Hybrid Lead Security Engineer – Product & Defensive Security

Posted 1 hour ago

Apply now

About the role

  • Security Engineering Lead ensuring Creditas maintains innovation and integrity in product security and incident response. Leading multi-disciplinary teams in a hybrid work environment.

Responsibilities

  • People Management: Lead and develop multidisciplinary teams (AppSec, CloudSec, Blue Team, and Incident Response), focusing on technical mentorship and career development.
  • Defense Strategy: Define the detection, monitoring, and incident response (Blue Team) roadmap, ensuring our threat visibility is best-in-class.
  • Product Security: Influence the software development lifecycle (SDLC), ensuring AppSec and cloud security (CloudSec) practices are integrated and automated within the CI/CD pipeline.
  • Incident Response: Serve as the focal point for critical incidents, coordinating containment, eradication, and post-incident reviews to drive continuous improvement.
  • Collaboration: Work closely with Engineering and Product teams to demystify security and make it a business enabler rather than a blocker.

Requirements

  • Leadership Experience: Proven experience managing technical security teams or serving as a senior Tech Lead.
  • Holistic Perspective: Solid knowledge in at least two of the areas under your responsibility (e.g., expertise in AppSec and a strong background in Incident Response).
  • Engineering Mindset: Experience with security automation and infrastructure-as-code (Terraform, CloudFormation) in AWS or GCP environments.
  • Assertive Communication: Ability to translate complex technical risks into business-impact terms for stakeholders.
  • Prior experience in fintechs or highly regulated environments (e.g., BACEN, LGPD).
  • Active engagement in the security community (talks, CTFs, Bug Bounty).
  • Availability for hybrid work: required to attend our office in the Morumbi area of São Paulo once per month for 4 consecutive days, usually in the last or first week of the month (Creditas in Person).

Benefits

  • Health Plan (Alice)
  • Dental Plan (SulAmérica)
  • Wellz: 100% free therapy sessions
  • Wellhub: access to gyms and studios
  • Creditas Endurance: high-impact sports incentive program
  • Pharmacy agreement (Univers)
  • Life Insurance (Porto Seguro)
  • Birthday day off
  • Extended parental leave: 6 months for birth parents and 35 days for non-birth parents
  • Family Care: support program for maternity and paternity
  • Childcare allowance
  • Support for dependents with disabilities (PWDs)
  • SESC access for you and your dependents
  • Meal Voucher (VR): flexible benefits card (Creditas Card)
  • Payroll-deductible loans (Creditas Benefits)
  • Salary advance (Creditas Benefits)
  • Discounts on insurance (Minuto Seguros)
  • Access to exclusive financial education content in the Creditas app
  • PPR: profit-sharing program
  • Educational and development incentives
  • Flexible work model
  • Free bike parking at the office
  • Contracted parking at the office (subject to internal availability)

Job title

Lead Security Engineer – Product & Defensive Security

Job type

Experience level

Senior

Salary

Not specified

Degree requirement

No Education Requirement

Location requirements

Report this job

See something inaccurate? Let us know and we'll update the listing.

Report job