Senior DevSecOps Engineer (Cloud) in Cinc Systems

FULL_TIME

5 cities
This job is performed partly from home and partly at the office in: Bogotá, Manizales, Barranquilla, Cali or Medellín
(Hybrid)
| Senior | Full time | Cybersecurity

Gross salary $3500 - 4500 USD/month

0 applications
Last checked today
Apply now
Requires applying in English

At CINC Systems, we are the leading provider of accounting and management software for the community association management industry. With ~300 employees and software used by more than 50,000 associations across the U.S., we support nearly 6 million homeowners. Post-2024 investment by Hg Capital has accelerated our growth and product development. The Senior DevSecOps Engineer will join our security team in Colombia to design, implement, and maintain cybersecurity solutions that protect cloud infrastructure and data. You will partner with Corporate IT, Cloud Infrastructure, DevOps, software development, and stakeholders to embed security best practices into our technology stack and ensure compliance with industry standards. This role blends hands-on security engineering with collaboration across functions to sustain a security-first culture while enabling rapid product innovation.

Apply through Get on Board.

Role overview and key responsibilities

  • Operate and optimize cloud-native security tools (e.g., Orca Security, AWS Security Hub, Azure Security Center, Microsoft Defender, Purview/Priva) to safeguard data, detect cloud threats, secure SaaS & AI usage, and enforce secure configurations.
  • Develop and enforce cloud security policies, standards, and automation scripts to ensure scalable, consistent security practices.
  • Lead vulnerability and patch management across cloud infrastructure, partnering with Cloud Infrastructure to harden externally exposed services, validate remediation effectiveness, and reduce false positives.
  • Strengthen secure cloud architecture by collaborating on backup resiliency, integrating security into CI/CD pipelines, and tuning protective platforms including WAF, bot mitigation, and DDoS tools.
  • Collaborate with managed NOC/SOC partners to ensure telemetry data from cloud infrastructure and endpoints integrates into SIEM and IDS platforms.
  • Deliver actionable insights by developing security dashboards, reports, and KPIs for risk management, executive leadership, and board-level readouts.
  • Automate compliance and enforcement using policy-as-code, integrating cloud telemetry with the GRC platform to streamline evidence collection and regulatory workflows.
  • Enhance secure access through VPNs, zero-trust, IAM integration, and continuous monitoring across AWS, Azure, and SaaS environments.
  • Lead proactive risk management activities, including penetration testing, threat modeling, and regular risk assessments.
  • Champion a security-first culture by partnering with Corporate IT, cloud engineers, and developers to embed secure design principles.
  • Ensure regulatory compliance with SOC 2, ISO 27001, GDPR, and other frameworks.
  • Communicate effectively with distributed teams (U.S. and LATAM) in English, fostering collaboration and knowledge sharing.
  • Support incident response by participating in on-call rotations and providing after-hours coverage when required.

Required skills and experience

Minimum qualifications include 5+ years in security engineering, infrastructure security, or cloud security, and 2+ years hands-on experience with AWS security tooling and service hardening. Candidates should have proven expertise with cloud-native security and compliance platforms (e.g., Orca Security, Wiz), solid knowledge of SIEM, CSPM, EDR, and vulnerability scanners, and scripting proficiency (Python, Bash, or PowerShell) to automate controls. Experience with Microsoft Defender for Endpoint is strongly preferred. Ability to correlate vulnerability data with detection tuning and collaboration with MSPs is important. A deep understanding of cybersecurity principles, threats, and vulnerabilities, plus experience refining security requirements and controls, is required. Familiarity with immutable infrastructure, resilient backups, and SOC-compliant or regulated environments is desirable. Strong communication skills, a collaborative mindset, and the ability to operate in a distributed team are essential.

Nice-to-have qualifications

Professional certifications such as AWS Security Specialty, CCSP, CCSK, or similar are advantageous. Experience with enterprise firewalls (e.g., Palo Alto, Fortinet), IaC and automation tools (Terraform, Ansible, CloudFormation), and container runtime security with RBAC controls is highly valued. Hands-on knowledge of implementing secure baselines across AWS and containerized environments, and integrating them into CI/CD and IaC workflows, is a plus.

Benefits and how to apply

We offer a remote work environment with competitive benefits, opportunities for professional growth, and a culture that values humility, accountability, and teamwork. If you’re excited to contribute to a security-focused team at a fast-growing company and help shape product security at scale, apply to join CINC Systems today.

GETONBRD Job ID: 57534

Flexible hours Flexible schedule and freedom for attending family needs or personal errands.
Computer provided Cinc Systems provides a computer for your work.
Informal dress code No dress code is enforced.

Remote work policy

Hybrid

This job is performed partly from home and partly at the office in Bogotá, Manizales, Barranquilla, Cali or Medellín (Colombia).

  1. Jobs
  2. Cybersecurity
  3. Cinc Systems
  4. Senior DevSecOps Engineer (Cloud)

About Cinc Systems

Responsible for designing and implementing robust cybersecurity solutions to protect cloud infrastructure and data across AWS, leading security enforcement and compliance across the organization. — Cinc Systems's full profile

Senior DevSecOps Engineer (Cloud)
Cinc Systems • 5 cities
This job is performed partly from home and partly at the office in: Bogotá, Manizales, Barranquilla, Cali or Medellín
(Hybrid)
Apply
Requires applying in English
Share this job Share