ARQ
Security Engineer, Mid
São Paulo
Get past the screening software and onto a recruiter's desk
hirly rewrites your resume for this job — matching the keywords and skills in the posting, moving your most relevant experience to the top, and writing a cover letter to fit. About 30 seconds.
- Keywords matched to this posting
- Fit score before you apply
- Cover letter included
Matched against 2.3M live jobs from 200,000+ employers in 200+ countries.
Tailor my resume for this job →hirly's read of this role
- Role family
- Engineering
- Seniority
- Mid level
- Country
- BR
- Work mode
- On-site / unstated
- First seen by hirly
- 28 Sept 2026
Derived automatically from the posting. Upload your resume above to see how the role scores against it.
the posting
What We're Looking For
You'll be ARQ's first Security Engineer based in Brazil – it's the chance to lay the foundation for how we do security in the region and shape how that function grows from here. You'll work closely with our global security team but have real autonomy in deciding what "good" looks like locally, from day one.
We're looking for someone who enjoys a multidisciplinary role. Security at ARQ spans Application Security, Security Operations, and Governance/Risk/Compliance, and we need someone comfortable moving across at least two of these three areas – because in a founding role, there's no one else to hand off the parts that don't fit your specialty.
What you'll do
Support application security work: threat modelling sessions, secure code review, API security testing, and CI/CD pipeline checks
Help review and monitor AI/agentic workflows for prompt risks, unsafe automated actions, and data exposure
Build and maintain SIEM detection rules, alert pipelines, and response playbooks (Datadog SIEM, CrowdStrike, Cloudflare), owning detection coverage for a defined set of systems end-to-end
Support incident response: triage alerts, execute IR playbooks, and help run tabletop exercises
Conduct cloud security assessments across AWS and Kubernetes environments under the guidance of senior team members
Execute vendor security assessments using the established due diligence framework, owning the review process for a portion of the vendor pipeline
What you'll need
2–4 years in information security or a closely related technical role (security operations, cloud/infra engineering with a security focus, or similar)
Working experience with at least one cloud environment (AWS preferred) and familiarity with Kubernetes fundamentals
Basic familiarity with application security concepts: threat modelling, secure code review, or API security testing
Curiosity about AI/agentic tooling risks (LLM integrations, MCP servers, automated workflows) – prior hands-on experience is a plus, not required
Exposure to SIEM platforms and an interest in detection engineering – you've written or tuned at least a few detection rules
Strong written and verbal communication in English
Benefits
Competitive salary and benefits
Stock options, so you own part of what you build
Discretionary performance bonus
The latest tools and technology
A world-class team that will challenge and grow your skills
The opportunity to help build the best fintech app in Latin America
Office Policy: 3-4 days a week in-office
Similar jobs
- Cloud Security EngineerBraze · São PauloFirst seen 19d ago
- Application Security Engineer (Secure SDLC)Abcfinancial · BrazilFirst seen 2d ago
- Grupo QuintoAndar | Security Engineer - Cyber Threat Intelligence (CTI)Quintoandar · BrasilFirst seen 6d agoremote
- AI Security Engineer / Offensive Security Engineer - TechnologyTruelogic · BrazilFirst seen 6d agoremote
- Application Security EngineerBugcrowd · Remote - BrazilFirst seen 7d agoremote
Browse similar roles
Want this one?
Upload your resume and hirly rewrites it for this job and writes the cover letter — in about thirty seconds, before you sign up.
Tailor my resume for this job