8 дней назад
DevSecOps Engineer
75 000 - 85 000MXN
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
DevSecOps Engineer (GCP/AWS/Kubernetes): Securing cloud infrastructure, CI/CD pipelines, container workloads, and public-facing applications while maintaining PCI DSS 4.0 and SOC 2 Type II compliance with an accent on vulnerability remediation, WAF tuning, and automated security controls. Focus on building scanning and remediation automation, producing audit evidence, and testing disaster recovery across distributed cloud environments.
Location: Remote from Mexico; preference for candidates in time zones UTC-10 to UTC-4.
Salary: MX$75,000–MX$85,000 per month, plus equity.
Company
provides an AI-powered operating system for museums, attractions, tours, and activities, supporting bookings and guest experiences for merchants worldwide.
What you will do
- Own security controls across GCP and AWS, including least-privilege IAM, RBAC, WAF, container security, image security, and secure CI/CD.
- Drive vulnerability remediation across containers and virtual machines, including triage, prioritization, automation, and production rollout.
- Build automated security scanning and remediation into CI/CD pipelines.
- Configure WAF policies and tune the OWASP Core Rule Set to protect public-facing applications.
- Run PCI DSS vulnerability scans, produce technical-control evidence, and support audits, customer security reviews, and vendor assessments.
- Contribute to incident response exercises and disaster recovery testing, ensuring backup encryption, access control, and integrity.
Requirements
- 3+ years of experience in DevSecOps, security engineering, cloud security, or a related role.
- Hands-on experience securing GCP and/or AWS, including managed Kubernetes with GKE or EKS.
- Experience with container and vulnerability management, automated remediation, WAF configuration, OWASP Core Rule Set tuning, IAM, and RBAC.
- Working knowledge of Linux for remediating operating-system and package vulnerabilities in virtual machines and container images.
- Scripting experience with Python, Bash, or similar, plus CI/CD experience with platforms such as GitLab CI, GitHub Actions, Jenkins, or Codefresh.
- Experience in PCI DSS or SOC 2 environments and strong written English communication with technical and non-technical audiences.
Nice to have
- Low-downtime patching, PCI ASV scanning, Drata, serverless platforms, or cloud security posture tools.
- Experience with third-party risk reviews involving PII.
- Agentic or AI-assisted penetration testing.
- OSCP, CISSP, CISM, or AWS/GCP Security Specialty certification.
Culture & Benefits
- Fully remote work in a small, organized DevOps team supporting the Engineering organization.
- Work with GCP, AWS, Infrastructure-as-Code, observability, Kubernetes, and self-service automation.
- Occasional work outside normal business hours may be required for infrastructure upgrades and maintenance, with an emphasis on maintaining a balanced schedule.
- Equity is included in the compensation package.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →