
Security Engineer
3 semanas atrás
You are an AI-powered Security Engineer responsible for identifying and responding to malicious or suspicious activity across our environment with speed and confidence. This role leads the engineering work behind these capabilities—designing scalable systems to detect threats and trigger automated responses. You will integrate AI into detection and response workflows to accelerate rule development, streamline enrichment, and reduce investigation time, with human validation ensuring precision and alignment.
As a cloud-first SaaS company relying on a broad portfolio of SaaS tools, we generate large volumes of event data across identity, endpoint, infrastructure, and collaboration systems. The scale and complexity of this telemetry demand improved detection engineering and automation. This is a platform engineering role focused on building and operating a modern detection pipeline integrated with security automation workflows. You will use Python, structured data, and widely adopted frameworks for mapping adversary behaviors and response logic to drive faster, more effective security outcomes. This role is not a support or triage position but a strategic contributor to our security infrastructure.
Responsibilities- Implement and operate detection systems, including a scalable cloud-native SIEM platform supporting ingestion from identity, endpoint, SaaS, and infrastructure sources.
- Develop and maintain detection coverage maps aligned to MITRE ATT&CK techniques, threat modeling, and incident history.
- Leverage AI to accelerate detection rule creation, enrichment, and triage insights, and conduct AI-assisted threat hunting to surface novel behaviors and codify them as deterministic detections.
- Build detection observability tools and dashboards to monitor rule effectiveness, alert volumes, and system performance.
- Design and implement SOAR workflows and automated response playbooks with built-in observability, rollback, and reliability controls.
- Leverage AI within SOAR for adaptive enrichment, workflow generation, and documentation, while continuously tuning automation based on incident outcomes.
- Lead incident response activities as part of the incident commander rotation, and drive continuous improvement of runbooks and playbooks using lessons learned and AI support for timelines and summaries.
- Collaborate cross-functionally with engineering and business stakeholders to embed detection and response into system design, operational processes, and organizational priorities.
Required:
- 5+ years in security engineering, detection engineering, or threat-focused automation roles.
- Strong knowledge of MITRE ATT&CK framework, detection logic, and IOC/IOA patterns.
- Familiarity with MITRE D3FEND for defense-in-depth and response playbook design.
- Hands-on experience designing, deploying, or managing SIEM platforms (vendor-neutral mindset preferred).
- Strong Python scripting skills for integrations, enrichment logic, and playbook development.
- Experience working with structured data formats such as JSON, YAML, logs, and metrics.
- Familiarity with SaaS logging constraints and cloud-native telemetry, preferably AWS.
- Understanding of event-driven architecture and API-driven integrations.
- Demonstrated ability to use AI tools to accelerate scripting, generate or translate detection rules, or assist with enrichment workflows, always with human validation for accuracy.
- Comfortable working autonomously and cross-functionally to deliver reliable detection outcomes.
Preferred:
- Experience building or maintaining detection pipelines using Elastic, Panther, or similar platforms.
- Experience with detection-as-code practices, managing detection logic as version-controlled code with testing and CI/CD.
- Experience writing detection rules in formats such as Sigma, including contributing to open-source or internal detection libraries.
- Experience with MITRE frameworks: ATT&CK, D3FEND, and ATLAS.
- Experience with OWASP guidance on application telemetry and detection (e.g., AppSensor, Logging Cheat Sheet).
- Competitive USD Compensation: Market-leading rate paid in U.S. dollars.
- 100% Remote (Home Country Only): Work from anywhere in your home country—no relocation required.
- Flexible Time Off: Our flexible PTO lets you recharge on your own terms.
- Local Holiday Pay: Paid time off for official holidays in your nation.
- Continuous Learning: Free learning membership for you and your household (1-on-1 tutoring hours, unlimited on-demand classes, full access to learning products).
- Supercharge with AI: Access to AI tools to boost productivity.
- Feedback-Rich, Collaborative Culture: Regular training and peer reviews; ownership mindset.
- Global Impact: Work on a platform used by learners worldwide.
- Mid-Senior level
- Contract
- Information Technology
- Technology, Information and Internet
Referrals increase your chances of interviewing at Varsity Tutors, a Nerdy Company, by 2x. Get notified about new Security Engineer jobs in Porto Alegre, Rio Grande do Sul, Brazil.
#J-18808-Ljbffr-
Information Security Engineer
3 semanas atrás
Porto Alegre, Rio Grande do Sul, Brasil WEX Tempo inteiroJoin to apply for the Information Security Engineer - IAM role at WEX Join to apply for the Information Security Engineer - IAM role at WEX About The Team/RoleWe are the WEX Identity Protection Team, tasked with deploying and managing security IAM technologies and procedures across the enterprise. We work closely with internal teams and clients to ensure...
-
Information Security Engineer
2 semanas atrás
Porto Alegre, Rio Grande do Sul, Brasil WEX Tempo inteiroJoin to apply for the Information Security Engineer - IAM role at WEXJoin to apply for the Information Security Engineer - IAM role at WEXAbout The Team/RoleWe are the WEX Identity Protection Team, tasked with deploying and managing security IAM technologies and procedures across the enterprise. We work closely with internal teams and clients to ensure the...
-
Security Software Engineer
3 semanas atrás
Porto Alegre, Rio Grande do Sul, Brasil Canonical Tempo inteiroJoin or sign in to find your next job Join to apply for the Security Software Engineer role at Canonical 1 week ago Be among the first 25 applicants Join to apply for the Security Software Engineer role at Canonical Get AI-powered advice on this job and more exclusive features. Canonical is a leading provider of open source software and operating...
-
Ubuntu Security Engineer
3 semanas atrás
Porto Alegre, Rio Grande do Sul, Brasil Canonical Tempo inteiroJoin or sign in to find your next job Join to apply for the Ubuntu Security Engineer role at Canonical 3 days ago Be among the first 25 applicants Join to apply for the Ubuntu Security Engineer role at Canonical Canonical is a leading provider of open source software and operating systems to the global enterprise and technology markets. Our platform,...
-
Application Security Engineer
1 semana atrás
Porto Alegre, Rio Grande do Sul, Brasil Varsity Tutors, A Nerdy Company Tempo inteiroOverviewWe are seeking an experienced Application Security Engineer to serve as a trusted partner to our software development teams.This role focuses on making our product secure by design—embedding security into how software is architected, written, deployed, and maintained.Unlike infrastructure security roles, this position centers on application-layer...
-
Linux Cryptography and Security Engineer
3 semanas atrás
Porto Alegre, Rio Grande do Sul, Brasil Canonical Tempo inteiroLinux Cryptography and Security Engineer Join or sign in to find your next job Join to apply for the Linux Cryptography and Security Engineer role at Canonical Linux Cryptography and Security Engineer 3 days ago Be among the first 25 applicants Join to apply for the Linux Cryptography and Security Engineer role at Canonical This is a unique opportunity...
-
Application Security Engineer
2 semanas atrás
Porto Alegre, Rio Grande do Sul, Brasil Varsity Tutors, a Nerdy Company Tempo inteiroOverview We are seeking an experienced Application Security Engineer to serve as a trusted partner to our software development teams. This role focuses on making our product secure by design—embedding security into how software is architected, written, deployed, and maintained. Unlike infrastructure security roles, this position centers on...
-
Application Security Engineer
2 semanas atrás
Porto Alegre, Rio Grande do Sul, Brasil Varsity Tutors LLC Tempo inteiroOverview We are seeking an experienced Application Security Engineer to serve as a trusted partner to our software development teams. This role focuses on making our product secure by design—embedding security into how software is architected, written, deployed, and maintained. Unlike infrastructure security roles, this position centers on...
-
Application Security Engineer
1 semana atrás
Porto Alegre, Rio Grande do Sul, Brasil Varsity Tutors Llc Tempo inteiroOverviewWe are seeking an experienced Application Security Engineer to serve as a trusted partner to our software development teams.This role focuses on making our product secure by design—embedding security into how software is architected, written, deployed, and maintained.Unlike infrastructure security roles, this position centers on application-layer...
-
IT Security Engineer
2 semanas atrás
Porto Alegre, Rio Grande do Sul, Brasil Rocket Tempo inteiroJob Title: IT Security Engineer Level: Junior | Mid Level Working Hours: Full Time(40h/Week) Contract: CLT (Brazil) Location: LATAM, Brazil Your Team You will report to our Head of Security and join the Security team. On TheOrg you can view the complete structure of our organisation, including information about every team member, hiring managers and...