Назад
Company hidden
2 дня назад

Senior Security Engineer | AppSec

Формат работы
remote (только Brazil)
Тип работы
fulltime
Грейд
senior
Английский
c1
Страна
Brazil
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Senior Security Engineer | AppSec (Cloud Security): Building application security services, security tooling, detection pipelines, and secure SDLC mechanisms for a global subscription platform with an accent on secure design, vulnerability management, and cloud-native architectures. Focus on leading incident post-mortems, designing threat models and architectural guardrails, automating security controls, and balancing rigorous standards with product velocity.

Location: Remote within Brazil only

Company

hirify.global is a workplace wellness platform connecting employees with fitness, mindfulness, therapy, nutrition, and sleep partners through a subscription service.

What you will do

  • Own application security services, including SAST/DAST, IAM, vulnerability management, and detection pipelines.
  • Lead post-incident responses and post-mortems, converting root-cause findings into guardrails, automation, and policy improvements.
  • Drive security-by-design standards through RFCs, threat models, and architectural design documentation.
  • Establish vulnerability remediation SLAs, security metrics, and monitoring practices for engineering teams.
  • Execute security-critical migrations and platform updates while preserving data integrity and auditability.
  • Partner with Engineering, Legal, and Product on medium-to-large security initiatives.

Requirements

  • Prior experience delivering security tooling, detection logic, or secure SDLC mechanisms in modern cloud environments.
  • Experience with cloud architectures and container ecosystems such as AWS/EKS, GCP/GKE, Istio, and ArgoCD.
  • Fluency in English and Portuguese, with the ability to communicate technical security risks to technical and non-technical stakeholders.
  • Strong secure coding skills and experience writing clean, tested code for security automation.
  • Ability to work across AppSec, Cloud Security, GRC, and Detection as priorities evolve.
  • Familiarity with SOC 2, ISO 27001, LGPD, and GDPR frameworks.

Culture & Benefits

  • Remote and hybrid work options are available, with this role restricted to Brazil.
  • Home office reimbursement and flexible benefits.
  • Health, dental, and life insurance.
  • Paid vacation, additional annual days off, and a birthday holiday.
  • 100% paid parental leave for all new parents.
  • Wellness and emotional wellbeing programs, learning platforms, career development resources, and an inclusive collaborative culture.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →