VOLL is a complete global solution for travel and expense management.
Senior DevSecOps Analyst
Location
Brazil
Posted
2 days ago
Salary
0
Seniority
Senior
Job Description
Senior DevSecOps Analyst
VOLL
• Manage and evolve cloud infrastructure, ensuring availability, security, and cost-efficiency across AWS and GCP environments • Develop and maintain infrastructure-as-code (IaC) automations in Terraform/Terragrunt — modules, state management, and standardization of best practices • Develop and maintain automations, scripts, and integrations using APIs, CLIs, and languages such as Python or Shell • Design and improve CI/CD pipelines with integrated quality and security stages, following Cyber Security guidelines • Serve as a link between Development, Operations, and Cyber Security teams for vulnerability analysis and remediation • Implement and enhance platform observability: dashboards, alerts, and event traceability • Lead internal projects autonomously, producing technical documentation and runbooks • Support Engineering, QA, Information Security, and governance teams
Job Requirements
- Education: Bachelor's degree completed or in progress in Computer Science, Information Systems, Networks, or related fields — or equivalent and proven experience
- Advanced experience with AWS and its core services: EC2, ECS, EKS, RDS, S3, VPC, IAM, Security Hub, GuardDuty, CloudTrail, CloudWatch, Cognito, KMS, and Secrets Manager
- Familiarity with GCP: experience with the platform’s core infrastructure and security services
- Solid, proven experience with Terraform and Terragrunt: reusable modules, remote state management, and IaC best-practice standardization
- Experience with container infrastructure: Docker and orchestration using Kubernetes or ECS
- Experience with CI/CD tools (Bitbucket Pipelines, GitHub Actions, or similar)
- Experience with observability tools: dashboards, alerts, and log analysis (New Relic, Datadog, ELK, or similar)
- Proficiency in at least one automation language: Python or Shell/Bash
- Linux: administration, permissions, networking, and troubleshooting
- Knowledge of security protocols and concepts: SSO, OAuth2/OIDC, digital certificates, and TLS/HTTPS
- Ability to interpret and act on vulnerability findings (CVEs, SAST/DAST findings)
Benefits
- Meal/food allowance loaded to Flash card
- Medical and Dental plan (SulAmérica)
- Total Pass (transportation benefit)
- Home office allowance on Flash card
- Mental health support (VOLL Care)
- Education assistance (VOLL Education)
- Group life insurance
- Maternity leave: 6 months
- Paternity leave: 30 days (Our parental leave policy equally applies to same-sex couples)
- Vacation entitlement after 6 months
- Day off
Related Guides
Related Categories
Related Job Pages
More DevOps Engineer Jobs
Senior DevOps
SoftExpert - Software for ExcellenceSoftware all-in-one para gestão da transformação digital, inovação e conformidade.
• Design, implement, and maintain AWS architectures focused on availability, scalability, and security. • Administer and optimize services such as EC2, EKS, RDS, S3, EFS, Lambda, CloudFront, and other platform resources. • Plan and execute migrations, upgrades, and infrastructure changes with minimal operational impact. • Manage complex network environments using VPCs, Transit Gateway, Site-to-Site VPN, Peering, and routing. • Configure and maintain Security Groups, NACLs, and access policies following security best practices. • Investigate and resolve connectivity, performance, and routing issues. • Implement and manage security and protection solutions in cloud environments. • Analyze and respond to security alerts, vulnerabilities, and risks. • Ensure infrastructure compliance through hardening, access management, and periodic reviews. • Administer Linux servers in production environments. • Perform patching, hardening, and lifecycle management of instances. • Create and maintain custom images for different use cases. • Develop and maintain infrastructure using Terraform. • Automate provisioning and configurations with Ansible. • Build and maintain CI/CD pipelines for infrastructure and applications. • Develop scripts to automate operational tasks. • Manage Kubernetes clusters (EKS), including upgrades, troubleshooting, security, and scalability. • Create and optimize Docker images. • Implement security policies and access control within clusters. • Monitor environments using observability tools. • Participate in incident management and production issue resolution. • Conduct root cause analyses (RCA) and implement preventive actions.
• Lead Cloud Migration: Spearhead the migration of workloads from AWS to Azure using an AKS-first (Azure Kubernetes Service) model. • Infrastructure as Code: Design and implement robust IaC for Azure environments. • Pipeline Standardization: Migrate, optimize, and standardize CI/CD pipelines. • Architecture Modernization: Refactor legacy infrastructure into cloud-native Azure architectures. • Risk Mitigation: Ensure minimal disruption during migration by designing efficient downtime and rollback plans. • Environment Optimization: Continuously optimize cloud environments for cost, performance, and scalability. • Cross-Functional Collaboration: Partner with engineering teams to modernize deployment workflows. • Documentation: Document migration patterns and create reusable templates for the broader team.
DevSecOps Engineer SR
Encora DigitalEncora, a leader in digital engineering, drives innovation by crafting cutting-edge, cloud-first, data-first, and AI-first solutions that redefine industries. S
Role Description We at Coforge are hiring a DevSecOps Engineer SR with the following skill set. - Design, implement, and maintain secure CI/CD pipelines for frontend, backend, and infrastructure delivery. - Automate infrastructure provisioning, configuration, and deployment processes for cloud and on-prem compatible environments. - Establish security controls across the software delivery lifecycle, including secrets management, dependency scanning, container security, and pipeline guardrails. - Implement secure perimeter and runtime patterns for the external portal, including API gateway controls, network segmentation, identity integration, and access policies. - Support deployment architectures for a scalable platform, secure external authentication, file distribution mechanisms, notifications, audit logging, and portal-to-enterprise platform integrations. - Define and maintain observability capabilities such as logs, metrics, alerting, and health monitoring for platform services and integrations. - Partner with engineering teams to embed security-by-design and operational best practices into application development. - Contribute to incident response readiness, vulnerability remediation workflows, compliance-aligned controls, and environment hardening. - Document deployment standards, platform architecture, runbooks, and operational procedures. Qualifications - Strong experience with DevOps and DevSecOps practices across build, release, deployment, and runtime operations. - Hands-on experience with CI/CD pipeline design, infrastructure as code, automation scripting, and environment provisioning. - Strong knowledge of cloud and hybrid deployment architectures, containerization, and orchestration concepts. - Solid understanding of application and infrastructure security, secrets management, IAM, vulnerability scanning, and secure delivery controls. - Experience implementing observability, alerting, logging, audit, and platform monitoring practices. - Familiarity with network security, gateway patterns, secure external access, and production hardening approaches. - Experience collaborating with software engineering teams to support secure and reliable software delivery. - Strong troubleshooting, documentation, and operational problem-solving skills. Requirements - Experience with Docker, Kubernetes, and secure container runtime practices. - Experience with cloud platforms such as AWS and secure storage/file distribution patterns. - Knowledge of SAST, DAST, dependency scanning, policy-as-code, and security compliance frameworks. - Experience supporting systems with multi-tenant isolation and external security requirements. - Familiarity with Python-based application environments, API-centric architectures, and enterprise integration patterns. Posted On 12-06-2026 At Coforge, we hire professionals based solely on their skills and do not discriminate based on age, disability, religion, gender, sexual orientation, socioeconomic status, or nationality.
• Own and continuously improve the infrastructure and operational systems that support Clever's engineering teams • Build safer deployment paths with automated health checks, documented rollback plans, and clear release visibility for high-risk services where the architecture supports them • Improve production reliability across infrastructure, data stores, queues, background jobs, logs, alerts, and supporting services • Lead or support infrastructure migrations, production cutovers, and environment changes across Heroku, AWS, ECS, RDS, networking, and DNS • Strengthen observability and incident response through better alerts, dashboards, escalation paths, post-incident follow-up, runbooks, and operational drills • Define practical reliability targets, service ownership expectations, and production-readiness standards for critical systems, internal tools, integrations, and AI-enabled workflows • Partner with engineers on infrastructure-sensitive application work, including scaling, error handling, deployment risk, data access, rollback planning, and small backend or internal-tooling changes • Support SOC2 and security readiness by improving infrastructure controls, access patterns, vulnerability handling, evidence collection, and repeatable operational practices • Improve local development and staging environments so engineers can onboard, test, and validate changes with less friction



