1. Inicio
  2. Trabajos
  3. Lead Security Engineer - Vulnerability Management
Lead Security Engineer - Vulnerability Management ABOUT NU Nu serves more than 140 million customers, guided by a mission to fight complexity and empower people. The company has been leading an industry transformation through innovative products and human-centered services.   Proprietary technology and data at scale power Nu’s digital platform, built to promote financial access, advancement, and transparency. Its business model thrives on customer love and lower costs, feeding a flywheel of growth and profitability. Visit our Institutional Page https://www.nu.com/2026-en ABOUT THE ROLE As a Lead Security Engineer, you will operate as a technical leader within Vulnerability Management, owning complex and ambiguous problems that span multiple teams and business areas. You will help evolve Nubank’s vulnerability management capabilities into a scalable, auditable and risk-driven program. This includes improving detection and asset coverage, strengthening ownership and remediation workflows, increasing automation, supporting regulatory and audit readiness, and enabling engineering teams to resolve vulnerabilities efficiently. This role requires strong autonomy, deep security engineering expertise, sound judgment and the ability to influence stakeholders without relying on formal authority. The role is aligned with IC6 expectations: leading complex cross-functional initiatives, setting standards, making technical decisions and acting as a multiplier for the broader organization. You can find more about Nubank Infosec here: https://blog.nubank.com.br/infosec-nubank-protecao-dados/ YOU WILL BE RESPONSIBLE FOR - Lead initiatives that improve the end-to-end vulnerability management lifecycle, from discovery and prioritization through remediation, verification and closure. - Design and evolve scalable processes, controls, workflows and automations for vulnerability intake, enrichment, ownership resolution, prioritization and SLA tracking. - Drive improvements across vulnerability identification sources, including cloud and infrastructure scanners, GitHub security findings, offensive security assessments, bug bounty reports, external assessments and threat intelligence. - Partner with Engineering, AppSec, Cloud Security, Offensive Security, Risks and other stakeholders to remove blockers and drive timely remediation. - Provide technical guidance on complex vulnerabilities, including risk context, remediation options, compensating controls and residual risk. - Lead root-cause analysis for recurring findings, data-quality problems, ownership gaps and workflow failures. - Define and improve metrics, dashboards and reporting that enable risk-based prioritization and executive decision-making. - Support regulatory, audit and compliance activities by ensuring that processes, evidence and remediation records are complete and auditable. - Contribute to the evolution of VM architecture, tooling and integrations, reducing operational toil and technical debt using AI t

Salario

4K - 7K Mensual

Mensual

Salario estimado en base a posiciones similares

Trabajo Remoto

En Todo el Mundo

Termómetro Salarial

Basado en 31 posiciones similares en São Paulo, Brasil

990 9,900
Bajo Prom: USD 4,562 Alto
En el rango de mercado

Estimaciones salariales basadas en posiciones similares en nuestra plataforma. Los salarios reales pueden variar.

Resumen del Trabajo
Trabajo Publicado:
hace 1 día
Expiración del Trabajo:
en 4 semanas
Tipo de Trabajo
Tiempo completo
Rol del Trabajo
Cloud / Infraestructura
Educación
Licenciatura
Experiencia
3+ años
Total de Vacantes
1
Profesión
Ingeniero

Etiquetas del Trabajo:

Compartir este empleo:

Ubicación

São Paulo , Brasil


EmpleosTech
Obtené la app de EmpleosTech Acceso rápido a empleos tech, notificaciones y soporte offline