Analista DevSecOps Sênior
No longer listedThis position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for an Analista DevSecOps Sênior based in Brazil.
This senior technology role focuses on embedding security practices throughout the software development lifecycle and strengthening application and infrastructure protection.
The professional will work at the intersection of development, operations, and cybersecurity teams to build safer and more efficient delivery processes.
You will be responsible for automating security controls, identifying vulnerabilities, and improving compliance across technology environments.
The role combines technical expertise, strategic thinking, and collaboration to ensure security becomes an integral part of engineering practices.
Working in a remote environment, you will contribute to modern security initiatives involving cloud, automation, APIs, and application protection.
This opportunity is ideal for an experienced DevSecOps professional who enjoys solving complex security challenges and driving continuous improvement.
This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for an Analista DevSecOps Sênior based in Brazil.
This senior technology role focuses on embedding security practices throughout the software development lifecycle and strengthening application and infrastructure protection.
The professional will work at the intersection of development, operations, and cybersecurity teams to build safer and more efficient delivery processes.
You will be responsible for automating security controls, identifying vulnerabilities, and improving compliance across technology environments.
The role combines technical expertise, strategic thinking, and collaboration to ensure security becomes an integral part of engineering practices.
Working in a remote environment, you will contribute to modern security initiatives involving cloud, automation, APIs, and application protection.
This opportunity is ideal for an experienced DevSecOps professional who enjoys solving complex security challenges and driving continuous improvement.
Accountabilities:
- Implement DevSecOps practices throughout the software development lifecycle.
- Automate security checks and validations within CI/CD pipelines.
- Monitor, identify, and mitigate vulnerabilities across applications and infrastructure.
- Perform static and dynamic code analysis to detect security weaknesses.
- Implement and configure security tools for applications and infrastructure environments.
- Collaborate with development, infrastructure, and cybersecurity teams to integrate security into daily operations.
- Define, maintain, and improve security policies, standards, and compliance practices.
- Promote security awareness and provide guidance or training to technology teams.
- Support security incident response activities and recommend corrective actions.
- Participate in agile ceremonies, including daily meetings, planning sessions, reviews, and retrospectives.
- Contribute to continuous improvement initiatives focused on automation, security, and operational efficiency.
- Solid experience with DevSecOps practices and security integration within development processes.
- Experience with application security tools such as SonarQube, Checkmarx, Snyk, OWASP ZAP, or similar solutions.
- Hands-on experience with CI/CD pipelines and tools such as Jenkins, GitLab CI, Azure DevOps, or equivalent platforms.
- Knowledge of container technologies and orchestration platforms, including Docker and Kubernetes.
- Experience securing APIs and web applications.
- Knowledge of Infrastructure as Code concepts and tools such as Terraform and Ansible.
- Familiarity with agile methodologies, including Scrum and Kanban.
- Experience with security monitoring and incident response processes.
- Strong communication skills and ability to work collaboratively with technical teams.
- Residence in São Paulo city required due to onboarding and equipment collection needs.
- 100% remote work model.
- Opportunity to work on strategic cybersecurity and technology initiatives.
- Collaboration with multidisciplinary technology teams.
- Professional growth opportunities in a modern security environment.
- Exposure to DevSecOps, automation, cloud, and application security practices.
The role is responsible for implementing security practices across software development processes, automating security validations, and supporting teams in building secure technology solutions. The professional will collaborate with engineering, infrastructure, and security teams to reduce risks and improve overall security maturity.
Requirements:
The ideal candidate should have strong experience in DevSecOps, application security, and infrastructure protection. This role requires technical depth, familiarity with modern security tools, and the ability to collaborate effectively with multidisciplinary teams.