Mid Security Engineer
Establish security practices in Brazil across application security, security operations, and governance, risk, and compliance. The role covers threat modelling, secure code reviews, API testing, CI/CD checks, AI workflow reviews, SIEM detections, incident response, AWS and Kubernetes assessments, and vendor security reviews.
Responsibilities
- Support application security through threat modelling, secure code review, API security testing, and CI/CD pipeline checks
- Review and monitor AI and agentic workflows for prompt risks, unsafe automated actions, and data exposure
- Build and maintain SIEM detection rules, alert pipelines, and response playbooks
- Own detection coverage for defined systems
- Support incident response by triaging alerts, executing playbooks, and running tabletop exercises
- Conduct cloud security assessments across AWS and Kubernetes environments
- Execute vendor security assessments using the established due diligence framework
Requirements
- 2–4 years of experience in information security or a closely related technical role
- 2+ years of experience at a regulated fintech, bank, or payment company
- Experience with at least one cloud environment, preferably AWS
- Familiarity with Kubernetes fundamentals
- Familiarity with threat modelling, secure code review, or API security testing
- Interest in AI and agentic tooling risks
- Exposure to SIEM platforms and detection engineering
- Experience writing or tuning detection rules
- Strong written and verbal English communication
Benefits
- Competitive salary and benefits
- Stock options
- Discretionary performance bonus
- Latest tools and technology
- World-class team and professional growth opportunities
- Opportunity to help build a fintech app in Latin America
- Office policy of 3–4 days per week in office