Mid Security Engineer
ARQ is a financial services platform that lets users in Latin America hold global currencies, make cross-border payments, invest in international markets, and spend worldwide with a card.
Funding
Projects
About ARQ ( Prev DolarApp )
ARQ serves travelers, investors, and professionals across Latin America who need access to global currencies and financial markets. Users can hold digital dollars and euros, receive and send international payments via dedicated US and European account details, invest in US stocks and ETFs, and spend globally with a card at market conversion rates. The platform is available across Mexico, Argentina, Colombia, and Brazil.
Skills
About the Role
You will establish security practices in Brazil across application security, security operations, and governance, risk, and compliance. You will conduct threat modelling, secure code reviews, API testing, CI/CD checks, and AI workflow reviews. You will build SIEM detections and response playbooks, support incident response, assess AWS and Kubernetes environments, and perform vendor security reviews.
Requirements
- 2–4 years of experience in information security or a closely related technical role
- 2+ years of experience at a regulated fintech, bank, or payment company
- Experience with at least one cloud environment, preferably AWS
- Familiarity with Kubernetes fundamentals
- Familiarity with threat modelling, secure code review, or API security testing
- Interest in AI and agentic tooling risks
- Exposure to SIEM platforms and detection engineering
- Experience writing or tuning detection rules
- Strong written and verbal English communication
Responsibilities
- Support application security through threat modelling, secure code review, API security testing, and CI/CD pipeline checks
- Review and monitor AI and agentic workflows for prompt risks, unsafe automated actions, and data exposure
- Build and maintain SIEM detection rules, alert pipelines, and response playbooks
- Own detection coverage for defined systems
- Support incident response by triaging alerts, executing playbooks, and running tabletop exercises
- Conduct cloud security assessments across AWS and Kubernetes environments
- Execute vendor security assessments using the established due diligence framework
Benefits
- Competitive salary and benefits
- Stock options
- Discretionary performance bonus
- Latest tools and technology
- Office policy of 3–4 days per week in office
