Back to all jobs
Security Engineer (AppSec + Cloud)
Remote (LATAM)
Full-time
Senior
Secure the applications and cloud infrastructure of US startups heading into SOC 2, HIPAA, and enterprise deals.
Already applied? Check your status
About the Role
We're looking for a Senior Security Engineer to join our partner companies at the stage where security stops being optional: first enterprise customers, SOC 2 audits, HIPAA, and a growing cloud footprint. This is a hands-on engineering role, not a compliance desk job. You'll fix real vulnerabilities, harden AWS and Kubernetes, build security into CI, and give engineers tools that make the secure path the easy path.
What You'll Do
- Run application security reviews, threat modeling, and code audits
- Harden cloud infrastructure: IAM, network segmentation, secrets, Kubernetes
- Integrate SAST, DAST, dependency scanning, and secret detection into CI
- Lead SOC 2 / HIPAA technical controls and evidence automation
- Respond to incidents and run post-mortems
- Coach engineering teams on secure coding practices
Requirements
- 5+ years in security engineering or a strong engineer who moved into security
- Deep knowledge of OWASP, authentication, and API security
- Hands-on AWS (or GCP) security and infrastructure as code
- Experience with security tooling (Semgrep, Snyk, Trivy, Burp, Wiz)
- Scripting in Python or Go for automation
- Excellent written and verbal English (B2+)
Nice to Have
- Certifications (OSCP, AWS Security Specialty, CISSP)
- Experience with compliance automation (Vanta, Drata)
- Bug bounty or penetration testing background
- Experience with identity providers and SSO (Okta, Auth0)
Tech Stack
AWS
Kubernetes
Terraform
Python
Semgrep
Okta
Benefits & Perks
Competitive USD salary
100% remote work
Flexible working hours
Professional development budget
Health insurance stipend
Equipment allowance
Apply for this Position
Competitive salary - Remote
