Description
At Mevo, we have been redefining the standards of digital health since 2017\. We are a company in constant growth and innovation, driven by the mission of facilitating access to healthcare through technology. In 2022, we expanded our horizons by launching a marketplace for treatment enrollment, reinforcing our commitment to healthcare in Brazil. We offer an environment where you will have the opportunity to work in a dynamic and innovative setting, alongside a team that values continuous learning and collaboration. If you are seeking a challenge that combines technology, security, and positive impact on people's health, join us in our mission to transform access to healthcare in Brazil.
We are looking for an SRE/DevOps professional who will strategically integrate development, security, and operations practices, ensuring robust, secure, and scalable environments for our health technology projects.
### **Responsibilities and Duties**
* Automate deployment, monitoring, and incident response processes.
* Develop and maintain secure and efficient CI/CD pipelines.
* Implement and manage security practices across the entire DevOps lifecycle (CI/CD).
* Collaborate with development, operations, and security teams to promote a DevSecOps culture.
* Implement and monitor cloud infrastructure, identifying and remedying vulnerabilities.
* Conduct security risk analysis and management for applications and infrastructure.
* Define and manage SLIs and SLOs.
* Conduct blameless post-mortems to learn from failures and prevent recurrence.
* Document processes, best practices, and standards for development, security, and operations.
### **Requirements and Qualifications**
* Solid experience with CI/CD pipelines (e.g., GitHub Actions, GitLab CI, Jenkins, etc.).
* Proven experience with Infrastructure as Code (IaC), using tools such as Terraform or Ansible.
* Knowledge of application security, automation of security testing, and environment hardening.
* Experience with monitoring and logging (Prometheus, Grafana, ELK Stack or similar).
* Hands-on experience with containers and orchestration (Docker, Kubernetes).
* Experience in Cloud Computing environments (AWS, GCP, or Azure).
* Familiarity with vulnerability analysis practices (SAST, DAST, Dependency Scanning).
* Knowledge of access and secrets management (Vault, AWS Secrets Manager, etc.).
* Experience with code versioning tools such as Git.
* Strong programming/scripting skills for ad-hoc automation.
### **Preferred Qualifications**
* Certifications in Cloud (AWS, Azure, GCP) and security (CompTIA Security\+, AWS Security, etc.).
* Experience in regulated environments (LGPD, HIPAA, PCI DSS).
* Experience leading incident response and forensic investigations.
* Experience with FinOps.
* Contributions to open-source projects or active participation in technical communities.
### **Benefits:**
* TotalPass benefit;
* Meal voucher and food allowance;
* Life insurance;
* Health plan;
* Daycare assistance (for children up to 6 years old);
* Dental plan;
* Pharmacy benefit;
* Petlove benefit;
* Bonus (based on goal achievement);