Senior Security Engineer
Há 13 horas
About Nubank
Nubank was founded in 2013 to free people from a bureaucratic, slow and inefficient financial system. Since then, through innovative technology and outstanding customer service, the company has been redefining people's relationships with money across Latin America. With operations in Brazil, Mexico, and Colombia, Nubank is today one of the largest digital banking platforms and technology-leading companies in the world.
Today, Nubank is a global company, with offices in São Paulo (Brazil), Mexico City (Mexico), Buenos Aires (Argentina), Bogotá (Colombia), Durham (United States), and Berlin (Germany). It was founded in 2013 in Sao Paulo, by Colombian David Vélez, and cofounded by Brazilian Cristina Junqueira and American Edward Wible. For more information, visit
About the team
We are looking for curious, driven individuals passionate about enhancing security maturity through attack to join us as a Senior Security Engineer for our Offensive Security team.
At Nubank, our Offensive Security team plays a crucial role in proactively identifying and mitigating security threats before they can impact our customers, Nubankers, and financial assets. By simulating real-world attacks, we strengthen our security posture and continuously evolve our defense strategies to stay ahead of adversaries.
Your role will be key in helping teams across Nubank understand and collaborate with Offensive Security initiatives. You'll work closely with security engineers, product teams, and other stakeholders to educate, guide, and support them in implementing secure development practices, ensuring that security is embedded into our products and services from the ground up.
This is an exciting opportunity to play a pivotal role in enhancing Nubank's security maturity. You will be key in creating resources, providing guidance, and advocating for best practices to help teams proactively identify and address security risks, ultimately protecting our customers and the company from emerging threats.
As an Offensive Security Engineer, you're expected to:- Perform infrastructure, web, and mobile/API pentest;
- Craft and execute red team operations;
- Help with vulnerability management;
- Code tools that assist with offensive security reviews;
- Support operations to fix vulnerabilities and help development squads to understand security issues;
- Assist in architectural / logical reviews of different softwares.
- Offensive Security background, with a focus on Red Team activities;
- Experience with different parts of a pentest, such as reconnaissance, enumeration, exploitation, post-exploitation, lateral movement, etc;
- Strong knowledge of recent and past attack vectors, as well as exploitations, and how to fix them;
- Ability to reproduce behavior of Advanced Persistent Threat (APTs) groups;
- Experience with security frameworks, such as OWASP;
- Familiarity with AWS general concepts;
- Ability to harden and improve CI/CD Pipelines as well as experience with SDLC;
- General knowledge in all security scopes, as well as strong knowledge on Operating Systems, Networks, Databases and Infrastructure Architecture;
- Experience with Threat Modeling;
- Active participation in the CTF scene or Bug Bounty programs is a plus;
- Experience with security assessment tools is also a plus, especially Burp Suite (e.g., for intercepting and modifying HTTP requests, automating attacks with Intruder, or analyzing application security). Familiarity with Nmap, Metasploit, SQLmap, Nessus, Censys, Shodan, and is also valuable. More broadly, proficiency with any tool that aids in assessing and validating security is highly desirable.
We believe in good team chemistry, enthusiasm for building things, and our surprising capacity to learn new things when we stay humble and open-minded. Good computer science skills and concepts, as well as English language skills, are essential.
Benefits
- Health, dental and life insurance
- Meal allowance
- Transportation assistance
- 30 days of paid vacation
- Equity at Nubank
- Parking partnership - discounted parking in our office
- Free bike parking with showers available
- NuCare - Our mental health and wellness assistance program
- NuLanguage - Our language learning program
- Gympass partnership
- Extended maternity and paternity Leaves
- Child care allowance
- 'Espaço Feijão'- Private nursing and breastfeeding spaces in our buildings
- Onsite Health Center - Medical support for every Nubanker in our office
Hybrid 2-3 times/week: Our hybrid work model brings us to the office at least twice a week, on strategic days designed to maximize team connection and collaboration. For more details, visit
-
Senior Network Consulting Engineer
1 semana atrás
São Paulo, Estado de São Paulo, Brasil Layer2 Network Consulting Tempo inteiroRole SummaryWe are seeking a Senior Network Consulting Engineer (NCE) – Security to join our team and support mission-critical security projects.This role requires deep hands-on expertise in Cisco Firepower Threat Defense (FTD) and Cisco Identity Services Engine (ISE), combined with strong consulting and troubleshooting skills to resolve complex issues in...
-
Senior Security Engineer
1 semana atrás
São Paulo, São Paulo, Brasil QuintoAndar Tempo inteiro R$100.000 - R$150.000 por anoAbout Grupo QuintoAndarWe are Grupo QuintoAndar, the largest real estate ecosystem in Latin America. Guided by a shared purpose of helping people love where they live, we have a diversified portfolio of brands and solutions across different countries in Latin America, covering all phases of the housing journey. We also have a Technology Hub in Portugal. We...
-
Senior Network Security Engineer
Há 6 dias
São Paulo, São Paulo, Brasil WEX Inc. Tempo inteiro R$80.000 - R$120.000 por anoAbout the Team/RoleWe're the Global Information Security Team at WEX, responsible for implementing and operating security technologies and processes throughout WEX. We partner closely with internal teams and customers to assure WEX operates in a secure and compliant manner. Our team holds itself to a high-standard and we collaborate closely with one another...
-
Security Engineer
Há 6 dias
São Paulo, São Paulo, Brasil CloudWalk, Inc. Tempo inteiro R$80.000 - R$120.000 por anoAbout CloudWalk:We are not just another fintech unicorn. We are a pack of dreamers, makers, and tech enthusiasts building the future of payments. With millions of happy customers and a hunger for innovation, we're now expanding our neural network - literally and metaphorically.Are you passionate about security and eager to build a career in automation and...
-
Senior Product Security Engineer
Há 6 dias
São José dos Campos, São Paulo, Brasil Boeing Tempo inteiro R$80.000 - R$120.000 por anoAt Boeing, we innovate and collaborate to make the world a better place. We're committed to fostering an environment for every teammate that's welcoming, respectful and inclusive, with great opportunity for professional growth. Find your future with us.Boeing Brazil is seeking Senior Product Security Engineer, reporting to the Safety & Airworthiness Manager,...
-
Principal Offensive Security Engineer
2 semanas atrás
São Paulo, São Paulo, Brasil Questrade Financial Group Tempo inteiro R$90.000 - R$120.000 por anoCompany DescriptionQuestrade is an award-winning low-cost digital alternative to traditional banks that is transforming the Canadian financial services industry. We empower Canadians with innovative products and cutting-edge technology, offering easier ways to invest in securities and foreign currency. Our diverse and collaborative team is committed to...
-
Staff Security Engineer
2 semanas atrás
São Paulo, São Paulo, Brasil Ebury Tempo inteiro R$90.000 - R$120.000 por anoEbury is a global fintech firm dedicated to empowering businesses to expand internationally through tailored and forward-thinking financial solutions. Since our founding in 2009, we've grown to a diverse team of over 1,700 professionals across 40+ offices and 29+ markets worldwide. Joining Ebury means becoming part of a collaborative and innovative...
-
Senior Cloud Security Engineer
Há 6 dias
São Paulo, São Paulo, Brasil 1GLOBAL Tempo inteiro R$100.000 - R$150.000 por ano1GLOBAL is a technology-driven global mobile communications provider dedicated to empowering enterprises worldwide to unlock the full growth potential of mobile connectivity. With a best-in-class telecom technology platform, a comprehensive suite of globally viable regulatory licenses, and privileged access to the telecom wholesale market, 1GLOBAL is...
-
Senior Cloud Security Engineer
2 semanas atrás
São Paulo, São Paulo, Brasil 1GLOBAL Tempo inteiro R$120.000 - R$180.000 por ano1GLOBAL is a technology-driven global mobile communications provider dedicated to empowering enterprises worldwide to unlock the full growth potential of mobile connectivity. With a best-in-class telecom technology platform, a comprehensive suite of globally viable regulatory licenses, and privileged access to the telecom wholesale market, 1GLOBAL is...
-
Lead Security Engineer
Há 4 dias
São Paulo, São Paulo, Brasil Nubank Tempo inteiro R$120.000 - R$180.000 por anoAbout NubankNubank was founded in 2013 to free people from a bureaucratic, slow and inefficient financial system. Since then, through innovative technology and outstanding customer service, the company has been redefining people's relationships with money across Latin America. With operations in Brazil, Mexico, and Colombia, Nubank is today one of the...