Grupo | Senior Security Engineer
2 semanas atrás
About Grupo QuintoAndar
We are Grupo QuintoAndar, the largest real estate ecosystem in Latin America. Guided by a shared purpose of helping people love where they live, we have a diversified portfolio of brands and solutions across different countries in Latin America, covering all phases of the housing journey. We also have a Technology Hub in Portugal. We develop technology and innovation to transform and enhance the overall living experience.
With the support of a world-class team of investors and advisors, including Kaszek, Qualcomm, General Atlantic, and SoftBank, Grupo QuintoAndar is currently valued at over USD 5.1 billion and continues to grow year over year.
Here, you will work with top professionals in the market, in an environment that breathes innovation, collaboration, and high performance. To learn more about our story, visit:
Location & Remote Work
Our technology team operates under a "remote-first" model, which means we work from home and can live anywhere in Brazil. We also offer the option of working from our São Paulo offices or partner coworking spaces, up to twice a week.
Hiring Process Stages
The stages of our hiring processes aim to assess your experiences and allow you to meet our teams and explore career opportunities. They are structured as follows:
- People Interview
- Tech screening
- Case
- Tech interview - Case presentation
About the Team
We are seeking a Senior Security Engineer to technically lead our Vulnerability Management strategy, ensuring that the identification, prioritization, mitigation, and orchestration of vulnerabilities are deeply integrated into engineering, operations, and incident response workflows. This role operates at a strategic and systemic level, influencing multiple teams and technical domains, with a direct impact on reducing business risk.
Requirements
- Define and evolve the company's Vulnerability Management strategy, aligned with risk appetite, business growth, and technical maturity.
- Establish a prioritization model based on real risk, going beyond CVSS by incorporating business and exposure criteria.
- Serve as a technical reference for complex decisions, including critical and zero-day vulnerabilities, risk exceptions and formal acceptance, and trade-offs between speed, cost, and security.
- Develop and maintain executive metrics and dashboards, reporting program indicators on a biweekly basis.
- Critically assess vulnerabilities beyond automated tool outputs, focusing on real impact and risk context.
- Integrate the Vulnerability Management program with Incident Response and Threat Intelligence, ensuring continuous risk visibility and coordinated response.
- Manage the Security Bug Bounty program, acting as the focal point with researchers, validating findings, prioritizing fixes, and ensuring governance of the process.
Problems we need to solve with this role:
- Achieve measurable reduction in exposure to high/critical vulnerabilities.
- Define and report measurable indicators on vulnerability and risk management, translating technical risks into business language.
- Ensure engineering teams (or vulnerability owners) have clarity on priorities and responsibilities, eliminating ambiguities about who fixes, when to fix, and with what level of urgency.
- Integrate Vulnerability Management into the core of security operations, connecting vulnerabilities, incidents, threat intelligence, response, and cyber risks.
- Establish an integrated Vulnerability Management program (covering containers, endpoints, infrastructure, and applications) that is predictable, scalable, and risk-driven.
- Evolve a Vulnerability Management program that is predictable, scalable, and risk-driven, reducing reliance on manual efforts and reactive decision-making.
- Conduct structural process reviews and strengthen organizational awareness of vulnerability management, raising the company's technical and operational maturity level.
Important
- Our hiring process starts with the application If you truly want to be part of our team, please complete this step of the process. We analyze all candidates individually and provide feedback to all applicants.
- All communication will be conducted via email, so please stay tuned for our messages and release the domain to ensure our emails are not sent to spam.
Benefits
- Competitive salary
- Profit sharing
- Meal allowance
- Health insurance
- Dental plan
- Life insurance
- Childcare subsidy and Atypical Parenthood subsidy
- Wellhub
- Home office allowance
- Employee assistance program (mental health, social, legal, and financial support)
- Extended parental leave
- Day off on birthday, Mother's Day, and Father's Day
- Benefits Club (discounts on everyday services)
- Discounts at educational institutions
- Reading kit for children – PlayKids
Diversity & Inclusion at Grupo QuintoAndar
We value diversity and want everyone to feel welcome here, regardless of their age, gender identity, sexual orientation, race, color, ethnicity, origin, disability, religion, or any other characteristic. All our job openings are open to all individuals
You'll notice there are some diversity questions in the application form. For affirmative action roles, this information may be used to verify your alignment with the target audience for the opportunity. In such cases, it may be used for elimination purposes. For non-affirmative action roles, this data will be used anonymously, exclusively to monitor and improve our inclusion practices in the hiring process, and will have no impact on your application.
Privacy and Data Protection
The Grupo QuintoAndar operates in compliance with privacy and data protection laws, including, but not limited to, the Brazilian General Personal Data Protection Law (LGPD) (Law No. 13,709/2018), and ensures the security of your data. To learn more, please access our Privacy Notice for Candidates. For questions or to exercise your rights as a data subject, please contact us through our Service Channel.
-
Senior Security Engineer
Há 24 horas
São Paulo, São Paulo, Brasil Offensive Security na Nubank Tempo inteiroAbout NubankNubank was founded in 2013 to free people from a bureaucratic, slow and inefficient financial system. Since then, through innovative technology and outstanding customer service, the company has been redefining people's relationships with money across Latin America. With operations in Brazil, Mexico, and Colombia, Nubank is today one of the...
-
Senior Security Engineer
2 semanas atrás
São Paulo, São Paulo, Brasil WSP in Canada Tempo inteiroWho are we?We are one of the world's leading professional services firms, bringing together our expertise in engineering, consulting, and science to make a positive impact. We have 73,000 employees in more than 500 offices worldwide and cover a wide range of services: Mining, Transport & Infrastructure, Property & Buildings, Environment, Energy & Resources,...
-
Senior Security Engineer
2 semanas atrás
São Paulo, São Paulo, Brasil Zippi Tempo inteiroSobre a ZippiA Zippi tem como missão ajudar a impulsionar os 22 milhões de micro e pequenos negócios (MPEs) no Brasil com soluções financeiras que realmente atendem às suas necessidades. Fomos pioneiros no uso do PIX como plataforma de crédito, permitindo que MPEs acessem capital de giro de forma instantânea. Com apenas um toque, nossos clientes...
-
Identify Security Engineer
Há 6 dias
São Paulo, São Paulo, Brasil Wright Technical Services Tempo inteiroREMOTE BRAZIL | CLT | ENGLISH FLUENCY This role is crucial for maintaining secure and efficient access control at a global products manufacturer. The engineer will develop custom solutions, integrate systems, and ensure compliance with security policies, supporting the company's global operations.The position includes designing and implementing identity...
-
Security Engineer
Há 6 dias
São Paulo, São Paulo, Brasil Nubank Tempo inteiroAbout NubankNubank was founded in 2013 to free people from a bureaucratic, slow and inefficient financial system. Since then, through innovative technology and outstanding customer service, the company has been redefining people's relationships with money across Latin America. With operations in Brazil, Mexico, and Colombia, Nubank is today one of the...
-
Security Engineer
Há 6 dias
São Paulo, São Paulo, Brasil Nubank Tempo inteiroAbout NubankNubank was founded in 2013 to free people from a bureaucratic, slow and inefficient financial system. Since then, through innovative technology and outstanding customer service, the company has been redefining people's relationships with money across Latin America. With operations in Brazil, Mexico, and Colombia, Nubank is today one of the...
-
Security Engineer
2 semanas atrás
São Paulo, São Paulo, Brasil Netcracker Technology Tempo inteiroWe're building the future of how the world communicates.Netcracker, part of NEC Corporation, combines deep telecom industry expertise with cutting-edge cloud-native and AI-powered innovations to enable communications service providers and enterprises to transform their businesses, unlock innovation and create meaningful digital experiences for millions of...
-
Application Security Engineer
2 semanas atrás
São Paulo, São Paulo, Brasil BairesDev Tempo inteiroAt BairesDev, we've been leading the way in technology projects for over 15 years. We deliver cutting-edge solutions to giants like Google and the most innovative startups in Silicon Valley.Our diverse 4,000+ team, composed of the world's Top 1% of tech talent, works remotely on roles that drive significant impact worldwide.When you apply for this position,...
-
Grupo | Security Engineer
2 semanas atrás
São Paulo, São Paulo, Brasil QuintoAndar Tempo inteiroAbout Grupo QuintoAndarWe are Grupo QuintoAndar, the largest real estate ecosystem in Latin America. Guided by a shared purpose of helping people love where they live, we have a diversified portfolio of brands and solutions across different countries in Latin America, covering all phases of the housing journey. We also have a Technology Hub in Portugal. We...
-
Security Engineer
2 semanas atrás
São Paulo, São Paulo, Brasil CloudWalk, Inc. Tempo inteiroAbout CloudWalk:We are not just another fintech unicorn. We are a pack of dreamers, makers, and tech enthusiasts building the future of payments. With millions of happy customers and a hunger for innovation, we're now expanding our neural network - literally and metaphorically.This is not a traditional pentesting role. At CloudWalk, you'll go beyond running...