Job Closed

This listing is no longer active.

Senior Security Engineer

Location

Brazil

Posted

111 days ago

Salary

0

Seniority

Senior

Job Description

Senior Security Engineer

Stone & Company

• Works on ambiguous problems without a predefined scope that require difficult prioritization, balancing deadlines and quality • Serves as a reference for decisions on solution details • Helps the team resolve loosely scoped problems and participates in solution discovery • Provides suggestions and constructive feedback, disseminating technical knowledge within the team • Independently defines and delivers technical roadmaps for larger projects, often involving cross-team dependencies • Shares knowledge with the team • Establishes individual objectives in a simple and cohesive manner • Enables teams that interface with and within their own team to collaborate on area and company-wide objectives • Pursues tangible deadlines for projects and strategy • Brings clarity to executive definitions and enables fair discussion of objectives • Reviews technical and commercial proposals from IT partners • Assists in creating and monitoring the strategic evolution roadmap for Information Security • Helps define general guidelines and best practices for information security • Creates a culture of transformation by sharing lessons learned while delivering results

Job Requirements

  • Experience with Python
  • Understand how attacks work, perform proof-of-concepts (PoCs) and create filters/detection methods
  • Advanced knowledge of networking and protocols: NetFlow, packet sniffers, vPC, STP, HSRP, QoS, VoIP, IPsec
  • Intermediate knowledge of cryptography
  • Ability to read and understand RFCs (Request for Comments) published by the IETF (Internet Engineering Task Force)
  • Basic understanding of best practices such as DISA STIGs, SRGs, CISecurity
  • Advanced knowledge of ISO 27000 series, ITIL, FIPS 140-2, CWE, CVSS, CVE, MITRE ATT&CK, EDR, MDR
  • Advanced knowledge of Linux servers (forensics, clustering, disaster recovery)
  • Advanced knowledge of Windows servers (Active Directory, IIS, DNS, SSL/TLS, WSUS, service hardening)
  • Advanced knowledge of DNS services (DNSSEC, AXFR/IXFR, SOA, CAA)
  • Advanced knowledge of virtualization and container solutions (NSX, VDI, SDDC, KVM, hypervisor technologies, NFV)
  • Intermediate knowledge of threat techniques (reverse engineering, buffer overflow, shellcode, obfuscation, hijacking, DLL hooking, process hooking, process injection)
  • Intermediate programming/development knowledge (ASM, C, C#, Golang, Rust)
  • Intermediate knowledge of cloud platforms such as AWS, Azure, GCP
  • Advanced knowledge of IDS/IPS, Firewall, Web Gateway, Email Gateway, WAF bypass techniques, anti-malware, Proxy, HIDS, NIDS
  • Advanced knowledge of fragmentation, spoofing, and proxying techniques
  • Ability to collect and preserve evidence
  • Ability to handle and simulate information security incidents

Benefits

  • 🩺 Health and Dental Insurance
  • 🏥 Digital Hospital by Vitta: access to a multidisciplinary medical team, therapists, and a 24/7 health team available quickly and conveniently
  • 🥗 Meal Allowance and/or Food Voucher
  • 💻 Remote Allowance + Initial Setup (exclusive for remote positions)
  • 🕗 Flexible working hours
  • ✏ Education Benefit - Internal platform with access to books, podcasts, training, and video lessons for self-development (Studa and StoneCo Library)
  • 💪 Gympass
  • 👶 Childcare Assistance
  • 💰 Profit Sharing (PLR)
  • 💚 Life Insurance
  • 🚗 Transportation Voucher (exclusive for on-site positions)

Related Categories

Related Job Pages

More Security Engineer Jobs

OtherRemoteTeam 10,001+Since 1928H1B Sponsor

Company Overview At Motorola Solutions, we believe that everything starts with our people. We’re a global close-knit community, united by the relentless pursuit to help keep people safer everywhere. We build and connect technologies to help protect people, property and places. Our solutions foster the collaboration that’s critical for safer communities, safer schools, safer hospitals, safer businesses, and ultimately, safer nations. Connect with a career that matters, and help us build a safer future. Department Overview Motorola's Access Control Division's (previously OpenPath, now Avigilon Alta) mission is to improve your workday with smart office technology at your front door. We are looking for candidates who can help us build, scale and innovate as we develop our industry leading platform for access control and office automation. Strong analytical and software skills are a must in order to join our team, and we are particularly seeking candidates with experience and skills in multiple technologies, in order to contribute broadly to our team-centric approach to product development. Job Description Responsibilities: ​ Lead the design and implementation of secure architectures across products and services. Perform threat modeling, risk assessments, and architecture reviews to identify and mitigate risks. Proven experience in developing and implementing threat modeling programs (e.g., STRIDE, PASTA, DREAD). Demonstrable experience in securing cloud environments (e.g. AWS and  Azure) Experience with defining and enforcing technical security standards and controls. Solid understanding of secure software development lifecycle (SSDLC) principles and practices. Partner with engineering teams to ensure secure coding practices and adoption of industry best practices Define and oversee the implementation of security testing, including SAST, DAST, and penetration testing. Ensure products comply with relevant security standards, certifications, and regulations (e.g.,   OWASP, NIST, ISO 27001, CIS, PCI DSS, ATT&CK, D3FEND, CIS, CSF, CAF.) Support product security incident response processes, including root cause analysis and mitigation strategies. Monitor emerging security threats, vulnerabilities, and trends to proactively investigate, remediate, and integrate new protections. Drive continuous improvement of product security posture by identifying gaps and implementing solutions. Develop and maintain security architecture documentation, guidelines, and framework Cybersecurity Leadership Overseeing product infrastructure security, endpoint protection, and threat monitoring Maintain incident response plans and conduct simulations across U.S. and EU teams Oversee vulnerability management and phishing simulations Collaborate with internal and external stakeholders to enforce secure development lifecycle practices Evaluate and recommend new tools and platforms to support threat prevention, detection, and response Team & Cross-Functional Leadership Coordinate information security and data protection initiatives ensuring alignment with corporate goals Serve as a strategic partner to IT and Engineering teams on risk matters Required Qualifications: Target Base Salary Range: $112,300 - $185,000 Consistent with Motorola Solutions values and applicable law, we provide the following information to promote pay transparency and equity. Pay within this range varies and depends on job-related knowledge, skills, and experience. The actual offer will be based on the individual candidate. #LI-CA1 Basic Requirements Bachelors Degree 5+ years of experience in product security, cybersecurity, and/or regulatory compliance Legal authorization to work in the U.S. indefinitely is required. Employer work permit sponsorship is not available for this position Travel Requirements Under 10% Relocation Provided None Position Type Experienced Referral Payment Plan Yes Our U.S. Benefits include: Incentive Bonus Plans Medical, Dental, Vision benefits 401K with Company Match 10 Paid Holidays Generous Paid Time Off Packages Employee Stock Purchase Plan Paid Parental & Family Leave and more! EEO Statement Motorola Solutions is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion or belief, sex, sexual orientation, gender identity, national origin, disability, veteran status or any other legally-protected characteristic. We are proud of our people-first and community-focused culture, empowering every Motorolan to be their most authentic self and to do their best work to deliver on the promise of a safer world. If you’d like to join our team but feel that you don’t quite meet all of the preferred skills, we’d still love to hear why you think you’d be a great addition to our team. We’re committed to providing an inclusive and accessible recruiting experience for candidates with disabilities, or other physical or mental health conditions. To request an accommodation, please complete this Reasonable Accommodations Form so we can assist you.

California
$112.3K - $185K / year
Job Closed
Zimperium logo

Full Stack Developer – Online Security Service

Zimperium

The leader in enterprise mobile endpoint protection and mobile app protection for Android, iOS and Chromebooks threats

Security Engineer111 days ago
Full TimeRemoteTeam 201-500Since 2010H1B Sponsor

• Support internal service written with SpringBoot and React • Deploy new versions of the service into AWS • Extend tampering detection execution rules written in C++ like language • Communicate with tamper check development team

Latvia
Job Closed
SupportYourApp logo

Information Security Risk Specialist, Fluent Ukrainian

SupportYourApp

SupportYourApp is an industry leader in premium outsourced customer support that provides tech companies with reliable, cost-effective services. A multinational

Security Engineer111 days ago

• Управлінням ризиків постачальників: - Проведення перевірок безпеки постачальників; - Пошук та збір інформації з відкритих джерел (OSINT); - Ведення та актуалізація реєстрів оцінки ризиків. • Комунікацією: - Заповнення та обробка клієнтських анкет з інформаційної безпеки відповідно до міжнародних стандартів (ISO 27001, SOC 2, NIST); - Первинний перегляд договорів із клієнтами (DPA/MSA) для виявлення розбіжностей між внутрішніми процесами компанії та вимогами клієнтів; - Опрацювання запитів від інших підрозділів. • Забезпеченням відповідності пристроїв вимогам інформаційної безпеки: - Моніторинг, аналіз та перевірка доказів (логи, скріншоти) для підтвердження відповідності пристроїв співробітників вимогам безпеки; - Комунікація з користувачами для усунення невідповідностей вимогам безпеки; - Ведення реєстру затверджених пристроїв. • Документацією та операційною діяльністю: - Створення та оновлення внутрішніх інструкцій, процедур і матеріалів бази знань з інформаційної безпеки. • Підвищенням обізнаності співробітників з питань інформаційної безпеки - Участь у фішингових симуляціях; - Допомога у підготовці матеріалів та листів з інформаційної безпеки для співробітників. • Інцидентами: - Первинна обробка інцидентів безпеки: збір доказів, базове розслідування та координація комунікації між залученими сторонами.

Ukraine
Job Closed
Private Security logo

Security Sales Representative

Private Security

Private Security Guard and Patrol Services

Security Engineer111 days ago
OtherRemoteTeam 51-200Since 2019H1B No Sponsor

• Prospect and engage potential clients across multiple industries • Present and promote our security guard services with confidence • Build and maintain strong, long-term client relationships • Maintain CRM database to track leads and opportunities • Schedule, attend, and lead sales meetings • Follow up by phone, email, and in-person visits to finalize contracts • Negotiate terms and close deals effectively

United States
$95K - $120K / year