18h ago
Application Security Engineer
Brazil - Remote
full-time Remotesoftware
๐ Tech Stack
๐ผ About This Role
You'll own the full-stack security of our global PaaS platform, identifying risks before they're reported and prioritizing based on real-world impact. You'll balance platform availability, customer experience, and data protection across distributed infrastructure.
๐ฏ What You'll Do
- Own the Cloudflare stack and monitor traffic patterns for threats.
- Lead third-party researcher program via Intigriti.
- Design and execute internal penetration tests.
- Monitor and respond to application dependency vulnerabilities.
- Coordinate incident response across global teams.
๐ Requirements
- Experience with Cloudflare at scale (WAF, Workers, rate limiting, bot management)
- Experience with AWS security tooling (e.g., GuardDuty, IAM analysis, CloudTrail)
- Familiarity with bug bounty platforms (e.g., Intigriti, HackerOne)
- Knowledge of PCI DSS or SOC II frameworks
โจ Nice to Have
- Familiarity with compliance automation tools (e.g., Vanta, Drata)
- Experience with vendor-approved security scanners (SAST, DAST, dependency scanning)
๐ Benefits & Perks
- ๐ Fully remote work from home
- ๐ Equity plan (stock options)
- ๐ฐ Reimbursement up to $1.5k for home office and development
- ๐๏ธ Generous time off: 21 days + 8 holidays + 2 paid volunteer days
- ๐ง Wellness program with fitness and mindfulness classes
๐จ Hiring Process
Estimated timeline: 3-5 weeks
- 1Apply and answer questionsยท 30 min
- 2Prescreen Call with Talent Teamยท 30 min
- 3Interview with Hiring Managerยท 60 min
- 4Assignmentยท 1 week
- 5Panel/Final Interviewยท 60 min
- 6Background Reference Checksยท 1 week
0 0 0