WriterRemote · New York City, NY$183k-$240k
NubankPosted 1d ago
Senior Security Engineer (Incident Response) at Nubank scores 0 out of 100 on AI centrality, which makes it AI Level 1 of 4 (Little AI) on this board. The level measures how much of the work is AI, not seniority.
AI in this role
Lead incident response investigations, drive security automation with Python, and scale cloud infrastructure security.
Nu serves more than 140 million customers, guided by a mission to fight complexity and empower people. The company has been leading an industry transformation through innovative products and human-centered services.
Proprietary technology and data at scale power Nu’s digital platform, built to promote financial access, advancement, and transparency. Its business model thrives on customer love and lower costs, feeding a flywheel of growth and profitability.
Visit our Institutional Page
About the role
The Nubank Security team actively seeks out potential security threats to protect both our customers and Nubankers. We respond swiftly to security incidents, conduct thorough investigations, and implement measures to mitigate risks. Our strong engineering capabilities allow us to reduce response times through automation and specialized micro-services.
Our Incident Response Team is focused on managing incidents and is constantly enhancing its skills and maturity. Additionally, the Nubank CSIRT is a proud member of the FIRST (Forum of Incident Response and Security Teams) community. You can find more about Nubank Infosec here:
https://blog.nubank.com.br/infosec-nubank-protecao-dados/
You will be responsible for
Investigate complex cases to understand the mechanisms of abuse and guide strategies to mitigate or detect the anomaly
Incident Command: Act as the technical Incident Commander during major crises, coordinating technical workstreams and providing clear, data-driven updates to stakeholders.
Engineering & Automation: Drive the creation and refinement of SOAR playbooks and Python-based tools to automate repetitive tasks and scale the operation.
Data Interpretation: Analyze large datasets to identify emerging threat trends, supporting long-term detection improvements and quantifying risk.
We are looking for a person who has
Proven IR Experience: Solid experience as an Incident Response Analyst/Specialist, with a track record of handling investigations in complex, high-scale environments.
Technical Authority: Deep understanding of security vulnerabilities, attacker TTPs (Mitre ATT&CK), and modern remediation methodologies.
Cloud IR Mastery: Hands-on experience with incident response and management within cloud infrastructures (AWS/GCP/Azure).
Automation Engineering: Strong skills in Python and SOAR platforms to build self-healing or automated response workflows.
Communication: Ability to translate complex technical findings into clear, actionable reports for both technical peers and executive leadership.
English Proficiency: Proficient in both understanding and speaking English for global collaboration.
Location for this opportunity (City, Country)São Paulo, Brazil
Campinas, Brazil
Rio de Janeiro, Brazil
Belo Horizonte, Brazil
Benefits
Chance of earning equity at Nubank
Food/ Meal Card (Vale-Refeição and/or Vale Alimentação)
Public Transportation Commuting Benefit (Vale-Transporte)
NuCare – Psychological, Financial and Legal Assistance Program
Life Insurance
Medical Plan
Dental Plan
NuLanguage – Language Course Program
Nucleo - Our learning platform of courses
Extended Parental Leave
Daycare Allowance
Parental Consultancy
Work-from-home Allowance
Gym Partnerships
30 days of paid vacation
Relocation Assistance Package, if applicable
Work Model for this Role
Hybrid 2-3 times/week: Our hybrid work model brings us to the office at least twice a week, on strategic days designed to maximize team connection and collaboration. For more details, visit https://building.nubank.com/nu-hybrid-work-model/
Our recruitment process may involve the use of artificial intelligence–enabled tools, such as automated interview transcription and analysis, to support the evaluation process. Artificial intelligence is not used to make final hiring decisions; all decisions are made by human reviewers.
To maintain a consistent and fair process for every candidate, Nu does not provide individualized technical feedback. See how our policy works here
Prepare for this job
A free preview built only from this posting: what it asks for, what you could be asked in an interview, and how to adjust your resume.
Skills and AI tools this role asks for
Questions you could be asked
- Tell me about a project where incident response was part of your work. What did you do?
- Tell me about a project where security engineering was part of your work. What did you do?
- Tell me about a project where automation was part of your work. What did you do?
- What's a project where you used Python hands-on?
- Walk me through how you've used Soar in your day-to-day work.
Adapt your resume
- List these exact terms on your resume: Incident Response, Security Engineering, Automation, Python, and Soar. An applicant tracking system matches the wording, not the idea.
- Attach one line of real, concrete experience to at least one of them — a tool named with nothing behind it rarely survives a human read.
Want your resume actually rewritten for this job?
The free preview above is everything we have today. A full resume rewrite is not live yet and has no price set. Join the waitlist and we will email you if we open it.
Similar roles
Security roles rated AI Level 1 at other companies.
Thought MachinePortugal, Lisbon€75k-€95k
DatadogRemote · Sydney, Australia
Anduril IndustriesWashington, District of Columbia, United States$166k-$220k
AmazonUS, TX, Austin$177k-$239k
WorkOSRemote · United States & Canada$175k-$275k







