Senior Security Engineer
Remote in Argentina, & 2 others
Security.Engineering& 12 others
Looking for something else?
Find a vacancy that works for you. Send us your CV to receive a personalized offer.
Find me a jobChoose an option
We are looking for a Senior Security Engineer to join our team. The position requires independent work directly with the client team, including senior leadership on the client end, along with a proactive approach. It is a fully hands-on position that involves daily work across many issues, so the ability to prioritize tasks, resolve blockers, and communicate with different teams is important alongside technical skills. Proactivity in this role means a constant effort to raise the security bar, improve, update, and enrich processes, security pipelines, and alerting.
Responsibilities
- Support vulnerability management for applications and microservices
- Provide guidance on secure authentication, authorization, secrets management, and data security
- Evaluate, enhance, and recommend the implementation of application security automation within CI/CD pipelines to detect and remediate security issues early
- Monitor, analyze, and triage alerts and logs from various security platforms, such as Security Scorecard and other third-party monitoring services
- Triage, remediate, and escalate security alerts, events, and reports
- Stay current on emerging threats, vulnerabilities, and threat actor behaviors, applying this knowledge to improve detection and response
- Support the response to and remediation of vulnerabilities identified through the penetration testing program
- Collaborate with Engineering, IT, Infrastructure, and Compliance teams to implement security controls aligned with frameworks such as NIST, HITRUST, and CIS
- Maintain production security procedures and metrics
- Develop and research enhanced security training
- Work independently to ensure goals set by leadership are achieved, while collaborating effectively as part of a team
- Drive continuous improvement by identifying automation opportunities, integrating emerging best practices, and strengthening detection and response capabilities
- Evaluate and apply AI/LLM based tooling to accelerate triage, deduplicate and correlate findings across scanners, prioritize based on exploitability and business context, and draft remediation guidance while maintaining human review of results
Requirements
- A minimum of 3 years of relevant experience
- Experience in application security or similar security roles
- Expertise in cloud environments
- Familiarity with software development lifecycle (SDLC) processes and source control technologies
- Experience with supply chain security, including dependency management and SBOMs
- Exposure to container and CI/CD security, such as Kubernetes and GitHub Actions
- Exposure to offensive security expertise and penetration testing certifications, such as OSWE or OSCP+, considered highly desirable
- Comfortable writing detection queries and scripts
- Familiarity with regulatory frameworks such as SOC 2 and CIS
- Knowledge of common attack vectors and the MITRE ATT&CK framework
- Strong problem-solving skills and the ability to thrive in a fast-paced, collaborative environment
- Experience with AWS, GCP, or CDN/edge security tools and services considered a plus
- Experience with automation frameworks or scripting in PowerShell or Bash
- Security certifications such as Security+, CEH, or similar
- Excellent English proficiency (B2 level or higher)
Nice to have
- Experience working with or reporting to a CISO
- Development experience in a modern programming language, such as Python or Go
- Familiarity with the HITRUST framework
- Experience with SSO platforms, such as Okta and SAML
