← Back to results

Security Engineer, Mid

Be ARQ's first Security Engineer in Brazil, shaping security practices across application security, operations, and compliance.

Location
São Paulo
Compensation
Not disclosed
Level
mid
Type
full time · Hybrid

Posted by employer 1 week ago

First seen on Joblaze 1 week ago

Last verified on the company career page 1 day ago

Apply at ARQ → Save job Scanned from arqfinance.com

AI in the day-to-day

Curiosity about AI/agentic tooling risks is desired, with prior hands-on experience being a plus.

Requirements

Experience
2–4 years

Not disclosed in this posting: compensation, visa sponsorship.

Benefits

Competitive salary and benefits Latest tools and technology Equity/Stock Options Discretionary performance bonus

Joblaze summary

In this role, the Security Engineer at ARQ will take on a diverse range of responsibilities, including application security tasks, incident response, and cloud security assessments. The position requires a solid foundation in information security, with experience in cloud environments like AWS and familiarity with application security concepts. This mid-level role is ideal for someone with 2-4 years of relevant experience who is eager to shape security practices in a growing fintech company. As the first Security Engineer in Brazil, the individual will have the unique opportunity to influence security strategies locally while collaborating with a global team.

Joblaze insights

Quick facts

Is the Security Engineer, Mid role remote?
It's hybrid — ARQ expects some on-site time in São Paulo.
How much experience is required?
2–4 years of relevant experience for this Security Engineer, Mid role.
Where is the role based?
ARQ is hiring for this position in São Paulo.
What's the tech stack?
Joblaze extracted these technologies from the posting: AWS, CloudFlare, CrowdStrike, Datadog, Kubernetes, SIEM.
What seniority level is this role?
ARQ targets mid-level candidates for this position.
Is this full-time or contract?
Full-time for this Security Engineer, Mid role at ARQ.

From the original posting

What We're Looking For

You'll be ARQ's first Security Engineer based in Brazil – it's the chance to lay the foundation for how we do security in the region and shape how that function grows from here. You'll work closely with our global security team but have real autonomy in deciding what "good" looks like locally, from day one.

We're looking for someone who enjoys a multidisciplinary role. Security at ARQ spans Application Security, Security Operations, and Governance/Risk/Compliance, and we need someone comfortable moving across at least two of these three areas – because in a founding role, there's no one else to hand off the parts that don't fit your specialty.

What you'll do

  • Support application security work: threat modelling sessions, secure code review, API security testing, and CI/CD pipeline checks

  • Help review and monitor AI/agentic workflows for prompt risks, unsafe automated actions, and data exposure

  • Build and maintain SIEM detection rules, alert pipelines, and response playbooks (Datadog SIEM, CrowdStrike, Cloudflare), owning detection coverage for a defined set of systems end-to-end

  • Support incident response: triage alerts, execute IR playbooks, and help run tabletop exercises

  • Conduct cloud security assessments across AWS and Kubernetes environments under the guidance of senior team members

  • Execute vendor security assessments using the established due diligence framework, owning the review process for a portion of the vendor pipeline

What you'll need

  • 2–4 years in information security or a closely related technical role (security operations, cloud/infra engineering with a security focus, or similar)

  • Working experience with at least one cloud environment (AWS preferred) and familiarity with Kubernetes fundamentals

  • Basic familiarity with application security concepts: threat modelling, secure code review, or API security testing

  • Curiosity about AI/agentic tooling risks (LLM integrations, MCP servers, automated workflows) – prior hands-on experience is a plus, not required

  • Exposure to SIEM platforms and an interest in detection engineering – you've written or tuned at least a few detection rules

  • Strong written and verbal communication in English

Benefits

  • Competitive salary and benefits

  • Stock options, so you own part of what you build

  • Discretionary performance bonus

  • The latest tools and technology

  • A world-class team that will challenge and grow your skills

  • The opportunity to help build the best fintech app in Latin America

  • Office Policy: 3-4 days a week in-office

Similar positions

ARQ
Security Engineer, Senior
ARQ · São Paulo
ARQ
Security Engineer, Lead
ARQ · São Paulo
Abnormal Security
Senior Cloud Security Engineer (AWS)
Abnormal Security · Remote - USA
Abnormal Security
Application Security Engineer II
Abnormal Security · Remote - USA
Armada
Senior Security Engineer, Federal
Armada · Bellevue Office, Sunset Corporate Campus