Apply

Security Engineer

Posted 3 months agoViewed

View full description

πŸ’Ž Seniority level: Middle, 3+ years of experience in data security

πŸ“ Location: Chile, Argentina, United States, Brazil, Mexico, Americas timezone

πŸ’Έ Salary: $4,000 - $12,000 per month

πŸ” Industry: Financial technology

🏒 Company: AltScore

⏳ Experience: 3+ years of experience in data security

πŸͺ„ Skills: LeadershipPythonCybersecurityCommunication SkillsAnalytical SkillsCollaboration

Requirements:
  • Bachelor’s or Master's degree in Computer Science, Engineering, Cybersecurity, or a related technical field.
  • 3+ years of experience in data security.
  • Proficiency with Python programming.
  • Extensive experience and knowledge in complying with data protection standards such as SOC 2, ISO, GDPR, and similar certifications.
  • Strong technical foundation in cybersecurity principles, network security, and data protection technologies.
  • Proven track record in development and implementation of data security strategies that align with international compliance standards.
  • Excellent communication skills.
  • Relevant certifications in cybersecurity (e.g., CISSP, CISM, CEH) and compliance standards are highly desirable.
Responsibilities:
  • Lead the development and implementation of comprehensive data security strategies, ensuring compliance with SOC 2, ISO, GDPR, and similar standards.
  • Grow, manage and mentor a team of security professionals in maintaining high standards of data security and compliance.
  • Collaborate with the Engineering Team to integrate compliance requirements into our security infrastructure.
  • Conduct regular security audits, risk assessments, and ensure continual alignment with international data protection laws and standards.
  • Help develop, enforce, and update policies related to data encryption, secure coding practices, and overall information security, in line with global standards.
  • Stay updated on the latest developments in data security, cybersecurity, and compliance regulations.
Apply

Related Jobs

Apply

πŸ“ Argentina

🧭 Full-Time

πŸ” Cybersecurity

🏒 Company: Onapsis

  • 1+ years of experience using SIEM tools for security monitoring and incident detection.
  • Understanding of security protocols, networking, operating systems, and cryptography.
  • Familiarity with alerting systems, ticketing systems, and triaging security incidents.
  • Understanding of vulnerability management processes, including scanning and remediation.
  • Knowledge of antivirus software and Endpoint Detection and Response (EDR) solutions.
  • Practical experience in programming/scripting languages like Python, Bash, Powershell.
  • Upper intermediate spoken and written English level.
  • Strong communication and teamwork skills, and self-motivation.

  • Monitor security alerts, investigate potential incidents, and respond using SIEM tools.
  • Participate in vulnerability scanning and support remediation by coordinating with teams.
  • Assist in deployment and monitoring of endpoint detection and response solutions.
  • Proactively search for indicators of compromise in the network.
  • Help maintain and update security policies for compliance with regulations.
  • Stay updated on emerging threats and security technologies.

PythonBash

Posted 2 days ago
Apply
Apply

πŸ“ United States

🧭 Full-Time

πŸ’Έ 180000.0 - 230000.0 USD per year

πŸ” Cybersecurity

🏒 Company: Trail of BitsπŸ‘₯ 11-50SecurityNational SecurityCyber SecuritySoftware

  • Extensive experience in application security, focusing on identifying and mitigating cloud infrastructure vulnerabilities.
  • Track record of conducting technical security assessments across different platforms.
  • Strong programming and code auditing skills with experience in fuzzing and static analysis tools.
  • Proficiency in programming languages such as Go, Python, Rust, and JavaScript.
  • Ability to communicate complex security concepts effectively and mentor junior engineers.

  • Lead comprehensive security reviews of cloud-native applications and architectures, including cloud platform configurations.
  • Design and implement custom security tools for automated vulnerability detection.
  • Perform detailed architecture reviews and threat modeling, providing remediation guidance.
  • Work directly with industry-leading teams to analyze and recommend security improvements.
  • Contribute to application security advancement through research and development efforts.

AWSDockerPythonCloud ComputingCybersecurityGCPJavascriptKubernetesAPI testingAzureGoRustMicroservices

Posted 3 days ago
Apply
Apply

πŸ“ United States

πŸ’Έ 120000.0 - 175000.0 USD per year

πŸ” Cybersecurity

🏒 Company: PraetorianπŸ‘₯ 101-250πŸ’° $10,000,000 Series A almost 5 years agoPenetration TestingSecurityCloud SecuritySoftware EngineeringCyber SecurityEnterprise SoftwareNetwork Security

  • Demonstrated passion for offensive security and adversarial engineering.
  • 2+ years of IoT security experience in hardware/software reverse engineering, firmware analysis, embedded cryptography, wireless protocols, or IoT PaaS security.
  • Additional experience in product security testing, network security testing, web app penetration testing, and cloud security.
  • Understanding of threat models and attack paths.
  • Ability to write technical reports and present findings.

  • Provide technical execution on offensive security projects focused on IoT Security.
  • Identify nuanced vulnerabilities in advanced systems.
  • Develop custom methodologies, payloads, exploits, and tools.
  • Document mitigation strategies for emerging or undocumented risks.
  • Create comprehensive reports and presentations for clients.
  • Mentor other engineers in technical and professional development.
  • Collaborate with the security community to develop novel attack techniques.

AWSPythonEmbedded SystemsIoTMentoring

Posted 4 days ago
Apply
Apply

πŸ“ United States, Canada, Singapore, Poland, UK

πŸ’Έ 120000.0 - 175000.0 USD per year

πŸ” Cybersecurity

🏒 Company: PraetorianπŸ‘₯ 101-250πŸ’° $10,000,000 Series A almost 5 years agoPenetration TestingSecurityCloud SecuritySoftware EngineeringCyber SecurityEnterprise SoftwareNetwork Security

  • Demonstrated passion for offensive security and adversarial engineering.
  • 2+ years of experience in one or more offsec domains: software, hardware, network, or cloud penetration testing.
  • Ability to write technical reports and present technical findings both internally and externally.
  • Experience with startup and/or high-tech companies.
  • Prior security consulting experience a major plus.
  • Software development experience in core offsec languages such as golang or python.
  • Track record in vulnerability research, exploit development, and CVE assignments.

  • Provide technical execution on challenging offensive security projects for our customers.
  • Identify nuanced vulnerabilities in advanced systems.
  • Develop custom methodologies, payloads, exploits, and tools to ensure project success.
  • Develop documentation for novel mitigation strategies to emerging or undocumented security risks identified in client environments.
  • Develop comprehensive reports and presentations for our customers.
  • Serve as a mentor to other engineers in their technical and professional development.
  • Collaborate with the security community to develop novel attack techniques, tactics, and procedures (TTPs) through community engagement.

PythonSoftware Development

Posted 5 days ago
Apply
Apply

πŸ“ Argentina

🧭 Full-Time

πŸ’Έ 1.0 - 2.0 USD per year

πŸ” Financial technology

🏒 Company: Galileo Financial TechnologiesπŸ‘₯ 501-1000πŸ’° $77,000,000 Series A over 5 years agoIT ManagementFinancial ServicesBankingFinTech

  • Bachelor's degree or advanced student of IT careers.
  • Extensive knowledge in Application Security or Cyberbank Digital.
  • Minimum 3 years of experience in similar implementations.
  • Familiarity with operating systems, databases, and web/mobile applications.
  • Experience in security assessments, vulnerability analysis, and penetration testing.
  • Hands-on coding experience in Python, Java, or similar languages.

  • Play a crucial role in ensuring information and system integrity, confidentiality, and availability.
  • Implement the secure software development lifecycle (SSDLC) within a DevSecOps framework.
  • Configure, execute, and analyze results from security testing tools including SAST, DAST, and SCA.
  • Support development teams in understanding and addressing security vulnerabilities.
  • Oversee and troubleshoot security pipelines, ensuring proper quality gates.
  • Collaborate with teams to identify risks and implement corrective actions.
  • Automate processes such as API reporting.
  • Resolve support tickets according to SLAs.
  • Document processes, reports, and workflows.
  • Partner with development teams to review features and provide security feedback.
  • Interface with clients to discuss security aspects.

Python

Posted 7 days ago
Apply
Apply

πŸ“ US

🧭 Full-Time

πŸ’Έ 116000.0 - 182000.0 USD per year

πŸ” Technology

🏒 Company: MozillaπŸ‘₯ 5001-10000πŸ’° $300,000 Angel about 20 years agoπŸ«‚ Last layoff 2 months agoInternetOpen SourceWeb BrowsersSoftwareBrowser Extensions

  • 3+ years of relevant hands-on experience in a cybersecurity domain designing, publishing and building security practices.
  • 3+ years of experience translating technical and administrative security controls into actionable platform configurations.
  • Strong infrastructure security knowledge from high-level architectural concepts to implementation.
  • Experience securing large-scale deployments in major cloud stacks (AWS, GCP, or Azure).
  • Proficiency in using Terraform and GitHub Actions.
  • Experience with CNAPP / CSPM / CWPP solutions and Web Application Firewalls.
  • Experience in vulnerability management and with DevOps or SRE teams.
  • Development skills primarily in Python and Go.

  • Protect the services our products depend on from security risks and attacks.
  • Design, implement, and maintain tooling, systems, and processes for securing our cloud infrastructure.
  • Design, review, and improve the security controls of the organization.
  • Write, maintain, and expand security automation and monitoring tools.
  • Work with developers and operations to keep infrastructure safe.
  • Collaborate with cross-functional teams to enhance security practices.
  • Support other cybersecurity functions to improve security posture.

AWSPythonCybersecurityGCPAzureGoCI/CDDevOpsTerraform

Posted 7 days ago
Apply
Apply

πŸ“ U.S.

🧭 Full-Time

πŸ’Έ 200000.0 - 275000.0 USD per year

πŸ” InsurTech

🏒 Company: QuanataπŸ‘₯ 101-250Software EngineeringInformation TechnologySoftware

  • Bachelor’s degree in Computer Science, Cybersecurity, or a related field (or equivalent relevant experience).
  • 6 - 8 years of experience in cybersecurity, including 3 or more years in threat hunting, detection, and intelligence roles.
  • Strong expertise with SIEM platforms and SOAR tools.
  • Advanced understanding of application architectures and hands-on experience securing cloud environments.
  • Proficiency in building detection rules and managing automation workflows.
  • Deep knowledge of frameworks like MITRE ATT&CK and Lockheed Martin Cyber Kill Chain.
  • Excellent communication skills with the ability to engage technical and non-technical stakeholders.
  • One or more relevant certifications.

  • Develop, implement, and maintain proactive threat detection capabilities within the SIEM, correlating logs from multiple sources to identify and neutralize threats.
  • Build and manage SOAR playbooks, runbooks, and automation workflows to scale security operations and streamline incident response.
  • Collaborate with product development teams to understand application architectures, data flows, and infrastructure platforms to design effective detection rules.
  • Conduct regular threat hunts and use threat intelligence to identify and mitigate vulnerabilities and risks.
  • Lead efforts to correlate internal and external threat intelligence.
  • Create scalable frameworks to enable team contributions and ensure program sustainability.
  • Engage with product development teams for security insights on new features.
  • Report findings and metrics to stakeholders with actionable recommendations.

PythonCloud ComputingCybersecurity

Posted 8 days ago
Apply
Apply

πŸ“ United States, Brazil, Tel Aviv

πŸ” Cybersecurity

🏒 Company: AxoniusπŸ‘₯ 600-600πŸ’° $200,000,000 Series E 11 months agoAsset ManagementCloud SecurityInformation TechnologyCyber SecurityNetwork Security

  • 2-3 years of experience in application security focused on web applications and APIs.
  • Hands-on experience as a software engineer with proficiency in Python, JavaScript, or similar.
  • Strong knowledge of application security principles, including OWASP Top Ten.
  • Familiarity with security tools such as SAST, DAST, and SCA integrated into CI/CD pipelines.
  • Experience with vulnerability management practices.
  • Experience with cloud environments (AWS, GCP) and modern DevOps tools (Terraform, Docker, Kubernetes).
  • Excellent English and Hebrew communication skills.
  • Strong sense of ownership and ability to work independently or collaboratively.

  • Implement and maintain security tools (e.g., SAST, DAST, SCA) as part of the SDLC.
  • Conduct vulnerability management activities including monitoring and coordinating remediation with development teams.
  • Stay updated with the latest application security threats and improve Axonius' security practices.
  • Develop and maintain security automation scripts.
  • Assist in coordinating external penetration testing engagements.
  • Collaborate with R&D teams and external partners to strengthen product security.
  • Support initiatives like bug bounty programs and internal testing.

AWSDockerPythonGCPJavascriptKubernetesCI/CDTerraform

Posted 10 days ago
Apply
Apply

πŸ“ United States

πŸ’Έ 110400.0 - 138000.0 USD per year

πŸ” SaaS (Software as a Service)

🏒 Company: G-P

  • Education: BS (or higher) in Computer Science or related field, or equivalent work experience.
  • Experience: 3+ years in application security.
  • Excellent communication skills and business acumen.
  • Proficiency in coding/scripting languages (e.g., Python, Go).
  • Web application penetration testing experience.
  • AWS security and engineering knowledge.
  • Experience with developing or testing web application technologies.
  • Nice to have: security certifications, experience with Linux, Docker, Terraform.

  • Support the implementation of G-P’s established application security program.
  • Assess the company's web technologies using enterprise-grade tools.
  • Coordinate remediation efforts with engineering teams.
  • Participate in threat modeling exercises with engineering team members.
  • Triage SCA/SAST/DAST/CSPM findings.
  • Support vulnerability management efforts for networks and infrastructure.
  • Perform security assessments, reviews, and internal penetration tests.
  • Develop scripts and tools to automate repetitive security tasks.

AWSDockerPythonGoREST APITerraformScripting

Posted 11 days ago
Apply
Apply

πŸ“ Washington DC Metropolitan

🧭 Full-Time

πŸ” Information technology consulting services

🏒 Company: Arlo Solutions LLC

  • Must have an active TS Clearance SCI eligible.
  • Bachelor’s degree in computer science/information technology or related fields preferred.
  • At least 10+ years of cybersecurity experience including a senior role.
  • At least one IAT/IAM or equivalent security certification (e.g., CISSP, CCSP, CISM, CISA, or CASP).
  • Expert understanding of NIST 800 series guidelines and DoDI standards.
  • Experience in CI/CD DevSecOps environments and government cloud integrations.

  • Work with Programs to develop a comprehensive System Security Engineering (SSE) Body of Evidence (BOE).
  • Provide senior advisory support to CDAO AO regarding authorizations of CDAO capabilities.
  • Utilize expert knowledge for risk management strategies.
  • Evaluate threats and vulnerabilities to determine safeguards.
  • Collaborate with AO, program leadership, and CDAO leadership.
  • Provide independent risk analysis and recommendations.
  • Identify security baseline and develop assessment criteria.
  • Author and present briefs regarding authorization status.

AWSCloud ComputingCybersecurityGCPAzureComplianceRisk Management

Posted 11 days ago
Apply