Cloud Network & Edge Security Engineer

dLocal

Barcelona

Presencial

EUR 70.000 - 110.000

Jornada completa

14 días+
Generador de candidaturas

Una candidatura completa en un minuto: currículum y carta de presentación adaptados, listos para enviar.

Supera los filtros ATS

Descripción de la vacante

dLocal is seeking a Senior Network & Edge Security Engineer to design, operate, and evolve our global cloud and hybrid network perimeter. You will own secure connectivity, WAF and firewall controls, and automation to keep critical services secure, scalable, and available for international growth.

You will work with Platform, Information Security, Compliance, and Product teams to implement resilient networking across AWS and hybrid environments.

Formación

  • Solid hands-on experience designing, operating, and troubleshooting cloud networking in production environments with high availability and security requirements.
  • Strong knowledge of TCP/IP, HTTP/HTTPS, TLS, DNS, routing, NAT, load balancing, proxies, VPN/IPsec, and network troubleshooting practices.
  • Practical experience with AWS networking services, including VPC, subnets, route tables, Route 53, load balancers, Transit Gateway, VPC peering, security groups, Network ACLs, and AWS Network Firewall.
  • Hands-on experience managing WAFs and/or edge-security controls protecting web applications and APIs; experience in multi-provider environments is a plus.
  • Experience managing firewalls, ideally FortiGate, including VPNs, security policies, virtual IPs, routing, and log analysis.
  • Experience with Infrastructure as Code and automation tools such as Terraform, CloudFormation, Ansible, or similar, and the ability to integrate infrastructure changes into CI/CD workflows.
  • Experience with monitoring and observability platforms such as ELK, New Relic, Coralogix, or similar; ability to build actionable dashboards and alerts for latency, errors, throughput, availability, and anomalous traffic patterns.
  • Linux administration fundamentals and practical command-line troubleshooting skills.
  • Experience with HTTP/TCP proxies and reverse proxies, such as NGINX, HAProxy, or Squid.
  • Strong understanding of cloud-security best practices, network segmentation, least privilege, and secure change-management practices.
  • Strong written and spoken English, with the ability to document technical decisions and collaborate effectively across Networking, Security, Platform, Product, and external partner teams

Responsabilidades

  • Design, implement, and operate secure, resilient, and scalable network solutions across cloud and hybrid environments, with a focus on availability, latency, disaster recovery, and operational simplicity.
  • Own and continuously improve our edge-security stack, including cloud WAFs, network firewalls, proxies, load balancers, and traffic-routing policies that protect public APIs, frontends, and internal services.
  • Define, tune, and maintain WAF and firewall rules, policies, and traffic flows; proactively reduce noise and false positives while preserving effective protection against attacks.
  • Design and operate AWS networking services such as VPCs, subnets, route tables, Transit Gateway, VPC peering, Route 53, load balancers, security groups, Network ACLs, and AWS Network Firewall.
  • Coordinate, implement, and support third-party connectivity, including IPsec/SSL VPNs, leased lines, partner interconnections, routing, DNS, and failover paths.
  • Manage FortiGate-based services, including IPsec and SSL VPNs, security policies, virtual IPs/servers, NAT, routing, and log analysis.
  • Build and maintain end-to-end HTTP/HTTPS and network observability using logs, metrics, dashboards, alerting, synthetic checks, and traffic analysis to identify performance degradation, misconfigurations, and security events early.
  • Drive network and security infrastructure as code using Terraform or similar tools, integrating changes into CI/CD pipelines so they are repeatable, auditable, tested, and secure across environments.
  • Automate network and edge-security workflows such as site onboarding and decommissioning, rule and policy lifecycle management, partner connectivity, configuration validation, and controlled WAF-provider failovers.
  • Lead and actively participate in incident response for network, connectivity, WAF, and edge-security events; execute DR procedures, coordinate controlled failovers, and drive postmortems and remediation actions.
  • Partner with Information Security and Compliance to ensure network and edge controls support regulatory and industry requirements, including PCI and SOX, and provide audit-ready evidence when needed.
  • Maintain clear, actionable documentation for architectures, traffic flows, standards, operational procedures, and runbooks so other engineering teams can move quickly and safely.

Conocimientos

Cloud networking
Network security
WAF management
Terraform / IaC
AWS networking
FortiGate

Herramientas

Terraform
AWS Network Firewall
NGINX / HAProxy

Descripción del empleo

Why Join dLocal?

dLocal is the financial infrastructure powering global commerce in the world's fastest-growing markets. The biggest companies in the world trust us to unlock growth in 60+ countries-moving money where others see complexity. We don't just process payments; we are architects of payment ecosystems and partners in our customers' expansion. You'll work alongside 1,300+ teammates from 40+ nationalities and tackle global challenges from day one.

What's the opportunity?

We are looking for a Senior Network & Edge Security Engineer to help design, operate, and evolve dLocal's global cloud and hybrid network perimeter. This role combines deep cloud networking expertise with a strong security mindset: you will own secure connectivity, traffic protection, WAF and firewall controls, and the automation that makes those services reliable at scale. You will work closely with Platform, Information Security, Compliance, and Product teams to keep critical services secure, available, low-latency, and ready for international growth.

What you'll do
  • Design, implement, and operate secure, resilient, and scalable network solutions across cloud and hybrid environments, with a focus on availability, latency, disaster recovery, and operational simplicity.
  • Own and continuously improve our edge-security stack, including cloud WAFs, network firewalls, proxies, load balancers, and traffic-routing policies that protect public APIs, frontends, and internal services.
  • Define, tune, and maintain WAF and firewall rules, policies, and traffic flows; proactively reduce noise and false positives while preserving effective protection against attacks.
  • Design and operate AWS networking services such as VPCs, subnets, route tables, Transit Gateway, VPC peering, Route 53, load balancers, security groups, Network ACLs, and AWS Network Firewall.
  • Coordinate, implement, and support third-party connectivity, including IPsec/SSL VPNs, leased lines, partner interconnections, routing, DNS, and failover paths.
  • Manage FortiGate-based services, including IPsec and SSL VPNs, security policies, virtual IPs/servers, NAT, routing, and log analysis.
  • Build and maintain end-to-end HTTP/HTTPS and network observability using logs, metrics, dashboards, alerting, synthetic checks, and traffic analysis to identify performance degradation, misconfigurations, and security events early.
  • Drive network and security infrastructure as code using Terraform or similar tools, integrating changes into CI/CD pipelines so they are repeatable, auditable, tested, and secure across environments.
  • Automate network and edge-security workflows such as site onboarding and decommissioning, rule and policy lifecycle management, partner connectivity, configuration validation, and controlled WAF-provider failovers.
  • Lead and actively participate in incident response for network, connectivity, WAF, and edge-security events; execute DR procedures, coordinate controlled failovers, and drive postmortems and remediation actions.
  • Partner with Information Security and Compliance to ensure network and edge controls support regulatory and industry requirements, including PCI and SOX, and provide audit-ready evidence when needed.
  • Maintain clear, actionable documentation for architectures, traffic flows, standards, operational procedures, and runbooks so other engineering teams can move quickly and safely.
What we need you to have
  • Solid hands-on experience designing, operating, and troubleshooting cloud networking in production environments with high availability and security requirements.
  • Strong knowledge of TCP/IP, HTTP/HTTPS, TLS, DNS, routing, NAT, load balancing, proxies, VPN/IPsec, and network troubleshooting practices.
  • Practical experience with AWS networking services, including VPC, subnets, route tables, Route 53, load balancers, Transit Gateway, VPC peering, security groups, Network ACLs, and AWS Network Firewall.
  • Hands-on experience managing WAFs and/or edge-security controls protecting web applications and APIs; experience in multi-provider environments is a plus.
  • Experience managing firewalls, ideally FortiGate, including VPNs, security policies, virtual IPs, routing, and log analysis.
  • Experience with Infrastructure as Code and automation tools such as Terraform, CloudFormation, Ansible, or similar, and the ability to integrate infrastructure changes into CI/CD workflows.
  • Experience with monitoring and observability platforms such as ELK, New Relic, Coralogix, or similar; ability to build actionable dashboards and alerts for latency, errors, throughput, availability, and anomalous traffic patterns.
  • Linux administration fundamentals and practical command-line troubleshooting skills.
  • Experience with HTTP/TCP proxies and reverse proxies, such as NGINX, HAProxy, or Squid.
  • Strong understanding of cloud-security best practices, network segmentation, least privilege, and secure change-management practices.
  • Strong written and spoken English, with the ability to document technical decisions and collaborate effectively across Networking, Security, Platform, Product, and external partn
Would be awesome if you had
  • Experience with AWS, GCP, Azure, or multi-cloud networking and security architectures.
Consigue la evaluación confidencial y gratuita de tu currículum.
o arrastra y suelta tu archivo aquí
Similar jobs

Puestos de trabajo similares que vale la pena comparar

Cloud Network & Edge Security Engineer
Cloud Network & Edge Security Engineer

dLocal • Madrid

Presencial
EUR 90.000 - 120.000
Flexibility in how you work
Fintech industry exposure
Referral bonus program
+1
Cloud Network & Edge Security Engineer
Cloud Network & Edge Security Engineer

dLocal • Barcelona

Presencial
EUR 90.000 - 120.000
Flexible schedule
Fintech environment
Referral bonus
+1
Cloud Network & Edge Security Engineer
Cloud Network & Edge Security Engineer

Dlocal • Bellprat

Híbrido
EUR 90.000 - 130.000
Flexible hours
Fintech environment
Referral bonus program
+3
Senior Cloud Network & Edge Security Architect
Senior Cloud Network & Edge Security Architect

dLocal • Barcelona

Presencial
EUR 70.000 - 110.000
Senior Edge & Cloud Network Security Engineer
Senior Edge & Cloud Network Security Engineer

Dlocal • Bellprat

Híbrido
EUR 90.000 - 130.000
Flexible hours
Fintech environment
Referral bonus program
+3
Senior Global Cloud Network & Edge Security Engineer
Senior Global Cloud Network & Edge Security Engineer

dLocal • Barcelona

Presencial
EUR 90.000 - 120.000
Flexible schedule
Fintech environment
Referral bonus
+1
Senior Security Engineer – Identity & Access
Senior Security Engineer – Identity & Access

Dlocal • Madrid

Presencial
EUR 90.000 - 130.000
Flexible schedules
Fintech industry environment
Referral bonus program
+2
Work-From-Anywhere Cloud Network & Edge Security Engineer
Work-From-Anywhere Cloud Network & Edge Security Engineer

dLocal • Madrid

Presencial
EUR 90.000 - 120.000
Flexibility in how you work
Fintech industry exposure
Referral bonus program
+1
Principal Security Engineer – Identity & Access
Principal Security Engineer – Identity & Access

dLocal • Madrid

Híbrido
EUR 120.000 - 180.000
Flexible schedules
Referral bonus program
Social budget
+1
Staff Engineer
Staff Engineer

Nodi • Barcelona

Híbrido
EUR 90.000 - 140.000