Addi logo

Addi

SecOps Engineer

Work from home

Remote role where the employee must remain based in a particular country.

Colombia only

Employer listed it 3 weeks ago · Added yesterday

Been open since 3 weeks ago, still checked daily, but it has been live a while.

Salary

Not stated

Location

Colombia only

Timezone

Not stated

Contract

Full-time

Experience

Mid

Category

Software

This employer didn't state pay. Jobs like this usually pay around $165k–$255k a year, a typical range taken from 594 mid-level software roles on Nomaders that do state pay. It's a guide, not an offer.

Remote flexibility

Work from home

This is a remote role, but the employee must be based in Colombia. It is work from home rather than work from anywhere.

What the employer says

  • Source listing states candidate location: "Colombia, Remote"

What Nomaders makes of it

  • Residency required in Colombia
  • Payroll and tax are likely handled in that country only

The quotes above are the employer's own words; the reading is ours. Always check the original listing and employment terms before working from another country.

About the role

About Addi

We are a leading financial platform, building the future of payments, shopping, and banking—a world where consumers and merchants can transact effortlessly and grow together. Today, we serve over 3.6 million customers and partner with more than 55,000 merchants, making Addi Colombia’s fastest-growing marketplace. With a state-of-the-art, technology-first approach, we provide banking solutions (deposits, payments, unsecured credit) and commerce services (e-commerce, marketing), bridging the financial gap for millions and redefining how people experience financial freedom. As the country’s leading Buy Now, Pay Later provider, we have secured regulatory approval to operate as a bank, unlocking even greater opportunities for our customers. In the past year, we have also achieved profitability, reinforcing the strength of our business model and our ability to scale sustainably. Our mission has earned the trust of world-class investors, including Andreessen Horowitz, Architect Capital, GIC, Goldman Sachs, Greycroft, Monashees, Notable Capital, Quona Capital, Union Square Ventures, Victory Park Capital, and more, who back our vision for the future. With their support, we are not just growing—we are transforming Latin America’s financial ecosystem and shaping the next generation to shop, pay, and bank in Colombia.

But what truly sets us apart is how we build. We are a conscious company, driven by deep experience in scaling technology, services and products, and we live by our values every day.

About the Role

This is where you come in. Below, you’ll find what this role is all about—the impact you’ll drive, the challenges you’ll tackle, and what it takes to thrive at Addi. If you’re ready to be part of something big, keep reading.

What’s the mission you’ll drive

Own the implementation and day-to-day operation of security controls across endpoints, infrastructure, secure connectivity, and data protection, working closely with IT and engineering to detect threats early, respond quickly, and protect Addi’s environment at scale.

What you will do

Execute the migration to the selected XDR platform across endpoints and infrastructure, achieving ≥95% endpoint coverage by May 2025, reducing false positives by ≥30%, and supporting a Mean Time to Detect (MTTD) of under 1 hour for high-severity incidents through stable, reliable XDR operations.

Implement and operate DLP and SASE controls to secure user access, SaaS usage, and data flows, enforcing DLP policies across ≥90% of managed users and devices, reducing high-risk data exposure events by ≥30%, and ensuring minimal impact to user productivity, with SASE fully deployed by end of April 2025.

Deploy and operate a centralized MDM solution to manage and secure corporate endpoints, achieving ≥95% device enrollment by May 2025, enforcing baseline security configurations, and reducing endpoint-related security incidents through consistent policy enforcement.

Implement and maintain endpoint security policies including encryption, OS hardening, patching, and access controls, ensuring ≥95% compliance with defined device security baselines and timely remediation of non-compliant devices, with core device control policies completed by end of Q3 2026.

Operate and continuously improve SIEM detections and SOAR playbooks for security events across critical platforms, reducing Mean Time to Respond (MTTR) by ≥50%, automating ≥30% of repetitive response actions, and ensuring Google Workspace, AWS, XDR, and MDM logs are fully integrated into SIEM by June 2026.

Support brand protection operations by monitoring phishing, impersonation, and brand abuse activity, ensuring ≥70% of confirmed brand abuse cases are detected and remediated within SLAs, and implementing automated takedown workflows to reduce customer impact by end of Q3 2026.

What we’re looking for

Proven Experience in Security Operations & Control Implementation

Hands-on experience implementing and operating security controls across endpoints, infrastructure, secure connectivity, and data protection in cloud-first environments.

At least 3 years of experience working with XDR platforms (e.g., CrowdStrike, Cortex, Sentinel) and MDM solutions (e.g., Google Workspace, JumpCloud, or similar).

Demonstrated ability to deploy and operate SASE / Zero Trust, VPN, and DLP solutions, including troubleshooting production control failures.

Demonstrates Strong Capability in Detection, Response & Automation

Experienced in operating security detections, alerts, and response workflows within SIEM and XDR platforms, including integrations with AWS, Google Workspace, and endpoint tools.

Executes incident response actions using defined playbooks and escalates effectively based on severity and impact.

Familiar with SOAR concepts and automation of repetitive security operations tasks to improve response efficiency.

Possesses Solid Expertise in Endpoint & Device Security Management

Requirements

The employer hasn't listed requirements separately, they're described in the role summary above and on the original listing.

Benefits

No benefits package published with this listing. Ask about it at first interview.

How to apply

  1. 1Check the flexibility label above, work from home, matches where you plan to live and work.
  2. 2Tailor your CV to the role at Addi, mentioning your remote working experience.
  3. 3Apply directly on the employer's careers page using the button below. Nomaders never handles your application.

Found 1d ago. Last checked today. Always confirm the details on the original posting, salary and location can change after publication.

Listing sourced from Company boards.

Similar roles

Other open software roles with comparable remote rules.

Browse all open roles

Free to apply, no account needed.

Typically $165k–$255k · You'll be taken to the employer's careers page.