentation and operational runbooks, ensuring resilience, governance, and compliance
Job Requirements
- Minimum of 5 years' experience in financial institutions, with knowledge of the Brazilian financial market and Core Banking processes
- Hands-on experience with DevSecOps and working with software developed by third-party vendors
- Proven experience collaborating with security teams in:
- Threat Modeling
- Coordination of Penetration Testing and remediation management
- Identity and access controls (IDAM)
- Service account management and password rotation
- Concepts and operation with HSM
- Secure SDLC practices
- Solid knowledge of Windows and Unix/Linux environments
- Experience with tools such as ServiceNow, Splunk, Jira, and identity services (LDAP/Active Directory)
- Stakeholder management skills (internal teams and global vendors) and clear communication
- Advanced English
Benefits
- Meal allowance or meal voucher
- Discounts on courses, universities, and language schools
- Stefanini Academy — a platform with free, up-to-date online courses with certificates
- Mentoring
- Benefits club for consultations and medical exams
- Health insurance
- Dental insurance
- Benefits and discounts club at top establishments
- Travel club
- Pet care benefits
Related Guides
Related Categories
Related Job Pages
More DevOps Engineer Jobs
SRE – Clickhouse
PostHogProduct analytics, session replay, feature flags, A/B testing, data warehouse, CDP, surveys. PostHog does that.
• Managing large fleets of EC2-based VMs, disks, and networking for data-intensive workloads • Improving operational tooling around deploys, schema changes, backups, restores, and incident response • Working closely with ClickHouse engineers to turn database-level needs into infra-level solutions • Reducing operational load by identifying repeat pain points and eliminating them through code and self-healing automation • Participating in on-call and incident response, with a strong focus on making incidents rarer over time • You’ll have room to design and automate, not just respond to alerts.
• Design, build, and maintain CI/CD pipelines in Harness.io to support Salesforce metadata deployments across multiple sandbox and production environments. • Develop and support Python-based orchestration and business logic layers to extend native Harness.io capabilities. • Create and maintain pipeline YAML configurations, reusable templates, and standardized components aligned to a three-layer architecture (pipeline, orchestration, business logic). • Build and manage custom tooling, including delta deployment generation, environment drift detection, backup and restore utilities, and structured reporting solutions. • Administer container images, artifact repositories, and pipeline infrastructure dependencies. • Implement and maintain integrations with notification systems, work item tracking tools, and source control platforms. • Troubleshoot pipeline failures, connectivity issues, and deployment errors using a proactive, fail-fast diagnostic approach. • Act as the primary point of contact for deployment triage, diagnosing and resolving failures across feature, release, hotfix, and back-promotion pipelines. • Manage the end-to-end release lifecycle, including branch creation, work item aggregation, manifest generation, validation, and production deployment. • Collaborate with developers, administrators, and release managers to ensure seamless promotion of metadata across environments from development through production. • Maintain and enforce branching strategies, including feature, promotion, release, hotfix, and environment branches. • Provision, configure, and manage Salesforce sandbox environments to support the software development lifecycle. • Provide operational support and guidance to cross-functional teams spanning development, QA, and release management. • Define and execute the DevSecOps roadmap to improve deployment speed, reliability, and overall developer experience. • Evaluate, pilot, and integrate new tools and capabilities, including code quality gates, security scanning, and automated testing frameworks. • Drive continuous improvement initiatives such as delta deployment optimization, automated environment refreshes, and drift remediation processes. • Develop and maintain comprehensive documentation, including architecture diagrams, standard operating procedures, runbooks, and onboarding materials. • Partner with cross-functional stakeholders to align DevSecOps practices with organizational goals and compliance requirements. • Stay current with platform advancements, Salesforce CLI updates, and industry best practices to guide platform evolution. • Mentor team members on DevSecOps principles, branching strategies, and secure development workflows. • Performs other job-related duties as assigned.
At Capgemini Engineering, the world leader in engineering services, we bring together a global team of engineers, scientists, and architects to help the world’s most innovative companies unleash their potential. From autonomous cars to life-saving robots, our digital and software technology experts think outside the box as they provide unique R&D and engineering services across all industries. Join us for a career full of opportunities. Where you can make a difference. Where no two days are the same. Job Description: We are looking for a DevOps Engineer to join an engineering group that is a leader in virtualization for in-memory computing. The group’s innovative architecture significantly reduces cloud costs by virtualizing NVM as system memory. Key Responsibilities: - Develop and apply automation/testing processes for a system-level software in cloud environments (AWS/Azure/GCP) - Liaise with internal engineering and support teams to plan, design, and code tests for new features, software deployment, recreation of bugs/cases, etc. Requirements: - Minimum 3-years DevOps experience working with public cloud infrastructure - Minimum 2-years Linux experience (shell/cmdline; knowledge level similar to LPIC-1 or CompTIA Linux+) - Experience with Docker/Kubernetes - Experience in building CI/CD pipelines with Jenkins or GitHub CI/CD - Mastery of Python and Bash scripting, experience with other cloud CI/CD languages a plus (JavaScript, Go, Groovy, etc) - At least 2 years of experience with designing and implementing automation for cloud/CI/CD environments for automated testing or delivery - Excellent communication skills, ability to work independently and as part of a team - Excellent English skills, including oral and written communication - Self-starter, ability to learn from documentation and work with minimal guidance. What you will love about working here? - We care about all our employees and want them to feel as comfortable as possible. That's why we offer them health insurance from the first days, regardless of the probationary period. - The gift from the company - Christmas holidays from 25 December to 31 December. - Сooperation with Superhumans center and Veteran HUB. Capgemini Engineering has supported the launch of psychological rehabilitation department of Superhumans. Our team also donnated over UAH 500 000 prosthetics for three Ukrainian defenders. Currently, we support psychological counseling provided by the Veteran Hub, and we have implemented a internal policy making the company friendly to military and veterans with the assistance of the Hub. Capgemini is a global business and technology transformation partner, helping organizations to accelerate their dual transition to a digital and sustainable world, while creating tangible impact for enterprises and society. It is a responsible and diverse group of 340,000 team members in more than 50 countries. With its strong over 55-year heritage, Capgemini is trusted by its clients to unlock the value of technology to address the entire breadth of their business needs. It delivers end-to-end services and solutions leveraging strengths from strategy and design to engineering, all fueled by its market leading capabilities in AI, generative AI, cloud and data, combined with its deep industry expertise and partner ecosystem. #LI-Remote
Senior DevOps Engineer
CiklumAt Ciklum, we are always exploring innovations, empowering each other to achieve more, and engineering solutions that matter. With us, you’ll work with cutting-edge technologies, contribute to impactful projects, and be part of a One Team culture that values collaboration and progress. As one of Ukraine’s largest IT companies and a top employer recognized by Forbes, we’ve spent over 20 years delivering meaningful tech solutions. We proudly support diverse talent and military veterans, recognizing their unique skills and perspectives they bring to shaping the future.
Ciklum is looking for a Senior DevOps Engineer to join our team full-time in Ukraine. We are a custom product engineering company that supports both multinational organizations and scaling startups to solve their most complex business challenges. With a global team of over 4,000 highly skilled developers, consultants, analysts and product owners, we engineer technology that redefines industries and shapes the way people live. About the role: As a Senior DevOps Engineer, become a part of a cross-functional development team engineering experiences of tomorrow. As a DevOps Engineer, you will be part of a Messaging Integrations team within a client operating in the online food delivery domain, helping to build world-class messaging solutions. You will work alongside a team of engineers supporting other engineering teams by providing capabilities, tools, and support that enable consistent, safe, and fast delivery. Messaging acts as the central nervous system of the platform and microservices landscape. The team focuses on enabling integrations in this space, with an emphasis on innovation, efficiency, and reliability. The goal is to simplify messaging, allowing product and engineering teams to focus on customer value. The role involves contributing to the design and architecture of the developer experience, as well as cloud-based messaging and microservices platforms, and is well-suited for engineers who enjoy solving complex, event-driven challenges and thinking outside the box. With almost 100 million active users across 25 countries, they’re a global food tech company As a recently formed team, they have many opportunities and ideas for sharing value back to the customers within their continuously expanding platform. They're looking for talented and trusted engineers to help them impress their customers. Responsibilities: - Strong interest in event-driven and microservices architectures, with focus on how systems communicate and scale - Good understanding of APIs (both synchronous and asynchronous) and their role in distributed systems - Collaborate closely with engineering teams across multiple locations, supporting best practices, standards, and system design from a platform/infrastructure perspective - Act as a supportive partner for engineering teams, helping to solve challenges related to messaging, integrations, and system reliability - Contribute to improving platform capabilities, tooling, and processes that enable teams to deliver services efficiently and safely - Take ownership of workstreams, track progress, and communicate updates clearly within the team - Drive continuous improvement by suggesting and implementing better processes, designs, and operational practices - Ensure solutions are reliable in production, supporting stability, performance, and scalability - Participate in on-call rotation to support production systems and ensure smooth operation Requirements: - Deliver and support reliable platform and infrastructure solutions, ensuring quality and stability across the lifecycle - Basic understanding of coding/scripting (e.g. Go, C#, or similar) to support automation and platform tasks - Hands-on experience with messaging technologies (e.g. Kafka, SNS/SQS), event-driven architecture, and/or real-time data/streaming concepts - Ability to work independently and collaborate to solve complex infrastructure and system challenges - Hands-on experience with AWS - Experience working in Agile environments (Scrum, Kanban) - Strong analytical thinking and communication skills - Hands-on exposure to messaging systems, event-driven architecture, or real-time data/streaming concepts Desirable: - Knowledge of C# .NET - HTTP, REST or other API technologies (we use OpenSpec or AsyncAPI) - Modern DevOps mentality, frequent CI/CD release cycles, aware of the value of self service - Knowledge of infrastructure as code tools such as pulumi, CDK, terraform - Working in microservices and event-driven architecture - Serverless computing and cloud architecture patterns - Working within an e-commerce business where reliability is critical - Experience with frameworks to manage containerized workloads and services, such as Kubernetes What`s in it for you? - Strong community: Work alongside top professionals in a friendly, open-door environment - Growth focus: Take on large-scale projects with a global impact and expand your expertise - Tailored learning: Boost your skills with internal events (meetups, conferences, workshops), Udemy access, language courses, and company-paid certifications - Endless opportunities: Explore diverse domains through internal mobility, finding the best fit to gain hands-on experience with cutting-edge technologies - Flexibility: Enjoy radical flexibility – work remotely or from an office, your choice - Care: We’ve got you covered with company-paid medical insurance, mental health support, and financial & legal consultations About us: At Ciklum, we are always exploring innovations, empowering each other to achieve more, and engineering solutions that matter. With us, you’ll work with cutting-edge technologies, contribute to impactful projects, and be part of a One Team culture that values collaboration and progress. As one of Ukraine’s largest IT companies and a top employer recognized by Forbes, we’ve spent over 20 years delivering meaningful tech solutions. We proudly support diverse talent and military veterans, recognizing their unique skills and perspectives they bring to shaping the future. Want to learn more about us? Follow us on Instagram, Facebook, LinkedIn. Explore, empower, engineer with Ciklum! Interested already? We would love to get to know you! Submit your application. We can’t wait to see you at Ciklum.




