Job Closed
This listing is no longer active.
Somando inovação para multiplicar resultados.
Application Security Analyst – AppSec, DevSecOps
Location
Brazil
Posted
61 days ago
Salary
0
Seniority
Senior
Job Description
Application Security Analyst – AppSec, DevSecOps
Positivo S+
• Structure and implement Secure SDLC (S-SDLC) practices. • Monitor the development of applications (new and legacy) and features from ideation through production and post-production. • Integrate security into the development lifecycle and CI/CD pipelines. • Conduct or support code reviews with a security focus. • Conduct threat modeling activities. • Manage application vulnerabilities (identification, prioritization and remediation). • Support the maintenance and evolution of application security and edge security technologies. • Promote information security culture and best practices across technical teams. • Integrate risk management into the development cycle. • Work consultatively with developers, architects and managers.
Job Requirements
- Minimum of 3 years’ experience in Application Security.
- Experience with Secure SDLC (S-SDLC).
- Practical knowledge of Threat Modeling.
- Experience with SAST, DAST, SCA and IAST tools.
- Experience performing secure code reviews.
- Knowledge of integrating security into CI/CD pipelines.
- Experience with Git and automated pipelines.
- Knowledge of cloud security (AWS, Azure or GCP).
- Experience with Docker and Kubernetes.
- Familiarity with WAF, API Gateway, IDS/IPS and NGFW.
- Basic understanding of network architecture, microservices, segmentation and hardening.
- Knowledge of frameworks: ISO 27001 / 27002, NIST Cybersecurity Framework, OWASP (Top 10, ASVS, SAMM).
Benefits
- Medical and dental plans.
- Life insurance.
- Meal and food vouchers (Meal Allowance / Food Allowance).
- Transportation voucher.
- Discount club.
- Access to Wellhub (gyms) and Mente Tranquila.
- Discounts on Positivo products.
- Partnership with a university.
- And much more.
Related Guides
Related Categories
Related Job Pages
More DevOps Engineer Jobs
Senior DevOps Engineer
HashgraphHashgraph, formerly Swirlds Labs, is a software company home to some of the brightest minds in web3.
• Operate and improve Hedera consensus node environments across testnet, previewnet, and preproduction • Design and implement automation-first workflows for release and preproduction environments • Build and maintain Infrastructure-as-Code (Terraform) on GCP • Improve change management, release safety, and operational predictability • Participate in on-call rotation, incident response, and RCA, driving corrective actions into automation • Partner with internal engineering teams and external stakeholders, including Hedera Governing Council members, to support operational requirements
Senior DevOps Engineer
Genesis TechDo you want to influence lives of millions of people worldwide? Join us!
• Побудувати та масштабувати внутрішню DevOps-платформу • Уніфікувати delivery та операційку • Підвищити стандарти візібіліті, безпеки та відмовостійкості • Розробка і підтримка платформи для AWS/Kubernetes середовища • Стандартизація CI/CD, service onboarding, сікрети/доступи, observability, GitOps/deployment guardrails • Підвищення IaC coverage • Покращення visibility платформи та костів/ownership • Зменшення мануальної роботи через стандарти і self-service підходи.
Senior SRE/DevOps
Encora DigitalEncora, a leader in digital engineering, drives innovation by crafting cutting-edge, cloud-first, data-first, and AI-first solutions that redefine industries. S
Important Information Experience: +7 years Job Mode: Full-time Work Mode: Remote ID: 141988405 Job Summary We are seeking a Site Reliability Engineer (SRE) to join our engineering team. This role is critical in ensuring the reliability, scalability, and security of our production systems. The ideal candidate will have strong expertise in cloud platforms, automation, observability, and compliance frameworks, with a passion for building resilient infrastructure and tools. Responsibilities and Duties - Manage vulnerabilities and implement security measures aligned with NIST and SOC2 compliance standards; - Lead incident management and change management processes; - Develop, maintain, and deploy software and tools in production environments; - Design and manage CI/CD pipelines across Azure and AWS; - Ensure system observability using telemetry tools such as New Relic and Dynatrace, including monitoring, alerting, and reporting; - Conduct penetration testing and support security audits; - Apply SRE best practices to improve system reliability and availability; - Automate processes and support system administration tasks. Essential Skills - Strong experience with Kubernetes; - Hands-on expertise with Azure or AWS, focusing on CI/CD pipeline deployment and maintenance; - Proficiency in Terraform or Ansible development; - Experience with code repositories such as GitLab; - Knowledge of Postgres databases; - Familiarity with telemetry tools (New Relic, Dynatrace) for monitoring and alerting; - Experience with security tools and practices, including NIST, SOC2 compliance, and penetration testing; - Strong troubleshooting, sysadmin, and automation skills; - Solid knowledge of Site Reliability Engineering (SRE) principles. About Encora Encora is the preferred digital engineering and modernization partner of some of the world’s leading enterprises and digital native companies. With over 9,000 experts in 47+ offices and innovation labs worldwide, Encora’s technology practices include Product Engineering & Development, Cloud Services, Quality Engineering, DevSecOps, Data & Analytics, Digital Experience, Cybersecurity, and AI & LLM Engineering. At Encora, we hire professionals based solely on their skills and qualifications, and do not discriminate based on age, disability, religion, gender, sexual orientation, socioeconomic status, or nationality.
Senior DevOps Engineer
AviatrixAviatrix cloud network platform delivers advanced networking, security and operational visibility required by enterprises with the simplicity and automation of cloud. More than 400 customers worldwide leverage Aviatrix and it’s proven multi-cloud network reference architecture to design, deploy and operate a repeatable network and security architecture that is consistent across any public cloud. Combined with the industry’s first and only multi-cloud networking certification (ACE), Aviatrix is empowering IT to lead and accelerate the transformation to the cloud. Learn more at Aviatrix.com.
WHO WE ARE: For enterprises struggling to secure cloud workloads, Aviatrix® offers a single solution for pervasive cloud security. Where current cybersecurity approaches focus on securing entry points to a trusted space, Aviatrix Cloud Native Security Fabric (CNSF) delivers runtime security and enforcement within the cloud application infrastructure itself – closing gaps between existing solutions and helping organizations regain visibility and control. Aviatrix ensures security, cloud, and networking teams are empowering developer velocity, AI, serverless, and what’s next. For more information, visit www.aviatrix.com. ABOUT THE ROLE: We are looking for a seasoned Senior DevOps Engineer to join our team and take ownership of our CI/CD ecosystem, cloud infrastructure automation, and developer platform. This is a journey-level, fully qualified position where you will independently design and drive solutions across complex, diverse projects — bringing both technical depth and collaborative leadership to everything you do. You will work at the intersection of infrastructure engineering, AI-driven tooling, and modern cloud operations, partnering closely with development and TechOps teams to accelerate delivery cycles and ensure the reliability, security, and scalability of our systems. Key Responsibilities: - Design, implement, and maintain robust, scalable CI/CD pipelines across multiple environments, applying industry best practices to optimize delivery speed and system reliability. - Automate the provisioning and lifecycle management of cloud resources (VMs, EC2, and more) using Infrastructure as Code — with Terraform as the primary tool — ensuring consistent, repeatable, and auditable deployments. - Manage and optimize cloud networking configurations, supporting complex developer workflows and infrastructure scalability requirements. - Integrate AI and large language model (LLM) capabilities into DevOps tooling and developer workflows, including leveraging Model Context Protocol (MCP) for intelligent automation and context-aware pipeline tooling. - Collaborate with engineering and operations teams to identify bottlenecks, reduce toil, and continuously improve the release process. - Apply security best practices to deployment pipelines and cloud infrastructure, proactively identifying and remediating vulnerabilities. - Monitor, observe, and optimize infrastructure performance, taking initiative to resolve complex issues before they impact customers. - Evaluate emerging tools and technologies — particularly in the AI/LLM space — and provide guidance on how to incorporate them effectively into organization workflows. - Communicate technical strategies and recommendations clearly to senior internal and external stakeholders, adapting your approach to diverse audiences and often driving alignment on difficult decisions. Qualifications: - 5+ years of related DevOps/infrastructure engineering experience (or 3 years with a Master’s degree or equivalent experience). - Deep, hands-on expertise with Terraform for infrastructure as code — this is a must-have. - Hands-on, production-level experience building and deploying AI/LLM-integrated systems — this is a must-have. You have worked directly with large language model APIs, designed AI-assisted workflows, and shipped real tooling powered by LLMs in an engineering or DevOps context. - Hands-on, production-level experience with Model Context Protocol (MCP) — this is a must-have. You have implemented MCP-based integrations to build intelligent, context-aware developer tools, automation pipelines, or agent workflows, not just read about it. - Strong command of CI/CD platforms (e.g., GitHub Actions, GitLab CI, Jenkins, CircleCI, or similar). - Experience provisioning and managing cloud infrastructure on AWS, GCP, or Azure (EC2, VMs, VPCs, IAM, etc.). - Solid understanding of cloud networking concepts (VPCs, subnets, security groups, load balancers, DNS). - Demonstrated ability to work independently, resolve ambiguous and complex problems, and deliver high-quality solutions with minimal supervision. Preferred: - Experience with Kubernetes, Helm, or container orchestration platforms. - Familiarity with GitOps workflows (e.g., ArgoCD, Flux). - Scripting proficiency in Python, Bash, or Go. - Knowledge of observability tooling (Datadog, Prometheus/Grafana, OpenTelemetry). - Experience building internal developer platforms (IDPs). US Pay Range: The US National annual base salary range for this full-time position is $131,500-$154,700 + benefits + 401(k) match + equity. The pay range is determined by the role, work location, job-related skills, level, experience and relevant education. [Certain roles are eligible to earn sales commission, depending on the terms of the applicable plan.] The range displayed is the minimum and maximum target base salary and is applicable only for new hires for the listed position located in the US. Your Talent Advisor can share more details regarding salary ranges, benefits, and equity for your location during the hiring process. BENEFITS US: We cover 100% of employee premiums and 88% of dependent(s) premiums for medical, dental and vision coverage, 401(k) match, short and long-term disability, life/AD&D insurance, $1,000/year education reimbursement, and a flexible vacation policy. Outside the US: We offer a comprehensive benefits package which, (subject to regional variations) could include pension, private medical for you and dependents, generous holiday allowance, life assurance, long-term disability, annual wellbeing stipend Your total compensation package will be based on job-related knowledge, education, certifications and location, per our aligned ranges. About Aviatrix Aviatrix® is the cloud network security company trusted by more than 500 of the world’s leading enterprises. As cloud infrastructures become more complex and costly, the Aviatrix Cloud Network Security platform gives companies back the power, control, security, and simplicity they need to modernize their cloud strategies. Aviatrix is the only secure networking solution built specifically for the cloud, that ensures companies are ready for AI and what’s next. Combined with the Aviatrix Certified Engineer (ACE) Program, the industry’s leading secure multicloud networking certification, Aviatrix unifies cloud, networking, and security teams and unlocks greater potential across any cloud. WE WANT TO INCLUDE YOU We embrace the fact that not everyone’s journey took the same route or started at the same place. If your experience doesn’t quite meet the requirements but the opportunity excites you and you believe you could be great, don’t let that hold you back from applying. Tell us what you CAN bring and what makes you special. Aviatrix is a community where everyone's career can grow and we want to help you achieve your goals and be “your best YOU,” however that looks. If you're seeking an opportunity where you can be excited to start work every morning with enthusiastic people, make a real difference and be part of something amazing then let’s talk. We want to get to know you and how we could grow together. Aviatrix, Inc. is an equal opportunity employer and does not make hiring decisions based on race, color, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state or local laws. This policy applies to all terms and conditions of employment, including recruiting, hiring, placement, promotion, termination, layoff, recall, transfer, leaves of absence, compensation and training. CPRA - California Applicant Privacy Notice



