Job Closed

This listing is no longer active.

AppSec, DevSecOps Engineer – Mid

DevOps EngineerDevOps EngineerFull TimeRemoteSeniorTeam 10,001+H1B SponsorCompany SiteLinkedIn

Location

Brazil

Posted

69 days ago

Salary

0

Seniority

Senior

Job Description

AppSec, DevSecOps Engineer – Mid

Compass

• Serve as a technical reference for AppSec and DevSecOps, embedding security into all stages of projects. • Integrate security into the software development lifecycle (Secure SDLC / Shift Left). • Design, standardize, and maintain secure, reusable, automated, and versioned CI/CD pipelines. • Implement DevSecOps practices and controls in continuous delivery workflows. • Conduct risk analyses, threat modeling, and security assessments for applications and architectures. • Perform triage, analysis, and vulnerability management, supporting developers in fixing issues. • Operate and manage SAST, DAST, SCA, container security, and Infrastructure as Code (IaC) tools. • Perform security-focused code reviews, especially for .NET Core and Node.js applications. • Work in Cloud environments, evaluating architectures and security controls. • Ensure adherence to governance and compliance standards and frameworks such as ISO 27001, SOC 2, and PCI DSS. • Create scripts and automations for security controls and SIEM/SOC integration. • Promote evangelism, mentoring, and training of technology teams in secure development.

Job Requirements

  • Solid experience in Application Security (AppSec) and/or DevSecOps.
  • Hands-on knowledge of Secure SDLC and Shift Left strategies.
  • Experience with CI/CD pipelines (e.g., Azure DevOps, GitHub Actions, GitLab CI, Jenkins).
  • Familiarity with SAST, DAST, and SCA tools.
  • Knowledge of .NET Core and Node.js for code analysis and review.
  • Experience in vulnerability analysis and remediation.
  • Knowledge of Cloud Computing (AWS, Azure, or GCP).
  • Familiarity with containers (Docker/Kubernetes) and IaC (Terraform, ARM, CloudFormation).
  • Strong understanding of secure architecture and Threat Modeling.
  • Security certifications (e.g., CSSLP, CEH, Security+, AZ-500, AWS Security).
  • Previous experience with SIEM/SOC.
  • Knowledge of OWASP Top 10, ASVS, and SAMM.
  • Experience in regulated or high-criticality environments.

Related Categories

Related Job Pages

More DevOps Engineer Jobs

Menlo Security Inc. logo

Platform Infrastructure Engineer – SRE Core

Menlo Security Inc.

Menlo Security protects productivity online with a one-of-a-kind, isolation-powered cloud security platform.

DevOps Engineer69 days ago
Full TimeRemoteTeam 201-500H1B No Sponsor

• Design, deploy, and maintain VM and Kubernetes infrastructure on GCP and AWS across dozens of clusters spanning development, staging, and production environments in multiple regions. • Coordinate with your peers in your direct team as well as across teams to ensure that the tasks you’re working on are going to solve the problems that we need them to solve. • Build and maintain Infrastructure as Code (IaC) using Terraform modules, managing resources through Spacelift or equivalent Terraform Automation and Collaboration Software (TACOS). Provision cloud infrastructure including networking, compute, storage, and security components primarily on GCP, with secondary AWS support. • Implement and manage workflows with sophisticated multi-layer configuration management. • Build and maintain comprehensive observability solutions using Grafana Cloud, Prometheus/Mimir, and OTel collectors. Design Grafana dashboards, configure alerting rules, and ensure visibility across all platform components. • Manage certificate lifecycle, DNS automation, ingress controllers, and service mesh networking with Cilium. • Partner with Engineering, Product, Compliance, and Security teams to design resilient, scalable systems. Consult on capacity planning, disaster recovery, and architectural decisions for cloud-native applications. • Identify and eliminate toil through automation. Write scripts, develop tools, and build CI/CD pipelines to improve operational efficiency and reduce manual work. • Participate in a 24x7 on-call rotation as part of a globally distributed team, responding to incidents and driving post-incident reviews.

United Kingdom
Menlo Security Inc. logo

Principal Platform Infrastructure Engineer – SRE Enablement

Menlo Security Inc.

Menlo Security protects productivity online with a one-of-a-kind, isolation-powered cloud security platform.

DevOps Engineer69 days ago
Full TimeRemoteTeam 201-500H1B No Sponsor

• Architect and govern the design, deployment, and operation of high-scale, multi-region VM and Kubernetes infrastructure on GCP and AWS, ensuring maximum resilience and performance across all environments • Drive cross-functional technical alignment with Engineering, Product, Compliance, and Security teams • Define and enforce organizational best practices and standards for Infrastructure as Code (IaC) using Terraform and Spacelift • Design and manage complex configuration management and deployment workflows that optimize reliability and operational efficiency across the entire platform • Set the technical direction and implement comprehensive observability solutions (Grafana Cloud, Prometheus/Mimir, OTel collectors) • Define the strategic architecture and lifecycle management of core platform services • Proactively identify and lead large-scale strategic efforts to eliminate technical toil and improve operational efficiency • Mentor and provide technical guidance to junior and senior engineers • Participate in a 24x7 on-call rotation as part of a globally distributed team

United Kingdom
Full TimeRemoteTeam 51-200H1B No Sponsor

• Lead the design, implementation, and ongoing improvement of reliable, scalable, performant, and secure production platforms and services. • Work closely with cross-functional teams to build and maintain resilient infrastructure and deployment patterns. • Provide technical leadership and mentorship to engineers across the organisation, promoting strong engineering standards and operational best practice. • Participate in a 24x7 on-call rotation to support critical services and ensure platform availability. • Drive standardisation, automation, and documentation to improve consistency, reduce operational overhead, and support knowledge sharing. • Contribute across the full lifecycle of platform and service delivery, from design and build through to operation and optimisation.

Brazil
R$203.9K - R$250K / month
Job Closed
Full TimeRemoteTeam 51-200H1B No Sponsor

• Support the automation, maintenance, and reliability of LGY development and deployment pipelines. • Ensure that system environments and deployments remain stable, secure, and compliant with VA OIT standards. • Work closely with development, operations, and release management teams to support CI/CD processes and ensure efficient environment management across the LGY platform.

Virginia
Job Closed