Staff Application Security Engineer
4 semanas atrás
Staff Application Security Engineer Join LEDN as a full‑time Staff Application Security Engineer. The Opportunity We are seeking a full‑time Staff Application Security Engineer with deep expertise in Application Security, Identity & Access Management, and Confidential Computing to strengthen the security of our Bitcoin‑backed loan platform. Security is fundamental to protecting our customers and business, and this role will drive both tactical improvements and long‑term strategy for securing our applications and authentication systems. You’ll work across our JavaScript/TypeScript services, AWS serverless stack (Lambda, API Gateway, Cognito, SNS, SQS), MongoDB, and Kubernetes microservices, and take ownership of evolving our authentication layer toward modern, phishing‑resistant approaches. In addition, you’ll design and operate AWS Nitro Enclaves to protect critical data and cryptographic operations in isolated, verifiable environments. Application Security : Lead secure design and code reviews, enforce secure coding practices, automate vulnerability detection (SAST, SCA, DAST), conduct threat modeling, partner with engineers to remediate vulnerabilities. Authentication & Identity : Own the roadmap for authentication and identity, enhance Cognito‑based architecture with stronger MFA solutions (WebAuthn, passkeys, hardware tokens), define secure session management and account recovery. Confidential Computing (AWS Nitro Enclaves) : Design enclave‑based architectures, integrate Nitro Enclaves with KMS, migrate high‑value operations into enclave environments, ensure compliance, auditability, resilience. Additional Security Domains : Harden AWS services with least‑privilege IAM, improve Kubernetes security posture, deploy SIEM framework with detection rules and playbooks, support compliance initiatives (SOC 2, ISO 27001). What You Bring 10+ years of proven experience in Application Security focusing on web and cloud‑native applications. Strong knowledge of JavaScript/TypeScript/Golang/Python and modern web vulnerabilities (OWASP Top 10, auth bypasses, business logic flaws). Expertise with AWS security best practices, particularly serverless architectures. Hands‑on experience with AWS Nitro Enclaves for confidential computing. Deep understanding of authentication and authorization standards (OAuth2, OIDC, WebAuthn, FIDO2). Practical experience with Cognito / Auth0 (MFA, custom flows, secure session handling). Background in SIEM design and log correlation across cloud and application layers. Familiarity with Kubernetes security (RBAC, pod security, admission controls, image scanning). Experience with secure code review. Understanding of software supply chain and Linux internals. Strong communication and collaboration skills. Nice to Haves Familiarity with Bitcoin custody and key management practices. Knowledge of Infrastructure as Code security (Terraform, AWS CDK). Prior work on user‑facing security features such as passwordless authentication, recovery flows, or device trust. Culture Fit Passion for progress, adaptability, and resilience in a high‑growth, fast‑paced environment. Builder's mindset, excited to create, iterate, and scale IS practices. Collaborative partner with empathy and clarity. Integrity and accountability, especially when managing confidential information. Experience working remotely. A Taste of What We Provide Comprehensive total rewards package starting on day one. Competitive paid time off. Ownership opportunity and shared equity. Remote‑first environment: work anywhere worldwide for up to 180 days (subject to restrictions). Career purpose and growth opportunities. We are an equal‑opportunity employer. We pride ourselves on inclusivity, diversity, and success that comes from diversity. We welcome accommodation requests throughout the recruitment process, and will address them confidentially. #J-18808-Ljbffr
-
Ubuntu Security Engineer
4 semanas atrás
Guarulhos, Brasil Canonical Tempo inteiroJoin or sign in to find your next job Join to apply for the Ubuntu Security Engineer role at Canonical 3 days ago Be among the first 25 applicants Join to apply for the Ubuntu Security Engineer role at Canonical Get AI-powered advice on this job and more exclusive features. Canonical is a leading provider of open source software and operating systems to the...
-
Staff Java Engineer
Há 2 dias
Guarulhos, Brasil BairesDev Tempo inteiro2 days ago Be among the first 25 applicants At BairesDev®, we've been leading the way in technology projects for over 15 years. We deliver cutting‑edge solutions to giants like Google and the most innovative startups in Silicon Valley. Our diverse 4,000+ team, composed of the world's Top 1% of tech talent, works remotely on roles that drive significant...
-
Staff IOS Engineer
4 semanas atrás
Guarulhos, Brasil PicPay Tempo inteiro2 days ago Be among the first 25 applicants Get AI-powered advice on this job and more exclusive features. Sobre o PicPay Com mais de dez anos de história, o PicPay é um ecossistema completo de serviços financeiros e não-financeiros que tem como objetivo atender as necessidades diárias de milhares de pessoas e negócios, tornando-se a sua principal...
-
Staff Fullstack React/C# Engineer
4 semanas atrás
Guarulhos, Brasil Nearsure Tempo inteiroStaff Fullstack React/C# Engineer - Work from home 1 day ago Be among the first 25 applicants Join our close-knit LATAM remote team: Connect through fun activities like coffee breaks, tech talks, and games with your team-mates and management. Say goodbye to micromanagement! We champion autonomy, open communication, and respect for diversity as our core...
-
Security Operations Coordinator
Há 3 dias
Guarulhos, SP, Brasil beBeeInvestigator Tempo inteiroJob Overview This role involves monitoring CCTV systems, investigating security incidents, and performing maintenance checks on surveillance equipment. Main Responsibilities Monitoring multiple CCTV screens and alarm systems simultaneously Identifying, investigating, and reporting security breaches or suspicious activities Regularly inspecting and performing...
-
Staff Engineer, Secure Web Gateway
4 semanas atrás
Guarulhos, Brasil Netskope, Inc. Tempo inteiroToday, there's more data and users outside the enterprise than inside, causing the network perimeter as we know it to dissolve. We realized a new perimeter was needed, one that is built in the cloud and follows and protects data wherever it goes, so we started Netskope to redefine Cloud, Network and Data Security. Since 2012, we have built the market-leading...
-
On-Site IT Support Engineer
2 semanas atrás
Guarulhos, Brasil TECEZE Tempo inteiroDirect message the job poster from TECEZE We are looking for a dedicated and proactive On-Site IT Support Engineer to provide hands-on support for our local infrastructure, users, and critical systems. This role ensures smooth IT operations, continuity of services, and timely resolution of incidents during the designated support period. The engineer will...
-
On-Site IT Support Engineer
2 semanas atrás
Guarulhos, Brasil TECEZE Tempo inteiroOverview We are looking for a dedicated and proactive On-Site IT Support Engineer to provide hands-on support for our local infrastructure, users, and critical systems. This role ensures smooth IT operations, continuity of services, and timely resolution of incidents during the designated support period. The engineer will serve as the primary point of...
-
On-Site It Support Engineer
1 semana atrás
Guarulhos, Brasil Teceze Tempo inteiroOverviewWe are looking for a dedicated and proactiveOn-Site IT Support Engineerto provide hands-on support for our local infrastructure, users, and critical systems.This role ensures smooth IT operations, continuity of services, and timely resolution of incidents during the designated support period.The engineer will serve as the primary point of contact for...
-
On-Site It Support Engineer
2 semanas atrás
Guarulhos, Brasil Teceze Tempo inteiroOverviewWe are looking for a dedicated and proactiveOn-Site IT Support Engineerto provide hands-on support for our local infrastructure, users, and critical systems.This role ensures smooth IT operations, continuity of services, and timely resolution of incidents during the designated support period.The engineer will serve as the primary point of contact for...