Remote Senior Security Engineer – Cloud & DevSecOps - Latin America
Posted
This job is closed
This job post is closed and the position is probably filled. Please do not apply.
🤖 Automatically closed by a robot after apply link
was detected as broken.
Description:
Capital Markets Gateway (CMG) is a financial technology firm modernizing equity capital markets (ECM) by connecting investors and underwriters through a neutral platform.
CMG's platform is relied upon by nearly 100 buy-side firms representing $20 trillion in AUM and 15 investment banks.
The company is seeking a proactive and highly skilled Senior Security Engineer focused on Cloud & DevSecOps to enhance security across cloud infrastructure, applications, and DevOps practices.
This hands-on role involves securing cloud environments and integrating security into development pipelines.
The successful candidate will collaborate with Security, DevOps, and Engineering teams to identify risks, implement security controls, and improve security processes.
Key responsibilities include designing cloud security architecture, conducting risk assessments, integrating security into the Software Development Life Cycle (SDLC), and developing security automation frameworks.
Requirements:
Candidates must be based in Latin America.
A high level of English proficiency (C1 or C2) is required.
A minimum of 7 years of hands-on experience in information security, with a strong focus on cloud and application security is necessary.
At least 4 years of experience securing cloud platforms (preferably Azure) and expertise with cloud-native security tools and Infrastructure as Code (Terraform) is required.
Proven experience in securing application environments and integrating security into DevOps practices is essential.
Strong understanding of API security, encryption, and secrets management in distributed cloud environments is needed.
Hands-on experience with automation tools like Terraform and Ansible, as well as security-focused CI/CD pipelines, is required.
Expertise in securing containerized environments (Docker, Kubernetes) and addressing vulnerabilities in container images and dependencies is necessary.
Strong knowledge of cryptography, key management, and data protection best practices is essential.
Benefits:
The position offers a 2-year contract.
Employees receive 15 days of vacation.
Opportunities for tech courses and conferences are provided.