Security Software Engineer

Há 3 dias


guarapuava, Brasil Tecla Tempo inteiro

*Native/Bilingual English is required for this role (read/written/spoken)Please upload your CV Resume in English.Monthly salary:$6,000 USDAlong with our partner, we are seeking a security-conscious contract Senior level Software Engineer to help enhance the security posture of their applications. The primary focus of this role is to systematically reduce their attack surface by addressing high-priority security risks. Using Snyk as the primary scanning tool, this engineer will be responsible for identifying, prioritizing, and remediating dependencies with known exploitable vulnerabilities. The goal is a targeted reduction of risk, not a simple "update-all" approach.Role & Responsibilities: The engineer will be responsible for the following: Vulnerability Analysis:Analyze the results of Snyk scans of their codebases (Ruby, Go, Python, JavaScript). Prioritization:Critically assess Snyk reports to distinguish between theoretical vulnerabilities and those that are genuinely exploitable within the context of their applications. Targeted Remediation:Plan and execute targeted dependency upgrades or apply patches specifically to fix the prioritized exploitable vulnerabilities, ensuring minimal disruption to the system. Code & Test Validation:Refactor code and update unit/integration tests as necessary to support the upgraded dependencies and validate the fixes. Collaboration & Documentation:Work closely with internal security and engineering teams, participate in code reviews, and clearly document the rationale for each remediation.Required Skills & Qualifications (Must-Haves): Candidates must have demonstrable, hands-on experience in the following areas: Security Tooling:Proven professional experience usingSnykto identify, prioritize, and manage vulnerabilities in a production environment. Candidate must be able to interpret Snyk's findings, including exploit maturity and reachability. Strong professional experience with all of the following languages: ○ Ruby (including Ruby on Rails) ○ Go ○ Python ○ JavaScript ○ TypeScript Deep expertise with package managers for each ecosystem (e.g., package.json, Go Modules, Pip/Poetry, NPM/Yarn). Version Control:Expert-level proficiency with Git. Automated Testing:A strong commitment to quality with proven experience in writing comprehensive tests.Preferred Qualifications (Nice-to-Haves): While not mandatory, preference will be given to candidates with experience in: Other Security Tools:Familiarity with other SAST/SCA tools (e.g., GitHub Advanced Security, Checkmarx, Trivy). CI/CD Integration:Experience integrating security tools like Snyk into CI/CD pipelines (e.g., Jenkins, GitLab CI, GitHub Actions). Containerization:Experience with Docker and container orchestration (e.g., Kubernetes).Benefits: A fully remote position, allowing for work-life balance. The opportunity to be a part of a mission-driven company that is committed to taking care of its employees. Two weeks of paid vacation per year 10 paid days for local holidaysWork Schedule : US Eastern Standard Time*Please note this role is currently for a 3-month project with the potential for a long-term position.


  • Data Engineer

    2 semanas atrás


    Guarapuava, Brasil Tata Consultancy Services Tempo inteiro

    Come to one of the biggest IT Services companies in the world!!Here you can transform your career!Why to join TCS?Here at TCS we believe that people make the difference, that's why we live a culture of unlimited learning full of opportunities for improvement and mutual development.The ideal scenario to expand ideas through the right tools, contributing to...

  • Senior Java Developer

    2 semanas atrás


    Guarapuava, Brasil Qubika Tempo inteiro

    We are looking for a Senior Java Developer to join our team! At Qubika, we design, develop, and deploy custom software solutions for organizations making an impact through technology. What We Expect From You Minimum 5 Years of experience in Java Backend Development Strong understanding of Agile methodologies and user story creation Hands‑on experience with...

  • Content Editor/Author/Writer

    4 semanas atrás


    Guarapuava, Brasil Innodata Inc. Tempo inteiro

    Join to apply for the Content Editor/Author/Writer role at Innodata Inc. Job Description We are seeking highly analytical and detail‑oriented professionals with hands‑on experience in Red Teaming, Prompt Evaluation, and AI/LLM Quality Assurance. Key Responsibilities Conduct Red Teaming exercises to identify adversarial, harmful, or unsafe outputs from...