← Все вакансии/Senior/jobgether
SeniorRemoteBrazil

SRE / SecOps Senior

J
jobgether
Уровень
Senior
Формат
Remote
О роли

Описание вакансии

About the company

This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a SRE / SecOps Senior based in Brazil.

Responsibilities
  • Drive the performance, stability, security, and reliability of production environments, proactively identifying infrastructure weaknesses and opportunities for improvement.
  • Design, provision, and maintain infrastructure using Infrastructure as Code, leveraging tools such as Terraform, Pulumi, or CloudFormation and reusable, version-controlled modules.
  • Manage and optimize Kubernetes and container orchestration environments, including EKS and other platforms, using Helm, Kustomize, Federation/Karmada, and policy enforcement practices.
  • Build and evolve cloud environments across AWS and OVH, applying security services and controls such as IAM, GuardDuty, CloudTrail, Config, Security Hub, and Inspector.
  • Lead vulnerability management activities, including vulnerability scanning, remediation, patch management, security hardening, and implementation of appropriate controls.
  • Develop and maintain incident detection and response capabilities, including security playbooks, EDR tooling, incident response plans, war rooms, and post-mortems.
  • Establish and improve SLOs, SLIs, and SLAs, creating effective monitoring and alerting strategies that support reliability and operational excellence.
  • Build and maintain CI/CD pipelines using tools such as Bitbucket Pipelines and Jenkins, supporting deployments across EKS, Swarm, and virtual machines.
  • Implement secure and progressive delivery practices, including Canary, Blue-Green deployments, Feature Flags, and security controls throughout the software delivery lifecycle.
  • Manage configuration and secrets using technologies such as Ansible, Chef, Puppet, AWS Secrets Manager, and HashiCorp Vault.
  • Design and secure network infrastructure involving VPCs, VPNs, Security Groups, firewalls, WAFs, Kubernetes RBAC, IAM, mTLS, OIDC, OAuth2, JWT, and SSO.
  • Support relational and NoSQL databases and storage solutions, including MySQL, PostgreSQL, Aurora, MongoDB, and Redis, with attention to backups, replication, failover, and security.
  • Develop automation using Bash, Python, Go, or Ruby, including REST APIs, webhooks, and JSON/YAML-based workflows.
  • Participate in infrastructure migrations, performance and cost optimization initiatives, and modernization projects for complex, highly available environments.
  • Investigate logs, metrics, and traces during incidents, identify root causes, reduce operational toil, and implement preventive improvements.
  • Collaborate effectively with engineering, infrastructure, and security teams, documenting processes and contributing to a strong reliability and security culture.
Requirements
  • 6–8+ years of professional experience in SRE, SecOps, DevOps, or closely related engineering roles, preferably within complex, high-availability environments.
  • Strong experience with AWS, Linux, Docker, Kubernetes and/or Docker Swarm, including production-grade container orchestration.
  • Proven expertise in Infrastructure as Code, particularly Terraform, Pulumi, or CloudFormation, with experience developing reusable modules and applying version-control best practices.
  • Hands-on knowledge of Kubernetes security and operations, including EKS, Helm, Kustomize, RBAC, policy enforcement, and cluster hardening.
  • Strong understanding of cloud security, vulnerability management, patching, and security tooling such as AWS IAM, GuardDuty, CloudTrail, Config, Security Hub, Inspector, Nessus, Qualys, or OpenVAS.
  • Experience with EDR and incident response, including tools such as CrowdStrike, Carbon Black, SentinelOne, or equivalent technologies.
  • Solid CI/CD experience with Jenkins, Bitbucket Pipelines, Git, and secure deployment practices.
  • Experience with databases and data infrastructure, including MySQL, MongoDB, Redis, and preferably PostgreSQL/Aurora.
  • Knowledge of Apache Kafka, distributed applications, multithreading, and high-volume workloads.
  • Strong scripting and automation capabilities using Bash, Python, Go, or Ruby, as well as REST APIs, webhooks, JSON, and YAML.
  • Experience with networking and security technologies such as VPC, VPN, firewalls, WAF, Security Groups, IAM, mTLS, OAuth2, OIDC, JWT, and SSO.
  • Strong understanding of SRE principles, including SLOs, SLIs, SLAs, incident management, post-mortems, Chaos Engineering, and toil reduction.
  • Demonstrated experience analyzing application, infrastructure, and SQL performance, optimizing algorithms, and improving system efficiency.
  • Track record of leading or contributing to infrastructure migrations, automation initiatives, architecture improvements, and cost/performance optimization.
Стек и навыки

С чем работаем