Job Closed
This listing is no longer active.
We help companies achieve their goals and expand their business through technology.
CO - DevSecOps - 234
Location
Brazil
Posted
117 days ago
Salary
0
Seniority
Mid Level
Job Description
CO - DevSecOps - 234
Thaloz
Clearco is hiring a Senior DevSecOps Engineer to strengthen cloud security, platform reliability, and incident response across our systems. This hands-on role sits at the intersection of infrastructure, security, and reliability, and focuses on making security a practical, repeatable part of how we build and operate services. You will work closely with Product Engineering, Data Science, and IT to implement secure-by-default guardrails, improve detection and telemetry, and drive vulnerability and supply-chain risk reduction across our GCP environment and CI/CD pipelines. This is an opportunity to shape security posture and practices at scale while delivering measurable impact. Responsibilities - Own platform security and reliability improvements across our GCP environment. - Harden identity and network controls in GCP, including IAM patterns, service accounts/workload identity, organization policies, and network segmentation. - Build security into CI/CD by implementing and enforcing SAST, SCA, secret detection, and container/image scanning. - Drive vulnerability management and reduce software supply chain risk across services, dependencies, container images, and build pipelines. - Lead threat modeling and security design reviews for new features and significant architecture changes. - Improve security observability by tuning telemetry, reducing alert noise, and building high-signal detections and dashboards. - Lead investigations and coordinate incident response for security alerts and incidents, and drive post-incident improvements. - Champion secure SDLC practices through standards, documentation, guardrails, and coaching for product engineering teams. - Define and maintain end-user device security standards, including requirements for EDR and remote access tooling, and partner with stakeholders for execution. - Support compliance and audit readiness by conducting internal security reviews and helping align practices with SOC 2, GDPR, and NIST frameworks.
Job Requirements
- 5+ years of experience across cloud infrastructure and security (DevSecOps, platform security, security engineering, or SRE with strong security focus).
- Deep hands-on experience with Google Cloud Platform (GCP); AWS experience acceptable as alternative.
- Strong hands-on experience with Kubernetes and service networking.
- Proven Infrastructure-as-Code skills (for example Terraform) and ability to build reusable automation.
- Practical experience integrating security into CI/CD workflows (implementing and enforcing scanners and policy controls).
- Experience driving vulnerability management and addressing software supply chain risk.
- Experience leading incident response: investigation, coordination, post-incident follow-through, and continuous improvement.
- Strong fundamentals in cloud networking and identity controls (IAM, service accounts, workload identity).
- Comfortable partnering cross-functionally and driving work end-to-end in ambiguous areas.
- Hands-on experience with container tooling and build pipelines (Docker, Jenkins).
- Nice to Have
- Experience with Istio.
- Familiarity with application security scanning tools such as Semgrep, Veracode, or GitHub Advanced Security.
- Familiarity with CrowdStrike (EDR) and Splunk (SIEM).
- Experience supporting compliance and audit readiness for SOC 2, GDPR, or NIST, including evidence support.
Related Guides
Related Categories
Related Job Pages
More DevOps Engineer Jobs
Senior DevOps Engineer
ICFFounded in 1969, ICF is a global advisory and technology services company headquartered in Reston, Virginia. It delivers data-driven solutions across energy, en
• Implement best in class cloud-based solutions in Azure using infrastructure as code (Terraform) • Deploy, setup, and run infrastructure configurations for various Azure services • Manage and optimize Databricks clusters, ensuring high availability, performance, and security • Architect and implement scalable, reliable, and secure platform solutions • Manage Kubernetes clusters including deployment pipelines, tuning, and troubleshooting • Write Python based APIs and design relational data models • Engage with technical stakeholders including but not limited to application development, networking, infrastructure, information security, risk, enterprise identity and access management, and security operations • Enable and optimize the automation of application and infrastructure environments • Be part of a team where you collaborate to build cloud infrastructure, with an understanding of Kubernetes, Containers and serverless functions • Develop, maintain and improve continuous integration/continuous delivery (CI/CD) pipelines for delivering features, fixes and system updates in development, integration and production environments. • Set up, integrate, and maintain a scalable, stable set of CI/CD tools to support development, testing, and security scanning. • Implement application metrics collection and log aggregation to provide continuous monitoring capabilities, track all aspects of the system, infrastructure, performance, application errors and roll up metrics. • Analyze functional and non-functional business requirements, translate them into technical operational requirements, and propose CI/CD pipelines with tools and plugins. • Making a big impact as part of a small team that’s pushing boundaries
Senior Site Reliability Engineer
Dealer TireWe’re more than tires and parts. We’re a team on a mission to revolutionize the automobile dealer channel.
• Serve as a primary responder for production incidents, owning triage through resolution — including root cause analysis, infrastructure remediation, and order automation recovery. • Work directly alongside the Manager, Consumer Technology Site Reliability, and Helpdesk to handle day-to-day triage and fix responsibilities. • Partner with development teams to evaluate production risk before deployment. • Monitor production environment and proactively surface anomalies, enhancement opportunities, and risk areas to leadership. • Assist with data cleanup and order recovery operations following production incidents. • Support testing and validation of infrastructure changes prior to production deployment.
• Design, deploy, and manage cloud infrastructure on Microsoft Azure to ensure availability, scalability, and security. • Automate infrastructure provisioning and configuration with Terraform and Azure DevOps pipelines. • Develop, implement, and maintain CI/CD pipelines to streamline application delivery and infrastructure updates. • Manage containerized applications using Kubernetes and Docker, including orchestration, scaling, and monitoring. • Perform advanced Linux system administration, including tuning, troubleshooting, and security hardening. • Write and maintain automation scripts using Python, Bash, Awk, and Sed to support operational workflows. • Monitor system health and performance using DataDog and resolve incidents to maintain service reliability. • Manage and optimize relational (e.g., Oracle, MySQL) and NoSQL (e.g., MongoDB) databases for performance and integrity. • Implement and manage secure access controls, including SSH certificate management and key best practices. • Use Azure DevOps and GitHub for version control, code reviews, and deployment automation. • Configure network components in cloud environments, including virtual networks, subnets, firewalls, and routing. • Collaborate with software engineering, QA, and product teams and support global, 24/7 operations and knowledge sharing.
Senior DevOps Engineer – Talent Connection
NortalBei Nortal gestalten wir die digitale Zukunft des öffentlichen Sektors in Deutschland – eine große und wichtige Aufgabe, der wir uns mit fachlichem Anspruch, Verantwortung und Verlässlichkeit widmen. Seit über 25 Jahren gestalten wir die digitale Transformation – mit komplexen Lösungen für globale Unternehmen und Organisationen im öffentlichen Sektor. Wir arbeiten seit Jahren eng und erfolgreich mit MACH zusammen. Dieses Beratungsfeld bauen wir auf demselben Fundament: fachlicher Anspruch, verlässliche Lieferung, langfristige Partnerschaft. How to Apply Ein Lebenslauf genügt, ein Anschreiben brauchen wir nicht. Und ob der Schritt aus der Verwaltung zu Ihnen passt, müssen Sie heute nicht entscheiden – lassen Sie uns ins Gespräch kommen.
• Design, implement, and maintain scalable, secure, and reliable cloud infrastructure. • Build and optimize CI/CD pipelines to enable fast and safe deployments. • Automate infrastructure provisioning using Infrastructure as Code (IaC). • Monitor system performance, reliability, and security. • Collaborate with engineering teams to support application lifecycle needs. • Improve cost optimization, availability, and observability. • Enforce best practices for security and system resilience.




