Nubank
Lead Security Engineer (Threat Detection)
Part remote, part office, you need to live within commuting distance of a named location.
Hybrid · São Paulo
Employer listed it 4 days ago · Added 2 days ago
First listed 4 days ago and still open.
Salary
Not stated
Location
Hybrid · São Paulo
Timezone
Not stated
Contract
Full-time
Experience
Lead
Category
Software
This employer didn't state pay. Jobs like this usually pay around $200k–$275k a year, a typical range taken from 597 lead-level software roles on Nomaders that do state pay. It's a guide, not an offer.
Remote flexibility
Hybrid
This role is only partly remote, the employer expects time in the office around São Paulo, Hybrid, so you need to live within commuting distance.
What the employer says
- Source listing states candidate location: "São Paulo, Hybrid"
- Listing mentions "Hybrid"
What Nomaders makes of it
- Not suitable if you plan to move between countries
The quotes above are the employer's own words; the reading is ours. Always check the original listing and employment terms before working from another country.
About the role
About Nu
Nu serves more than 140 million customers, guided by a mission to fight complexity and empower people. The company has been leading an industry transformation through innovative products and human-centered services.
Proprietary technology and data at scale power Nu’s digital platform, built to promote financial access, advancement, and transparency. Its business model thrives on customer love and lower costs, feeding a flywheel of growth and profitability. Visit our Institutional Page
About the role
You will lead the team that stands between adversaries and 135 million customers. The Threat Detection team proactively hunts for security threats and builds robust, actionable detections to protect both customers and Nubankers — operating as a true Security Operations Center, backed by strong engineering power and intelligence from our internal Threat Intelligence team.
As Lead, you own the strategic Threat Detection program end to end: intelligence gathering, threat modeling, detection engineering, AI-assisted analysis, Purple Team validation, incident response and post-incident learning. Your goal is to make sure effective detection rules, actionable insights and AI-enabled security capabilities are in place and aligned with industry best practices, so that adversary activity across Nubank's environment is identified, prevented and detected before it reaches our customers.
You'll also build and lead a high-performing team, support Security leadership in building a world-class security organization, and ensure detection processes meet auditing requirements and support clear communication with regulatory bodies.
Learn more about Nubank Infosec: https://blog.nubank.com.br/infosec-nubank-protecao-dados/
You'll be responsible for
Analyzing cyber threat intelligence, emerging attack trends and security telemetry to develop robust detections and threat models, while reducing false positives and improving the efficiency of security operations.
Leveraging AI and machine learning across the detection lifecycle — anomaly detection, behavioral analytics, alert triage, threat intelligence enrichment, investigation prioritization and response automation — and leading their adoption so these capabilities are reliable, measurable and secure.
Defining validation, quality, explainability and security controls for AI-assisted capabilities, accounting for risks such as inaccurate outputs, data leakage, prompt injection, model manipulation and adversarial evasion.
Leading Purple Team activities with Offensive Security, Threat Intelligence, Incident Response and Engineering: translating adversary behaviors into realistic attack simulations, adversary emulation plans and detection validation scenarios mapped to frameworks such as MITRE ATT&CK.
Identifying detection and prevention gaps, validating security controls, measuring detection coverage and driving remediation through actionable improvement plans.
Establishing feedback loops between offensive and defensive teams so lessons from simulations and real incidents continuously improve detection, investigation and response.
Defining success criteria and tracking metrics: detection coverage, validation success rate, false-positive reduction, investigation time, response efficiency and remediation cycle time.
Building and leading the team — mentoring engineers and fostering a culture of ownership, accountability, collaboration and continuous learning.
Partnering closely with Security Engineering, Threat Intelligence, Software Engineering and Incident Response to build scalable solutions for analyzing security event data and a resilient security architecture aligned with Business Unit strategy.
We are looking for a person who has
Solid hands-on experience with Threat Hunting and Incident Response, including handling and resolving complex security incidents.
Experience as a technical leader in the identification, analysis and response to complex security threats, providing mentorship and guidance to team members.
Experience developing and maintaining detection-as-code solutions to automate threat identification and response.
Proven experience in information security operations, with expertise in managing, analyzing and deriving insights from logs and other security-related data.
Proficiency with SIEM and EDR tools, and with security platforms such as WAFs, firewalls (e.g. Palo Alto, Cisco ASA) and IDS/IPS.
Requirements
The employer hasn't listed requirements separately, they're described in the role summary above and on the original listing.
Benefits
- ·Chance of earning equity at Nubank
- ·Food/ Meal Card (Vale-Refeição and/or Vale Alimentação)
- ·Public Transportation Commuting Benefit (Vale-Transporte)
- ·NuCare – Psychological, Financial and Legal Assistance Program
- ·NuLanguage – Language Course Program
How to apply
- 1Check the flexibility label above, hybrid, matches where you plan to live and work.
- 2Tailor your CV to the role at Nubank, mentioning your remote working experience.
- 3Apply directly on the employer's careers page using the button below. Nomaders never handles your application.
Found 2d ago. Last checked today. Always confirm the details on the original posting, salary and location can change after publication.
Listing sourced from Company boards.
Similar roles
Other open software roles with comparable remote rules.
Free to apply, no account needed.
Typically $200k to $275k per year · You'll be taken to the employer's careers page.