368,530open jobs
9,432companies
50,439added this week
Browse all
Location
Remote (Argentina)
Seniority
Middle · 3+ years exp
Overview
Company
Impact
Profile match
We help US companies hire top LATAM talent fast. First shortlist in 3–5 days. 97% retention. No per-placement fees. Start hiring today.

Who we are

At R2, we believe that small and medium businesses are the productive engine of society. Small and medium businesses (SMBs) make up over 90% of companies in Latin America, yet they face a trillion-dollar credit gap. Our mission is to unlock SMBs’ potential by providing financial solutions that are tailored to their needs. We are reimagining the financial infrastructure of Latin America, where SMBs financial needs are satisfied without ever having to go to a bank.

R2 enables platforms in Latin America to embed financial services that SMBs can then leverage (starting with revenue-based financing). We are a tight-knit team coming from organizations such as Google, Amazon, Nubank, Uber, Capital One, Mercado Libre, Globant, and J.P. Morgan. We are entering a new phase of growth following a strategic investment from Ant International, with a focus on rapidly expanding our partner footprint, strengthening our credit and underwriting capabilities, and scaling our operations across multiple markets.

As an Application Security Engineer, you will ensure the operational efficiency of our IT systems and support the security posture of a growing fintech company. You’ll report to the Director of Infrastructure and work closely with our DevOps and Software Development teams. We’re looking for someone proactive, detail-oriented, and passionate about technology.

What you’ll work on

  • Application Development & Code
    • Conduct secure code reviews for Go-based microservices and identify vulnerabilities early in the development cycle.
    • Perform security testing of APIs, web applications, and backend services before they reach production.
    • Establish and evolve secure coding standards, guardrails, and reusable patterns for engineering teams.
    • Lead threat modeling sessions with engineering and product teams at the design phase of new features and services.
  • CI/CD & Pipeline Security
    • Define and enforce security gates in CI/CD pipelines: SAST, DAST, SCA, and secrets scanning with blocking criteria for high-severity findings.
    • Own the DAST process end-to-end: tool selection, scheduling, escalation workflows, and remediation tracking.
    • Integrate container image scanning and infrastructure-as-code (IaC) security checks into deployment pipelines.
  • Hardening & Observability
    • Support hardening initiatives across Kubernetes, ingress, and workloads.
    • Contribute to the security observability program by defining and tuning alerting rules for authentication anomalies and suspicious API usage.
    • Drive the adoption of secure development across engineering teams by providing guidance, training, and hands-on support.
    • Build and maintain security documentation, runbooks, and standards
  • Vulnerability & Risk Management
    • Triage, prioritize, and track remediation of security findings across the platform.
    • Coordinate external penetration tests and work with vendors on scope, debriefs, and remediation plans.
    • Sit with product and business teams to understand risk from a product perspective.
    • Ensure there are no open high-severity findings older than 30 days.

Requirements

Who you are:

  • 3-5 years of experience in application security, product security, or a similar role.
  • Hands-on experience with SAST/DAST tools (Snyk, Checkmarx, OWASP ZAP, Burp Suite, or equivalent).
  • Solid knowledge of OWASP Top 10 for web and APIs and real-world exploitability assessment
  • Experience reviewing code in Go or similar compiled languages.
  • Familiarity with Kubernetes, containers, and cloud-native architectures.
  • Strong written and verbal communication, able to explain security risks clearly to both engineers and non-technical stakeholders.
  • Self-driven and comfortable working with autonomy in a fast-paced environment.
  • English proficiency - written and spoken (required).

Nice to have

  • Certifications such as OSCP, OSWE, CEH or eWPT.
  • Experience with Istio or service mesh security.
  • Familiarity with compliance frameworks such as ISO 27001, GDPR, or SOC 2.
  • Threat modeling experience (STRIDE, PASTA, or similar).
  • Experience in fintech or regulated environments.

Benefits

What We Offer

  • The chance to join a high-impact, mission-driven fintech with regional scale
  • Cross-functional collaboration with exceptional teams across Latin America
  • Equipment provided by R2
  • Training budget for professional development
  • Career growth within R2
Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
368,530 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
In your city
$91k – $167k per year (Estimated) • In office • Full-Time • 10+ years exp • Bachelor's Degree • Omaha
Java
Java
Spring Boot
DevOps
Azure
CI/CD
Docker
Kubernetes
Rest API
IAM
Cybersecurity
Microsoft Entra ID
Apply
$86k – $185k per year • In office • Full-Time • 7+ years exp • Bachelor's Degree • Toronto
Java
Java
Hazelcast
Spring Boot
Databases
Apache Kafka
PostgreSQL
Redis
DevOps
Azure
Azure DevOps
CI/CD
Docker
Git
Grafana
Jenkins
Kubernetes
Platform Engineering
Prometheus
SLI/SLO/SLA
Splunk
Cybersecurity
Least Privilege
Apply
$70k – $150k per year • In office • Full-Time • 5+ years exp • Calgary
Java
Node JS
Python
SQL
TypeScript
JavaScript
Java
Spring Boot
Databases
Apache Kafka
Chroma
OpenSearch
pgvector
Pinecone
PostgreSQL
AI/ML
AWS Bedrock
Copilot
Embeddings
LangChain
LangGraph
LLM
Prompt Engineering
RAG
AI Agents
Anthropic
Function Calling
Human-in-the-Loop
OpenAI
Structured Outputs
Frontend
Angular
React.js
DevOps
AWS
Azure
CI/CD
Docker
Kubernetes
Vector
Apply
$116k – $210k per year (Estimated) • In office • Full-Time • 10+ years exp • Bachelor's Degree • Jacksonville
Go
SQL
Databases
Apache Kafka
PostgreSQL
DevOps
CI/CD
gRPC
Kubernetes
Apply
$115k – $184k per year • Remote/Hybrid • Full-Time • Bachelor's Degree • O'Fallon
JavaScript
SQL
TypeScript
Java
Java
Hibernate
Spring Boot
Spring Framework
Databases
Apache Kafka
PostgreSQL
Frontend
Angular
React.js
DevOps
AWS
Azure
CI/CD
Docker
GitHub
Kubernetes
Rest API
Apply
Desarrollador IT 5 days ago
$31k – $168k per year (Estimated) • In office • Full-Time • 4+ years exp • Bogotá
C#
Java
PHP
SQL
Java
Spring Boot
PHP
Laravel
Databases
MySQL
SAP HANA
DevOps
Git
Analytics
ETL/ELT
Apply
Risk Data Analyst 5 days ago
Remote • 3+ years exp
Python
SQL
DevOps
Git
Analytics
Power BI
Tableau
Apply
$110k – $203k per year (Estimated) • Remote • Full-Time • 2+ years exp
Apply
In office • Full-Time • 3+ years exp • Mexico City
Python
SQL
Databases
Google BigQuery
PostgreSQL
Analytics
A/B Testing
Apply
Head of Product 1 month ago
$116k – $267k per year (Estimated) • Remote • Full-Time • 8+ years exp
SQL
Apply
See all jobs
This is one of many
368,530 more open roles from verified company boards, updated every day.