Back to jobs

Senior Security Engineer (Information Security)

Brazil, Sao Paulo

About Us

Nu is one of the largest digital financial platforms in the world, with more than 122 million customers across Brazil, Mexico, and Colombia. Guided by our mission to fight complexity and empower people, we are redefining financial services in Latin America and this is still just the beginning of the purple future we're building.

Listed on the New York Stock Exchange (NYSE: NU), we combine proprietary technology, data intelligence, and an efficient operating model to deliver financial products that are simple, accessible, and human.

Our impact has been recognized by global rankings such as Time 100 Companies, Fast Company’s Most Innovative Companies, and Forbes World’s Best Bank. Visit our institutional page https://international.nubank.com.br/careers/  



About the team:

This position is for a Senior Information Security Engineer (IC5) to join the BSec team within the ITSec organization, a team at the forefront of InfoSec innovation at Nubank.
BSec is Infosec's partner in the Business Units; our vision is to empower Nu's secure foundation, embedding security in business decisions and protecting our long-term goals.

 

As a Senior/Lead Security Engineer, you will:

  • Assess security gaps within the organization, in different technologies and business contexts, enabling risk treatment and designing action plans as necessary;
  • Assess and develop policies and procedures related to information security and risk management, specially for third-party;
  • Support compliance with regulatory requirements related to security and privacy providing visibility and technical guidance;
  • Collaborate with cross-functional teams to understand the business requirements, and translate them into technical specifications;
  • Work closely with the Risk teams to align on mitigation of identified risks;
  • Define guidelines and best practices on business security matters that empower Nubankers to perform their work efficiently and securely;
  • Work in a multidisciplinary and global team, interacting with teams mainly in Brazil, Mexico, Colombia and the US.

 

Mandatory skills:

  • Proven experience in designing and implementing security controls;
  • Familiarity with different domains and concepts of cyber and business security;
  • Strong inclination towards data-driven decision-making;
  • Experience with TPRM (third-party risk management);
  • Analysis of existing business processes and identify potential risks related to information security;
  • Experience with risk analysis techniques like risk identification, assessment and prioritization and qualitative and quantitative risk assessment techniques is needed;

 

Nice to have skills:

  • Experience with large-scale distributed environments;
  • Good understanding of cybersecurity principles, risk management frameworks (such as NIST Cybersecurity Framework, NIST SP 800-30, ISO 27001, ISO 27002, PCI-DSS, SOC 2 Type II);
  • Excellent communication and problem-solving skills are important to effectively assess and communicate risks to internal and external stakeholders;
  • Previous work experience in consulting or advisory roles is often preferred.

 

What we offer:

  • High‑impact scope: the chance to shape foundational advisory capabilities that are used across multiple products and journeys.
  • Growth & learning: opportunities to work across the stack, take on complex technical challenges, and learn from leaders while working in a team with direct exposure to all business and ITSec verticals.
  • Collaborative environment: a culture that values ownership, transparency, and knowledge sharing, with a strong emphasis on psychological safety and continuous improvement.


Our Benefits

  • Chance of earning equity at Nubank
  • Food/ Meal Card (Vale-Refeição and/or Vale Alimentação)
  • Public Transportation Commuting Benefit (Vale-Transporte)
  • NuCare – Psychological, Financial and Legal Assistance Program
  • Life Insurance
  • Medical Plan
  • Dental Plan
  • NuLanguage – Language Course Program
  • Nucleo - Our learning platform of courses
  • Extended Parental Leave
  • Daycare Allowance
  • Parental Consultancy
  • Work-from-home Allowance
  • Gym Partnerships
  • 30 days of paid vacation
  • Relocation Assistance Package, if applicable

 

Work Model for this Role

Hybrid 2-3 times/week: Our hybrid work model brings us to the office at least twice a week, on strategic days designed to maximize team connection and collaboration. For more details, visit https://building.nubank.com/nu-hybrid-work-model/

Apply for this job

*

indicates a required field

Phone
Resume/CV

Accepted file types: pdf, doc, docx, txt, rtf

Cover Letter

Accepted file types: pdf, doc, docx, txt, rtf


Select...
Select...
Select...
Select...
Select...
Select...

Pesquisa Demográfica

Para ter certeza que estamos construindo um ambiente mais diverso e inclusivo, nós buscamos recrutar nos movendo para um espaço de representatividade e proporcionalidade. Isso significa que consideramos expressões de gênero, etnia, raça, religião, orientação sexual e outros marcadores de identidade como fatores que enriquecem nossa empresa, garantindo que nenhum deles sejam barreiras para que possamos recrutar talentos.

Para isso, pedimos que você compartilhe algumas informações adicionais para que possamos alavancar nossos objetivos e esforços de recrutamento, lembramos que essa pesquisa é totalmente opcional e voluntária. Para mais informações sobre a coleta e manutenção desses dados, acesse nossa Política de Privacidade para Pessoas Candidatas em  Português, Espanhol o Inglês.

Select...
Select...
Select...
Select...
Select...

Voluntary Self-Identification

For government reporting purposes, we ask candidates to respond to the below self-identification survey. Completion of the form is entirely voluntary. Whatever your decision, it will not be considered in the hiring process or thereafter. Any information that you do provide will be recorded and maintained in a confidential file.

As set forth in Nubank’s Equal Employment Opportunity policy, we do not discriminate on the basis of any protected group status under any applicable law.

Select...
Select...
Race & Ethnicity Definitions

If you believe you belong to any of the categories of protected veterans listed below, please indicate by making the appropriate selection. As a government contractor subject to the Vietnam Era Veterans Readjustment Assistance Act (VEVRAA), we request this information in order to measure the effectiveness of the outreach and positive recruitment efforts we undertake pursuant to VEVRAA. Classification of protected categories is as follows:

A "disabled veteran" is one of the following: a veteran of the U.S. military, ground, naval or air service who is entitled to compensation (or who but for the receipt of military retired pay would be entitled to compensation) under laws administered by the Secretary of Veterans Affairs; or a person who was discharged or released from active duty because of a service-connected disability.

A "recently separated veteran" means any veteran during the three-year period beginning on the date of such veteran's discharge or release from active duty in the U.S. military, ground, naval, or air service.

An "active duty wartime or campaign badge veteran" means a veteran who served on active duty in the U.S. military, ground, naval or air service during a war, or in a campaign or expedition for which a campaign badge has been authorized under the laws administered by the Department of Defense.

An "Armed forces service medal veteran" means a veteran who, while serving on active duty in the U.S. military, ground, naval or air service, participated in a United States military operation for which an Armed Forces service medal was awarded pursuant to Executive Order 12985.

Select...

Voluntary Self-Identification of Disability

Form CC-305
Page 1 of 1
OMB Control Number 1250-0005
Expires 04/30/2026

Why are you being asked to complete this form?

We are a federal contractor or subcontractor. The law requires us to provide equal employment opportunity to qualified people with disabilities. We have a goal of having at least 7% of our workers as people with disabilities. The law says we must measure our progress towards this goal. To do this, we must ask applicants and employees if they have a disability or have ever had one. People can become disabled, so we need to ask this question at least every five years.

Completing this form is voluntary, and we hope that you will choose to do so. Your answer is confidential. No one who makes hiring decisions will see it. Your decision to complete the form and your answer will not harm you in any way. If you want to learn more about the law or this form, visit the U.S. Department of Labor’s Office of Federal Contract Compliance Programs (OFCCP) website at www.dol.gov/ofccp.

How do you know if you have a disability?

A disability is a condition that substantially limits one or more of your “major life activities.” If you have or have ever had such a condition, you are a person with a disability. Disabilities include, but are not limited to:

  • Alcohol or other substance use disorder (not currently using drugs illegally)
  • Autoimmune disorder, for example, lupus, fibromyalgia, rheumatoid arthritis, HIV/AIDS
  • Blind or low vision
  • Cancer (past or present)
  • Cardiovascular or heart disease
  • Celiac disease
  • Cerebral palsy
  • Deaf or serious difficulty hearing
  • Diabetes
  • Disfigurement, for example, disfigurement caused by burns, wounds, accidents, or congenital disorders
  • Epilepsy or other seizure disorder
  • Gastrointestinal disorders, for example, Crohn's Disease, irritable bowel syndrome
  • Intellectual or developmental disability
  • Mental health conditions, for example, depression, bipolar disorder, anxiety disorder, schizophrenia, PTSD
  • Missing limbs or partially missing limbs
  • Mobility impairment, benefiting from the use of a wheelchair, scooter, walker, leg brace(s) and/or other supports
  • Nervous system condition, for example, migraine headaches, Parkinson’s disease, multiple sclerosis (MS)
  • Neurodivergence, for example, attention-deficit/hyperactivity disorder (ADHD), autism spectrum disorder, dyslexia, dyspraxia, other learning disabilities
  • Partial or complete paralysis (any cause)
  • Pulmonary or respiratory conditions, for example, tuberculosis, asthma, emphysema
  • Short stature (dwarfism)
  • Traumatic brain injury
Select...

PUBLIC BURDEN STATEMENT: According to the Paperwork Reduction Act of 1995 no persons are required to respond to a collection of information unless such collection displays a valid OMB control number. This survey should take about 5 minutes to complete.