Skip to content

Open nowPosted 5 days ago

Cloud Security Engineer

Gupy (Portal de Vagas)74,832 open roles

Where
Remote
Work mode
Remote
Get the CV for this job

From $25 per CV, paid once. No subscription.

Your applicationOpen nowCloud Security EngineerGupy (Portal de Vagas) · Remote
  1. YouYes, apply to this one.

  2. CV RocketCV written for this posting.

  3. 25 readersRecruiter, hiring manager, skeptic. Round after round.

  4. CV RocketApplied on Gupy (Portal de Vagas)'s own form.

The reply lands in your private mailbox

3×more interviews than doing it yourself with ChatGPT.

The clock on this job

Early applications get read.

7.8% of postings close within 7 days. Measured by our own scanner across the market. Gupy (Portal de Vagas) postings stay open a median of 1 days.

Share of postings closed within
  1. 1.7%1 day
  2. 3.5%3 days
  3. 7.8%7 days
  4. 14.6%14 days
  5. 34.0%30 days
This job: posted 5 days ago

Gupy (Portal de Vagas) median: 1 days open

The posting

A Digibee está contratando um(a) Cloud Security Engineer para o time de Segurança, cobrindo uma posição estratégica na área. Essa pessoa será responsável por levar segurança para dentro do ciclo de desenvolvimento e entrega de software (DevSecOps), atuando diretamente nos pipelines de CI/CD, na gestão e governança de vulnerabilidades e na definição de imagens de container seguras (hardening, Wolfi/Chainguard, distroless) para a plataforma, que roda em Google Cloud Platform (GCP).É uma posição técnica de referência (nível Especialista): define padrões de segurança em nuvem e pipeline que os demais times técnicos seguem, trabalhando lado a lado com Engenharia, SRE e Plataforma — sem deter autoridade hierárquica sobre eles.

Responsibilities and AttributionsIntegrar controles de segurança nos pipelines de CI/CD (SAST, SCA, scanning de imagens, SBOM, assinatura/verificação de imagens), tornando segurança parte do fluxo de entrega em vez de um gate manual no final.Avaliar, definir e conduzir o rollout de imagens de container hardened (Wolfi/Chainguard, distroless), reduzindo superfície de ataque e CVEs nas imagens base usadas pela engenharia.Liderar a gestão e governança de vulnerabilidades: priorização baseada em risco, SLAs de remediação e acompanhamento com os times de engenharia até o fechamento.Projetar e implementar controles de segurança em infraestrutura GCP (IAM, redes, Artifact Registry, políticas de organização), em conjunto com Infrastructure as Code (Terraform).Atuar como referência técnica em segurança de pipeline e cloud, orientando squads de engenharia em práticas de desenvolvimento seguro (shift-left) sem travar a velocidade de entrega.Colaborar com SRE em observabilidade e resiliência com a lente de segurança (hardening de runtime, resposta a incidentes, postura de produção).Executar testes pontuais no formato de pentest para validar controles e remediações, em complemento aos engajamentos formais de pentest com fornecedores externos.Apoiar auditorias e requisitos de compliance (SOC2, PCI) relacionados a pipeline, vulnerabilidades e imagens.

Requisites and Qualifications5+ anos de experiência em Cloud Security Engineering, DevSecOps ou Security Engineering, com atuação prática em ambientes de produção.Domínio de Google Cloud Platform (GCP) — IAM, redes, Artifact Registry, políticas de segurança de organização.Experiência prática integrando segurança em pipelines de CI/CD (GitLab CI, Jenkins ou similares) e com ferramentas de vulnerability scanning (ex.: Trivy, Snyk, Wiz).Experiência com Docker/Kubernetes em produção: multi-stage builds, hardening de runtime, non-root execution, gestão de dependências.Conhecimento de imagens de container seguras/hardened (Wolfi, Chainguard, distroless), ou forte apetite para se especializar nisso.Scripting sólido em Python e/ou Bash para automação de controles de segurança.Entendimento de práticas de desenvolvimento seguro (secure SDLC, OWASP Top 10, threat modeling básico).Vivência com práticas de SRE (observabilidade, confiabilidade, incident response) suficiente para colaborar tecnicamente com o time de SRE.Boa comunicação técnica para influenciar squads de engenharia sem autoridade hierárquica direta.

Diferenciais:Certificações como Google Professional Cloud Security Engineer, Certified Kubernetes Security Specialist (CKS), ou equivalentes.Experiência prévia específica com Chainguard/Wolfi ou outros ecossistemas de imagens minimalistas (Alpine, Distroless do Google).Experiência com SBOM, assinatura de imagens (cosign/Sigstore) e supply chain security (SLSA).Vivência com frameworks de compliance (SOC2, PCI-DSS, ISO 27001).Experiência anterior como SRE ou em times de plataforma/infraestrutura antes de migrar para segurança.Contribuições open source ou conteúdo técnico publicado na comunidade de DevSecOps/cloud security.Addtional InformationsBenefícios:Health care Dental careR$ 1.400,00/month on Caju card (for food and meal allowance, mobility, home office supplies, culture, health, and education)Life insuranceChild care assistanceWellhub (Gympass)English course: we have a partnership for group classes for R$100 monthlyGlobal Equity ProgramSobre nós:Na Digibee, não estamos apenas construindo tecnologia, estamos libertando o potencial de inovação das maiores empresas do mundo ao descomplicar o complexo. Em um mercado de integração de $250 bilhões, nossa plataforma iPaaS cloud-native elow-code permite que qualquer desenvolvedor construa e monitore fluxos de ponta a ponta, eliminando a dívida técnica e acelerando a transformação digital.Por que fazer parte? Nascemos no Brasil (2017) e hoje somos um time global distribuído pelas Américas, movido por uma cultura de flexibilidade e autonomia.Após uma rodada Series B de $60 milhões, estamos em plena expansão global, unindo a agilidade de uma startup à solidez de uma empresa investida pela Goldman Sachs.Aqui, você não apenas assiste ao crescimento, você é o motor dele.Se você busca impacto real e quer redefinir como o mundo se conecta, seu lugar é aqui. Vamos simplificar o mundo, uma integração por vez.

From $25, paid onceGet the CV for this job

What happens when you press

One press. We do the rest.

  1. A CV for this posting

    Written against Gupy (Portal de Vagas)'s own wording, from every piece of relevant proof in your profile.

  2. 25 readers review it

    Recruiter, hiring manager, skeptic and more read every draft, round after round. You get the best round.

    The review screen in CV Rocket: how each CV was read, round by round.
  3. We apply on Gupy (Portal de Vagas)'s form

    Our application engine gets through the hardest forms there are. Where a question needs you, AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

    An application in CV Rocket: every answer filled in on the employer's form.
  4. Every reply, sorted

    Gupy (Portal de Vagas)'s answer lands in your private mailbox, and we classify it on arrival: interview, question, rejection.

    The CV Rocket inbox: each employer reply classified as an interview, an action or a rejection.
  5. Reply with AI

    AI helps you write the email, checks it and sends it. We show you whether the recruiter read it.

  6. The interview in your calendar

    Full integration with your calendar. The invitation goes straight in.

    An interview invitation in the CV Rocket inbox, added to the candidate's calendar.
Get the CV for this job

From $25 per CV, paid once. No subscription.

Why it works

3×

more interviews than doing it yourself with ChatGPT.

ChatGPT writes a CV and never learns what happened to it. We see every reply. For each CV we know:

  • How it was written, and how the review scored it
  • When we applied, and how long after the posting went up
  • Which posting, which company, which city
  • Who got the interview, and who heard nothing

That is how we know which CVs get called.

Get the CV for this job

From $25 per CV, paid once. No subscription.

The numbers game

More applications. More interviews.

Every application goes out with its own CV, written for that posting and paid once. Send enough of them and the law of large numbers finds you the job.

By hand5–10
With CV Rocket100
applications a day

Nearby

Live postings like this one

Same employer first, then the same role elsewhere.

Before you press

Straight answers

Get the CV for this job

From $25 per CV, paid once. No subscription.

What if my background isn't good enough?

We make the most of the background you have. The CV uses every piece of relevant proof your profile holds, and one of the 25 readers reads your whole profile and flags what the CV left out.

Do you really apply for me?

Yes, on the employer's own form, the hardest ones included. Where a question needs you, you answer it right there and AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

Is it a subscription?

No. You pay once per CV, from $25. Every application goes out with its own CV, written for that posting.

One job. One CV.
Paid once.

Pick the posting you want. We write for it, apply for you and catch the reply.

Get the CV for this job

From $25 per CV, paid once. No subscription.