
Senior DevOps/ DevSecOps Engineer
- Remote ()
- |5 years of exp
- |Contract
Remote only
Not Available
About the job
We are looking for an experienced Senior DevSecOps Engineer to own security requirements across critical infrastructure, CI/CD pipelines, and AI model deployment environments.
The ideal candidate will combine strong DevOps, cloud, Kubernetes, infrastructure security, and automation experience with a security-first mindset. You will be responsible for designing, implementing, and operating security controls across both managed SaaS and on-premises environments, including air-gapped installations, while also supporting production reliability and mentoring junior engineers.
Location: Remote LATAM
Working Hours: 8:00 AM – 5:00 PM Romania Time (UTC+3)
This corresponds to 12:00 AM – 9:00 AM Colombia Time (COT). Candidates in other countries should consider the equivalent local time.
English Level: B2 or higher
Key Responsibilities
- Design, implement, and maintain security controls and security gates across CI/CD pipelines, including application and dependency security scanning.
- Build and manage secure infrastructure for AI model deployment and lifecycle management across cloud and on-premises environments.
- Automate security and compliance controls using Infrastructure as Code and policy-as-code approaches.
- Secure Docker and Kubernetes environments, including access controls, network policies, admission controls, runtime security, and software supply-chain protection.
- Manage secrets securely at scale and implement least-privilege and secrets-rotation practices.
- Own vulnerability management across infrastructure, containers, and software dependencies, including tracking, prioritization, remediation, and SBOM management.
- Establish and maintain security monitoring and alerting capabilities.
- Lead security incident response, including detection, triage, containment, resolution, and post-incident reviews.
- Ensure infrastructure and delivery pipelines comply with security and regulatory requirements.
- Support security audits and automate compliance evidence collection.
- Mentor junior engineers and promote secure engineering practices across the organization.
Required Skills & Experience
- 5–8 years of professional experience in DevSecOps, DevOps, SRE, Platform Engineering, or a related field, with demonstrated production ownership.
- Strong scripting and automation skills using Python, Bash, Go, or similar technologies.
- Production experience with at least one major cloud platform, including cloud security, IAM, and network security.
- Deep experience securing Docker and Kubernetes environments.
- Hands-on experience managing production-scale CI/CD pipelines.
- Proven experience integrating vulnerability scanning and software supply-chain security into development and deployment pipelines.
- Hands-on experience with policy-as-code and Kubernetes admission control.
- Experience owning security incidents end-to-end, including detection, triage, containment, and postmortems.
- Experience operating security controls across both managed SaaS and disconnected/air-gapped on-premises environments, including offline scanning, patching, and update mechanisms.
- Experience automating compliance evidence collection and supporting audit readiness.
- Strong communication, problem-solving, and technical leadership skills.
Strongly Preferred
- Experience with Infrastructure as Code and security scanning for infrastructure configurations.
- Experience with enterprise secrets management solutions.
- Knowledge of container/image signing and software supply-chain security.
- Experience working with SOC 2, ISO 27001, UAE IA, or similar security and compliance frameworks.
- Experience in high-traffic production environments.
- Strong understanding of security best practices and secrets management at scale.
If you're passionate about building secure, reliable, and scalable infrastructure and want to work on challenging AI and enterprise environments, we'd love to hear from you.