Mid Security Engineer
You will establish security practices in Brazil across application security, security operations, and governance, risk, and compliance. You will conduct threat modelling, secure code reviews, API testing, CI/CD checks, and AI workflow reviews. You will build SIEM detections and response playbooks, support incident response, assess AWS and Kubernetes environments, and perform vendor security reviews.
Responsibilities
- Support application security through threat modelling, secure code review, API security testing, and CI/CD pipeline checks
- Review and monitor AI and agentic workflows for prompt risks, unsafe automated actions, and data exposure
- Build and maintain SIEM detection rules, alert pipelines, and response playbooks
- Own detection coverage for defined systems
- Support incident response by triaging alerts, executing playbooks, and running tabletop exercises
- Conduct cloud security assessments across AWS and Kubernetes environments
- Execute vendor security assessments using the established due diligence framework
Requirements
- 2–4 years of experience in information security or a closely related technical role
- 2+ years of experience at a regulated fintech, bank, or payment company
- Experience with at least one cloud environment, preferably AWS
- Familiarity with Kubernetes fundamentals
- Familiarity with threat modelling, secure code review, or API security testing
- Interest in AI and agentic tooling risks
- Exposure to SIEM platforms and detection engineering
- Experience writing or tuning detection rules
- Strong written and verbal English communication
Benefits
- Competitive salary and benefits
- Stock options
- Discretionary performance bonus
- Latest tools and technology
- Office policy of 3–4 days per week in office
