Senior Security Engineer (AI Security)
About Nu
Nu is the leading digital bank in Latin America, serving 135 million customers across Brazil, Mexico, and Colombia. The company has been leading an industry transformation by leveraging data and proprietary technology to develop innovative products and services.
Guided by its mission to fight complexity and empower people, Nu caters to customers’ complete financial journey, promoting financial access and advancement with responsible lending and transparency. The company is powered by an efficient and scalable business model that combines low cost to serve with growing returns.
Nu’s impact has been recognized in multiple awards, including Time 100 Most Influential Companies, Fast Company’s Most Innovative Companies, and Forbes World’s Best Banks.
Visit our Institutional Page
About the role
We are looking for a Senior Security Engineer to work closely with our teams to strengthen the security and resilience of our AI ecosystem. In this role, you will identify and assess security risks across machine learning models and Generative AI applications, design and implement security controls, and help build security frameworks and tooling for the safe adoption of AI at scale.
You will partner with engineering teams to integrate security throughout the AI development lifecycle, automate security assessments and controls, and contribute to the continuous evolution of our AI security practices. This role combines hands-on security engineering, risk analysis, and applied AI security, requiring strong technical expertise, sound judgment, and a proactive mindset to help ensure the secure and responsible use of AI technologies.
Main Responsibilities
Identify and analyze vulnerabilities, providing insights and recommendations for mitigation;
Contribute to the development and implementation of cutting-edge security frameworks, ensuring the responsible and secure usage within our AI ecosystem;
Work closely with development teams to integrate security measures into the AI development lifecycle;
Assist in incident response planning specific to AI-related security incidents and participate in simulations to test response effectiveness;
Develop and integrate tools to automate security assessments and controls;
Proactively seek knowledge and engage in research and development initiatives to support innovation;
Raise Nubank awareness towards safe AI usage.
Must Have
Knowledge of security frameworks, such as OWASP;
Programming skills in languages commonly used in machine learning (e.g., Python);
Proactive mindset with the ability to analyze complex systems and identify potential security risks;
Strong communication skills to effectively convey complex security concepts to technical and non-technical stakeholders.
Hands-on experience with CI/CD pipelines and implementing security tools (e.g., SAST, DAST, SCA).
Experience with high scalability environments.
Experience in zero-trust and regulated environments.
Nice to Have
Experience with AI frameworks and libraries (e.g. PyTorch, TensorFlow);
Expertise with automation programming languages (e.g. Bash, Ansible, Go);
Knowledge of cloud infrastructure technologies (e.g. AWS, K8S, Terraform);
Knowledge of Machine Learning and Generative AI concepts and technologies (e.g. HuggingFaces, MCP).
Role Location
Hybrid: Belo Horizonte, Rio de Janeiro, São Paulo, Campinas - SP.
Our Benefits
Chance of earning equity at Nubank
Food/ Meal Card (Vale-Refeição and/or Vale Alimentação)
Public Transportation Commuting Benefit (Vale-Transporte)
NuCare – Psychological, Financial and Legal Assistance Program
Life Insurance
Medical Plan
Dental Plan
NuLanguage – Language Course Program
Nucleo - Our learning platform of courses
Extended Parental Leave
Daycare Allowance
Parental Consultancy
Work-from-home Allowance
Gym Partnerships
30 days of paid vacation
Relocation Assistance Package, if applicable
Work Model for this RoleHybrid 2-3 times/week: Our hybrid work model brings us to the office at least twice a week, on strategic days designed to maximize team connection and collaboration. For more details, visit
Explore how we build technology at Nubank:
🔗 ↗
🎥 ↗
🎧 Listen to our stories on Spotify ↗
Our recruitment process may involve the use of artificial intelligence–enabled tools, such as automated interview transcription and analysis, to support the evaluation process. Artificial intelligence is not used to make final hiring decisions; all decisions are made by human reviewers.
As published by ashby · 14 questions
Basics
Name, Email, Resume, What is your current location (city, state and country)?
Short answers (3)
- Linkedin URL
- Phone Number
- What is your salary expectation? optional
Pick from a list (11)
- What is your level of English proficiency?
- Do you have hands-on coding experience in Python applied to security or machine learning systems, working directly on identifying and mitigating security risks?
- Have you implemented security tools (SAST, DAST, and/or SCA) integrated into CI/CD pipelines, being responsible for the configuration itself and not only for consuming the results?
- Have you applied security frameworks such as OWASP in high-scalability environments (high transaction or user volume)? optional
- Have you worked in a regulated environment (e.g., financial services, healthcare) with zero-trust architecture, and been responsible for explaining security risks and decisions to both technical and non-technical stakeholders? optional
- Are you available to work onsite two to three days per week?
- Are you legally authorized to work in the country where this position is located?
- Will you require sponsorship for employment visa status now or in the future?
- Do you require relocation for this role?
- Have you previously worked at Nubank or any company acquired by Nubank?
- Have you participated in a hiring process with Nubank in the last 6 months?