
DevSecOps Consultant, Mid-level
Redbelt Security
full-time
Posted on:
Location Type: Hybrid
Location: São Paulo • Brazil
Visit company websiteExplore more
About the role
- Provide technical guidance to the development team on implementing security practices throughout the software development lifecycle.
- Conduct risk assessments, identifying potential vulnerabilities in systems and applications under development, and perform advanced security testing such as penetration testing, code analysis, and architecture reviews.
- Develop and implement comprehensive security strategies, ensuring security requirements are met at all project stages.
- Configure and maintain security tools, such as vulnerability scanners, identity and access management solutions, and security monitoring systems.
- Implement processes and automation to ensure compliance with security practices, regulations, and industry standards.
- Participate in security reviews and provide technical guidance to the development team.
- Develop and deliver training for the development team on secure coding best practices and threat awareness.
- Monitor trends and developments in security best practices and recommend adoption of new technologies and approaches.
- Contribute to the continuous improvement of DevSecOps processes by identifying opportunities and implementing effective solutions.
Requirements
- Bachelor's degree in Technology, Systems Analysis, Computer Science, or a related field.
- Knowledge of programming languages such as Python, Java, JavaScript, C# or others, along with relevant frameworks and libraries.
- Familiarity with version control (Git), continuous integration (CI), continuous delivery (CD), infrastructure automation, and tools such as Docker and Kubernetes.
- Understanding of security principles and practices, including common vulnerabilities, risk mitigation techniques, secure coding practices, cryptography, IAM, monitoring, and security auditing.
- Security and automation tools: Familiarity with static code analysis, vulnerability scanning, secrets management, IDS/IPS, and SIEM.
- Cloud computing and distributed architecture: Experience with cloud platforms such as AWS, Azure, or Google Cloud Platform, along with distributed architectures, microservices, and cloud security practices.
- Intermediate English.
Benefits
- Meal voucher, fully paid (iFood Benefícios card);
- Food allowance, fully paid (iFood Benefícios card);
- Transportation voucher, no deduction as provided by law;
- Medical assistance, no co-pay and fully paid;
- Dental assistance, no co-pay and fully paid;
- Well-being: Wellhub and Totalpass;
- Group life insurance;
- Piwi support;
- Starbem: healthtech care platform;
- Avus: health benefits platform;
- Childcare allowance;
- Special-needs child allowance;
- Citizenship program: extended maternity and paternity leave;
- Day off on your birthday;
- Redbelt Referral Program: your referral truly matters;
- Redbelt School: sponsored education program for courses and certifications;
- Redbelt Celebra: recognition awards for tenure;
- SESC partnership;
- Partnerships with educational and language institutions for discounts;
- PLR - profit-sharing: contingent on achievement of company targets.
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills & Tools
PythonJavaJavaScriptC#security testingpenetration testingcode analysisarchitecture reviewssecure coding practicescryptography
Soft Skills
technical guidancetraining developmentrisk assessmentcontinuous improvementcommunication