Security Engineer, Lead

DolarApp

São Paulo

Presencial

BRL 180 000 - 360 000

Tempo integral

14 dias+

Recebe mais respostas dos empregadores

Envia um currículo específico para a oferta em poucos minutos.

Vantagens oferecidas por esta oferta de emprego

Competitive salary
Stock options
Discretionary performance bonus
Latest security tools
World-class team
Fintech app in LATAM
3-4 days in-office

Resumo da oferta

ARQ seeks its first Security Engineer based in Brazil to lay the foundation for security in the region. You’ll influence security practices across applications, operations, and governance, with autonomy to define what good looks like locally while working with a global security team.

In this founding role you’ll own incident response readiness, cloud security assessments for AWS/Kubernetes, and vendor due diligence, while mentoring engineers and shaping security culture across the company.

Qualificações

  • 7+ years in information security, including building or maturing a security function from the ground up.
  • 2+ years at a regulated fintech/bank/payment company
  • Deep, hands-on expertise in cloud infrastructure security (AWS, Kubernetes) and ability to architect controls
  • Proven experience driving application security programs: threat modelling, secure code review, CI/CD hardening, API security testing
  • Demonstrated ability to define practical security guardrails for AI/agentic tooling and LLM integrations
  • Strong detection engineering background with mentoring experience
  • Experience with endpoint security tooling (EDR/XDR) and IAM in SaaS-heavy environments
  • Experience designing or evolving a vendor security assessment/third-party due diligence program
  • Excellent written and verbal communication; able to present security decisions to leadership

Responsabilidades

  • Drive the application security roadmap including threat modelling standards and API security testing strategy
  • Define the company's approach to securing AI/agentic workflows and guardrails for prompts and data exposure
  • Set technical direction for detection engineering, alert pipelines, and automated response across security stack
  • Own incident response readiness: design IR playbooks, lead tabletop exercises, act as technical lead during major incidents
  • Set standards for cloud security assessments across AWS and Kubernetes and review findings
  • Own and improve vendor security assessment framework and high-risk vendor reviews
  • Mentor mid/senior engineers on detection logic and playbooks without formal management duties

Conhecimentos

Security architecture
Threat modelling
CI/CD security
Security operations
Governance/Risk/Compliance
English fluency
Mentoring engineers

Ferramentas

Datadog SIEM
CrowdStrike
Cloudflare
AWS
Kubernetes
Google Workspace
Okta/Cloudflare Access

Descrição da oferta de emprego

What We're Looking For

You'll be ARQ's first Security Engineer based in Brazil – it's the chance to lay the foundation for how we do security in the region and shape how that function grows from here. You'll work closely with our global security team but have real autonomy in deciding what "good" looks like locally, from day one. We're looking for someone who enjoys a multidisciplinary role. Security at ARQ spans Application Security, Security Operations, and Governance/Risk/Compliance, and we need someone comfortable moving across at least two of these three areas – because in a founding role, there's no one else to hand off the parts that don't fit your specialty.

What you'll do
  • Drive the application security roadmap: threat modelling standards, secure code review practices, API security testing strategy, and security pipeline architecture

  • Define the company's approach to securing AI/agentic workflows – setting guardrails for prompts, destructive actions, and data exposure, and advising other teams building with LLMs/MCP servers

  • Set the technical direction for detection engineering, alert pipelines, and automated response across the security stack (Datadog SIEM, CrowdStrike, Cloudflare), and raise the bar on how the team designs and reviews detections

  • Own incident response readiness at a program level: design IR playbooks, lead tabletop exercises, and act as technical lead during major incidents

  • Set the standard and approach for cloud security assessments across AWS and Kubernetes, reviewing findings from other engineers and tackling the most complex environments directly

  • Own the vendor security assessment framework itself: continuously improving the due diligence process and handling the highest-risk vendor reviews

  • Act as a technical mentor to mid and senior engineers, reviewing their detection logic, assessments, and playbooks without formal management responsibilities

What you'll need
  • 7+ years in information security, including demonstrated experience building or substantially maturing a security function or program from the ground up

  • 2+ years at a regulated fintech/bank/payment company

  • Deep, hands-on expertise in cloud infrastructure security (AWS, Kubernetes), able to architect controls

  • Proven experience driving application security programs: threat modelling frameworks, secure code review standards, CI/CD pipeline hardening, and API security testing strategy

  • Demonstrated ability to define practical security guardrails for AI/agentic tooling – you understand the risks of LLM integrations, MCP servers, and automated workflows at an architectural level

  • Strong detection engineering background – you've designed detection strategy and mentored others in writing rules

  • Deep experience with endpoint security tooling (EDR/XDR) and identity & access management architecture in a SaaS-heavy environment (Google Workspace, Okta/Cloudflare Access, SSO/SCIM)

  • Experience designing or significantly evolving a vendor security assessment/third-party due diligence program

  • Excellent written and verbal communication; comfortable representing security decisions to leadership and cross-functional stakeholders

  • Business fluent in English

Benefits
  • Competitive salary and benefits

  • Stock options, so you own part of what you build

  • Discretionary performance bonus

  • The latest tools and technology

  • A world-class team that will challenge and grow your skills

  • The opportunity to help build the best fintech app in Latin America

  • Office Policy: 3-4 days a week in-office

Obtém a tua avaliação gratuita e confidencial do currículo.
ou arrasta e larga o ficheiro aqui.
Similar jobs

Ofertas semelhantes que vale a pena comparar

Security Engineer, Mid
Security Engineer, Mid

DolarApp • São Paulo

Híbrido
BRL 150 000 - 190 000
Stock options
Discretionary performance bonus
In-office 3-4 days a week
Security Engineer, Mid
Security Engineer, Mid

ARQ • São Paulo

Presencial
BRL 180 000 - 240 000
Stock options
Discretionary performance bonus
Latest tools and technology
+2
Recruiter
Recruiter

ARQ • São Paulo

Híbrido
BRL 250 000 - 380 000
Stock options
Discretionary bonus
3-4 days in-office
Recruiter
Recruiter

ARQ • Região Geográfica Intermediária de São Paulo

Híbrido
BRL 120 000 - 180 000
Stock options
Discretionary bonus
Latest tools and technology
+1
Investment Advisor – Brazil
Investment Advisor – Brazil

Arqfinance • São Paulo

Híbrido
BRL 60 000 - 100 000
Stock options
Discretionary performance bonus
Latest tools and technology
+2
Growth Manager - Partnerships Brazil
Growth Manager - Partnerships Brazil

ARQ • São Paulo

Híbrido
BRL 180 000 - 300 000
Competitive salary and benefits
Stock options
Discretionary performance bonus
+4
Growth Manager - Partnerships Brazil
Growth Manager - Partnerships Brazil

DolarApp • São Paulo

Presencial
BRL 180 000 - 260 000
Competitive salary
Stock options
Discretionary performance bonus
+4
Product Owner - ARQ Operating System
Product Owner - ARQ Operating System

Castleisland • São Paulo

Híbrido
BRL 120 000 - 150 000
Competitive salary and benefits
Stock options
Discretionary performance bonus
+1
Product Owner - ARQ Operating System
Product Owner - ARQ Operating System

ARQ • Região Geográfica Intermediária de São Paulo

Híbrido
Competitive salary and benefits
Stock options
Discretionary performance bonus
+3
Product Owner - ARQ Operating System
Product Owner - ARQ Operating System

ARQ • São Paulo

Híbrido
BRL 120 000 - 170 000
Competitive salary and benefits
Stock options
Discretionary performance bonus
+2