Security Engineer, Senior
DolarApp
Greater London, UK
10 days ago
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Apply on www.collegerecruiter.com
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
2 years minimum
Working hours
Regular working hours
Languages
English
Job source
Tech stack
Artificial Intelligence
Amazon Web Services
Software as a Service
Cloud Computing Security
Cyber Security
Continuous Integration
Identity and Access Management
Intrusion Detection and Prevention
Secure Coding
Security Information and Event Management
Datadog
Okta
+7 more
Large Language Models
Software Security
Falcon Platform
Kubernetes
Cloudflare
Gsuite
Api Management
Job description
Youâll be ARQâs first Security Engineer based in Brazil - itâs the chance to lay the foundation for how we do security in the region and shape how that function grows from here. Youâll work closely with our global security team but have real autonomy in deciding what âgoodâ looks like locally, from day one., * Drive application security initiatives: threat modelling, secure code review support, API testing, and security pipeline improvements
- Assess and secure AI/agentic workflows across the company - reviewing prompts, preventing destructive actions, and controlling data exposure
- Build and improve SIEM detection rules, alert pipelines, and automated response playbooks (Datadog SIEM, CrowdStrike, Cloudflare)
- Contribute to incident response readiness, including IR playbooks, tabletop exercises, and forensic procedures
- Conduct cloud security assessments across AWS and Kubernetes environments
- Establish and run the vendor security assessment process - building a scalable due diligence framework for third-party onboarding
Requirements
- 4-7 years in information security, ideally having built or significantly shaped the security function at a startup or high-growth company - youâve been the person who sets things up, not just maintains them
- 2+ years at a regulated fintech/bank/payment company
- Hands-on experience with cloud infrastructure security (AWS, Kubernetes)
- Familiarity with application security practices: threat modelling, secure code review, CI/CD pipeline hardening, and API security testing
- Ability to assess and secure emerging AI/agentic tooling - you understand the risks of LLM integrations, MCP servers, and automated workflows, and can define practical guardrails
- Working knowledge of SIEM platforms and detection engineering - youâve written detection rules
- Experience with endpoint security tooling (EDR/XDR) and identity & access management in a SaaS-heavy environment (Google Workspace, Okta/Cloudflare Access, SSO/SCIM)
- Experience running or contributing to vendor security assessments and third-party due diligence
- Strong written and verbal communication in English
Benefits & conditions
- Competitive salary and benefits
- Stock options, so you own part of what you build
- Discretionary performance bonus
- The latest tools and technology
- A world-class team that will challenge and grow your skills
- The opportunity to help build the best fintech app in Latin America
- Office Policy: 3-4 days a week in-office
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Apply on www.collegerecruiter.com
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role â technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
LM
Luis Minvielle
over 2 years ago
EM
Eli McGarvie
Software Engineer Salary London
over 3 years ago
LM
Luis Minvielle
Why Upskilling And Reskilling is Important For Developers
over 2 years ago
LM
Luis Minvielle
9 Ways to Make Money Hacking
over 2 years ago
LM
Luis Minvielle
The 12 Best Jobs for Software Engineers
over 2 years ago
DC
Daniel Cranney
Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.
7 months ago