CareerScanCareerScan
JobsCompanies
BlogContact
For Employers
Sign InRegister Free
CareerScanCareerScan

India's verified job platform connecting candidates directly with employers. 100% free applications with instant ATS resume scoring.

Chennai, Bengaluru & Hyderabad
Jobs by location
Jobs in ChennaiJobs in BengaluruJobs in HyderabadJobs in PuneJobs in Mumbai
Popular roles
AR Caller JobsHealthcare Medical CodingReact / Full Stack DeveloperData & Power BI AnalystCustomer Support Executive
Top companies
TCS CareersCognizant JobsInfosys OpeningsApollo HospitalsOmega Healthcare
Career services
Free ATS Resume CheckerAI Resume Builder (Free)AI Job MatcherSalary Guide & BenchmarksJob Alerts on WhatsApp
© 2026 CareerScan India. All rights reserved.256-bit SSL encrypted & verified
Back to all jobs
  1. Home
  2. Jobs
  3. Dev Sec Ops Engineer
P
Peek

Dev Sec Ops Engineer

Mexico
₹75,000 – ₹85,000/mo
3+ years exp
Full-time
Posted 3d ago
0 views
Actively Hiring Urgent Opening Direct 1-Click Apply

Check Your Resume Match Score

Scan your resume against ATS criteria for this Dev Sec Ops Engineer role at Peek.

Apply for this position

Apply on Company Website Email: [email protected].
Notice a broken link or wrong info?

Job Description

Peek is the operating system powering the experiences industry - from museums and attractions to tours and activities. With over $7B in bookings, Peek’s AI-powered platform has helped thousands of merchants to increase revenues, save time, and deliver seamless guest experiences. Customers include MoMA, Whitney Museum, Seattle Aquarium, Bryant Park & Looping Group. The company has raised over $150 million from institutional investors Westcap, Goldman Sachs, and SpringCoast Partners. Learn more at http://www.peek.com www.peek.com.

As a remote-first company recognized by Forbes as of America's Best Startup Employers and by Built In as a 2025 and 2026 Best Place to Work, we are a global team of "Peeksters" who "Obsess Over Our Customers," "Accomplish Big Things," "Collaborate With Purpose," and "Get Better Every Day.

We're looking for a hands-on

DevSecOps Engineer

to embed security into our infrastructure, CI/CD pipelines, and cloud environment. You'll own the technical controls and evidence that keep us PCI DSS 4.0 and SOC 2 Type II compliant, drive vulnerability remediation across our container and VM fleet, and build out the disaster recovery testing program. This is a role for someone who's comfortable moving between hands-on technical remediation, audit-facing documentation, and cross-functional work with engineering, IT, and procurement.

Our team is 100% remote, however, we prefer candidates in the same time zones as the greater United States (UTC-10 to UTC-4).

 We will occasionally require you to work outside of normal business hours on infrastructure upgrades and maintenance. We are committed to working with you to keep a healthy and balanced schedule.

About the Team

We’re a small DevOps team supporting the whole Engineering organization, building applications on top of GCP and AWS. We own all aspects of the SDLC but strive to automate self-service wherever possible. Being a small team, we also practice SRE, continuously improving our observability and building with Infrastructure-as-Code. Security and compliance best practices are integral to our workflows, ensuring systems are secure by design and meet regulatory and organizational standards. Our team is remote but highly organized to meet the demand of a fast-paced environment. Our primary business language is English, and we emphasize strong communication skills.

About You

You're a security-minded engineer who's as comfortable in a Kubernetes cluster or CI/CD pipeline as you are explaining a control to an auditor. You own remediation end to end, like automating away repetitive security work, and are energized by helping a growing company scale security without slowing the business down.

What You'll Do

  • Own technical security controls across GCP and AWS: least-privilege IAM and RBAC, WAF, container and image security, and secure CI/CD.

  • Drive vulnerability remediation end to end: triage, prioritize, and automate fixes, partnering with the rest of the DevOps team on production rollout.

  • Build automated scanning and remediation into our pipelines.

  • Tune WAF policies and the OWASP Core Rule Set to protect public-facing applications without blocking legitimate traffic.

  • Run PCI DSS vulnerability scanning, including quarterly external ASV scans, and drive remediation of findings.

  • Contribute to incident response planning and exercises, and ensure backups and recovery processes meet security requirements for encryption, access, and integrity.

  • Produce and automate evidence for technical controls, and keep our cloud environments connected to our compliance platform (Drata).

  • Serve as technical expert for audits, customer security reviews, and vendor assessments involving sensitive data.

Requirements

  • 3+ years in DevSecOps, security engineering, cloud security, or a closely related role

  • Hands-on experience securing GCP and/or AWS, including managed Kubernetes (GKE, EKS)

  • Container and vulnerability management, including building automated remediation (tools such as Trivy, AWS Inspector, Amazon ECR scanning, GCP Artifact Analysis, ZAP)

  • WAF configuration and OWASP Core Rule Set tuning (Cloud Armor, AWS WAF, Cloudflare, or similar)

  • Least-privilege access management across cloud services (IAM, RBAC)

  • Working Linux knowledge sufficient to remediate OS and package vulnerabilities in VMs and container images

  • Scripting in Python, Bash, or similar

  • CI/CD experience (GitLab CI, GitHub Actions, Jenkins, Codefresh, or similar)

  • Experience working in a PCI DSS or SOC 2 environment, including producing evidence for technical controls

  • Clear written communication with both technical and non-technical audiences

Nice to Haves

  • Low-downtime patching approaches (rolling updates, blue/green, live patching such as kpatch or Livepatch)

  • PCI ASV scanning with Tenable or a comparable platform

  • Drata or a similar compliance automation platform

  • Serverless platforms (Cloud Run, Cloud Functions, AWS Lambda)

  • Cloud security posture tools such as ScoutSuite or Mondoo

  • Contributing to third-party risk reviews involving PII

  • Agentic or AI-assisted penetration testing

  • Certifications such as OSCP, CISSP, CISM, or AWS/GCP Security Specialty

Peek Travel Inc. is an equal-opportunity employer.  All qualified applicants will receive consideration for employment without regard to race, color, religion, national origin, sex, sexual orientation, gender identity, veteran status, disability, or other legally protected status.

If you are unable to apply due to incompatible assistive technology or a disability, please contact us at [email protected].  We will make every effort to respond to your request for disability assistance as soon as possible.

Key Requirements & Skills

  • 3+ years in DevSecOps, security engineering, cloud security, or a closely related role
  • Hands-on experience securing GCP and/or AWS, including managed Kubernetes (GKE, EKS)
  • Container and vulnerability management, including building automated remediation (tools such as Trivy, AWS Inspector, Amazon ECR scanning, GCP Artifact Analysis, ZAP)
  • WAF configuration and OWASP Core Rule Set tuning (Cloud Armor, AWS WAF, Cloudflare, or similar)
  • Least-privilege access management across cloud services (IAM, RBAC)
  • Working Linux knowledge sufficient to remediate OS and package vulnerabilities in VMs and container images
  • Scripting in Python, Bash, or similar
  • CI/CD experience (GitLab CI, GitHub Actions, Jenkins, Codefresh, or similar)
  • Experience working in a PCI DSS or SOC 2 environment, including producing evidence for technical controls
  • Clear written communication with both technical and non-technical audiences
  • Low-downtime patching approaches (rolling updates, blue/green, live patching such as kpatch or Livepatch)
  • PCI ASV scanning with Tenable or a comparable platform
  • Drata or a similar compliance automation platform
  • Serverless platforms (Cloud Run, Cloud Functions, AWS Lambda)
  • Cloud security posture tools such as ScoutSuite or Mondoo
  • Contributing to third-party risk reviews involving PII
  • Agentic or AI-assisted penetration testing
  • Certifications such as OSCP, CISSP, CISM, or AWS/GCP Security Specialty

Frequently Asked Questions

How to apply for Dev Sec Ops Engineer at Peek?

Click the "Apply on Company Website" button on this page to submit your application directly on the employer's official portal.

What is the salary for this role?

The salary for this role is MXN 75,000 - 85,000/mo per annum.

What experience is required?

3+ years of experience is required.

Is this position still open?

Yes, currently active and accepting applications.

ApplicationActively Hiring
Apply on Company Website
Send Email Application
Broken link or expired?
P

Peek

More jobs at Peek

Organic Growth Manager

Mexico City

Mid Market Account Executive

Remote

Sr. Backend Engineer

Mexico City

Share this Opening

Job Alerts for other

Receive email alerts whenever new other roles in Mexico are posted.

Set Free Alert →

Similar Openings

Explore related active roles in other

View all
Actively Hiring
Granicus
Senior Facilitator, Experience, Granicus Experience Group
Granicus Verified
5+ years
₹6.4L/mo
Remote, US
otherFull-timeRemote
Posted 1d ago
Apply Now
Actively Hiring
829studios
AI Innovation Engineer
829studios Verified
5+ years
₹7.6L – ₹9.3L/mo
Remote
otherFull-timeRemote
Posted 1d ago
Apply Now
UrgentActively Hiring
Prizepicks
Strategic Insights, Senior Researcher [Market Insights]
Prizepicks Verified
5+ years
₹9L/mo
Atlanta, GA preferred, Remote
otherFull-timeRemote
Posted 1d ago
Apply Now

Dev Sec Ops Engineer

Peek · Mexico

Apply on Company Website