
DevSecOps Engineer
- Lima Callao
- Autónomo
- Tiempo completo
- Infraestructura Cloud:
- Configurar auto-scaling groups para manejar picos de tráfico
- Implementar CDN global (CloudFlare/AWS CloudFront) para performance optimization
- Configurar load balancers y health checks para high availability
- Diseñar disaster recovery strategy con RTO/RPO definidos * Security Implementation:- Implementar security hardening para WordPress y servidor infrastructure
- Configurar Web Application Firewall (WAF) con rules específicas para WordPress
- Establecer intrusion detection/prevention systems (IDS/IPS)
- Implementar certificate management automático (Let's Encrypt/ACM)
- Configurar security scanning automatizado y vulnerability assessment * CI/CD & Deployment:- Diseñar e implementar CI/CD pipeline para WordPress deployments
- Configurar automated testing integration (unit, integration, security tests)
- Implementar blue-green deployment strategy para zero-downtime updates
- Crear staging environments que repliquen producción
- Configurar automated rollback mechanisms * Monitoring & Observability:- Implementar comprehensive monitoring (Prometheus/Grafana, New Relic, o similar)
- Configurar alerting para performance, security y availability issues
- Establecer logging centralized con analysis capabilities
- Implementar synthetic monitoring para user journey critical paths
- Crear dashboards para business metrics y technical KPIs * Backup & Recovery:- Implementar automated backup strategy para database y files
- Configurar cross-region backup replication
- Crear documented disaster recovery procedures
- Implementar point-in-time recovery capabilities
- Regular testing de backup restoration procedures * Compliance & Governance:- Asegurar compliance con regulaciones financieras (PCI DSS basics)
- Implementar data encryption at rest y in transit
- Configurar audit logging para todas las actividades críticas
- Establecer access controls y principle of least privilege
- Documentar security procedures y incident response plansRequirements
- Cloud Platforms:
- Expertise avanzado en Infrastructure as Code (Terraform, CloudFormation)
- Experiencia sólida con containerization (Docker, Kubernetes) Conocimiento profundo de networking, security groups, y VPC configuration
- Experiencia con CDN configuration y performance optimization * Security Expertise:- Experiencia comprobada en security hardening y best practices
- Conocimiento sólido de security scanning tools y vulnerability management
- Comprensión de compliance requirements para financial services
- Experiencia con penetration testing y security audits
- Familiaridad con OWASP Top 10 y WordPress-specific security issues * WordPress Specific:- Experiencia sólida con WordPress hosting architecture y optimization
- Conocimiento de WordPress security plugins y configurations
- Comprensión de WordPress performance optimization y caching strategies
- Experiencia con WordPress multisite si aplicable
- Familiaridad con managed WordPress hosting platforms (WP Engine, Kinsta) * DevOps Tools:- Experiencia avanzada con CI/CD tools (GitHub Actions, Jenkins, GitLab CI)
- Conocimiento profundo de configuration management (Ansible, Chef, Puppet)
- Experiencia con monitoring tools (Prometheus, Grafana, DataDog, New Relic
- Familiaridad con log management (ELK stack, Splunk)
- Experiencia con infrastructure monitoring y alerting * Calificaciones Deseables- Certificaciones cloud (AWS Solutions Architect, Google Cloud Professional)
- Certificaciones security (CISSP, CEH, Security+)
- Experiencia con financial services infrastructure
- Conocimiento de compliance frameworks (SOC 2, PCI DSS)
- Experiencia con database administration (MySQL optimization)
- Familiaridad con managed database services (RDS, Cloud SQL)Benefits
- Trabajo remoto
- Pago por horas.
- Posibilidad de ser llamado para diversos proyectos con diversos clientes.