Cloud Engineer – Infrastructure, Security Requirements

Job not on LinkedIn

🕒 July 7

🗣️🇧🇷🇵🇹 Portuguese Required

Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of Spassu

Spassu

1001 - 5000 employees

Founded 1992

💼 Consulting

📦 Logistics

📣 Marketing

Consulting • Logistics • Marketing

Spassu is a Brazilian company specializing in end-to-end digital transformation solutions. With over 30 years of experience, Spassu focuses on maximizing value delivery by simplifying processes and improving decision-making throughout its partners' journeys. The company employs experts in user experience, design thinking, and agile methodologies to co-create innovative solutions that meet the needs of diverse industries. By leveraging a multidisciplinary approach and applying best practices like ITIL and LEAN, Spassu facilitates continuous improvement and ensures the effective implementation of IT services across various sectors.

📋 Description

• Operational professional responsible for supporting, monitoring and responding to day-to-day security operations in the AWS public cloud, ensuring implementation, continuous operation and resilience (SRE) of security controls for cloud technologies, products and services. • Collaborates with cloud architects and other internal and contracted technical teams to operate cloud security infrastructure and services according to standards, requirements and best practices for resource usage. • Operate and maintain day-to-day security controls and tools in the AWS public cloud, ensuring continuous operation of resources such as GuardDuty, AWS Security Hub, AWS WAF, Amazon Inspector, AWS Config and CloudTrail, with activity logging and compliance with agreed service levels. • Continuously monitor security events and alerts, performing triage, prioritization and routing of incidents, and opening and tracking related tickets. • Execute security incident response activities, including containment, investigation and recovery, and document actions and lessons learned. • Manage operational vulnerability processes, running scans, triaging findings and tracking remediation with responsible teams. • Apply and maintain security baselines and hardening for public cloud resources and on-premises environments, following benchmarks such as CIS and the client’s internal policies. • Operate AWS identity and access management mechanisms (IAM), supporting permissions review, credential rotation and enforcement of the principle of least privilege. • Analyze logs and audit trails to identify anomalies, support investigations and maintain compliance evidence. • Support patching and security configuration updates, keeping environments up to date and compliant. • Work with other technical teams to integrate security tools into infrastructure and DevOps processes following ITIL, Agile and DevSecOps practices. • Document operational procedures, record activities performed and keep the security operations knowledge base up to date.

🎯 Requirements

• Bachelor’s degree in Information Technology, or any bachelor’s degree accompanied by a postgraduate specialization in Information Technology of at least 360 (three hundred and sixty) hours, from an institution recognized by MEC. • ITIL Foundation Certified v4 or higher, or Agile Certified Practitioner (PMI-ACP), or Agile Scrum Foundation, or Scrum Foundation Professional Certificate (SFPC). • Two or more certifications in AWS and/or Azure technologies, products or services. One of the certifications must be: CCSP (Certified Cloud Security Professional) OR Microsoft Certified: Security Operations Analyst Associate OR AWS Certified Security – Specialty. • 2 years of project management experience in public cloud IT infrastructure environments relevant to the technical areas of the role. • Practical experience in operation and support of AWS public cloud security (SecOps), including monitoring, incident response and day-to-day vulnerability management. • Hands-on experience operating native AWS security services such as GuardDuty, AWS Security Hub, Amazon Inspector, AWS Config, CloudTrail, Amazon Detective and Amazon Macie. • Experience with SIEM, EDR/XDR, WAF, IDS/IPS, Patch Management, hardening and identity and access management. • Practical experience applying day-to-day security frameworks, mapping controls and evidence to NIST, CIS, MITRE ATT&CK, ISO 27001 and OWASP Top 10. • Technical experience managing activities according to agile principles and practices, including the Agile Manifesto, Scrum, Extreme Programming (XP) and Kanban. • Experience with DevSecOps practices applied to the integration, operation and security routine of systems and infrastructure in public cloud and on-premises environments. • Experience with defensive security (Blue Team), threat hunting, event analysis and SOC operations is a plus. • Proven knowledge of major security frameworks and best practices, with the ability to apply them in operations: MITRE ATT&CK and D3FEND, NIST, CIS Controls and CIS Benchmarks, ISO 27001 and OWASP Top 10.

🏖️ Benefits

• Health Plan • Life Insurance • Meal or Food Allowance • Transportation Allowance • WellHub Gympass

Apply Now

Similar Jobs

🕒 May 7

Review ALL

11 - 50

💼 Consulting

🎯 Recruiter

🤝 B2B

Infrastructure Engineer at Latitude.sh automating the bare metal lifecycle management using modern IaaC tools. Collaborating with teams to enhance cloud infrastructure performance.

Cloud

Distributed Systems

Kubernetes

Linux

Python

Ruby

Terraform

Unix

Go

🕒 March 18

7TEEN Games

11 - 50

📣 Marketing

📦 Logistics

💼 Consulting

Backend Infrastructure Engineer working on BombTank's multiplayer infrastructure. Focusing on matchmaking systems, server management, and optimizing network performance.

🗣️🇧🇷🇵🇹 Portuguese Required

AWS

Kubernetes

Unity

Go

🕒 December 4, 2025

Chainstack 🛠️💙

51 - 200

🌐 Web 3

₿ Crypto

Infrastructure Engineer maintaining reliable and scalable Web3 services for Chainstack. Manage hybrid infrastructure, on-call rotation, improve monitoring and incident management in a dynamic team.

Ansible

AWS

Azure

Cloud

Google Cloud Platform

Grafana

Kubernetes

Linux

Prometheus

Python

Terraform

Go