Welcome to RemoteYeah 2.0! Find out more about the new version here.

Remote Cybersecurity Engineer Sr

at Xepelin

Posted 1 day ago 0 applied

Description:

  • Xepelin is a FinTech company aiming to democratize financial services for all types of businesses.
  • The company leverages advanced technology to create agile, personalized, and transparent solutions.
  • Xepelin's goal is to become the largest B2B FinTech in Latin America and the digital CFO for companies in the region.
  • Founded in Chile in 2019, Xepelin has raised over USD 145 million in equity and USD 300 million in asset-backed facilities to support growth, particularly in Chile and Mexico.
  • The last equity round raised USD 111 million, a record in Chile and one of the largest in Latin America for a FinTech.
  • The company is looking for creative and visionary individuals to join their Cybersecurity Tooling team.
  • The role involves designing, developing, and maintaining internal security tools/services focused on process automation, including vulnerability management, IAM, attack surface detection, security assessments, and risk management.
  • Responsibilities include building efficient, secure, and scalable APIs and microservices primarily using Python, deploying in cloud environments and Kubernetes.
  • The position requires collaboration with various sub-teams in Cybersecurity and Platform steps in CI/CD pipelines focused on security controls.
  • Participation in the design and continuous improvement of tools like SAST and automated pentesting is expected.
  • A rigorous developer perspective on secure coding standards and technical quality is essential, with experience in code review being a plus.

Requirements:

  • Solid experience in developing with Python, focusing on backend, RESTful APIs, and automation.
  • Proven experience in Kubernetes environments and productive deployments (Docker, Helm, etc.).
  • Strong knowledge of cybersecurity concepts such as vulnerabilities, risks, scanning, and hardening.
  • Familiarity with security tools like SAST, DAST, linters, or dependency scanning.
  • Experience in cloud environments (AWS, GCP, or Azure).
  • Experience with FastAPI or Flask is required.
  • Knowledge of GitOps, Terraform, and secure Infrastructure as Code (IaC) practices; experience with Pulumi is a plus.
  • Contributions to open source or personal projects in security tools are desirable.
  • A natural curiosity for AI applied to security and automation is important.
  • Ability to work autonomously, focusing on deliverables and continuous learning.
  • Teamwork skills and a collaborative attitude towards common goals are essential.
  • Clear and effective communication skills to facilitate collaboration within the team and across different areas of the organization.

Benefits:

  • Xepelin offers 15 business days of vacation, with an additional day for each year of service.
  • Employees receive 10 additional flexible days off per year to use as they wish.
  • The company provides a hybrid work model and flexible hours based on the role, focusing on objectives.
  • Flexible benefits include points in the local currency each month to spend as desired.
  • Xepelin organizes fun activities funded by the company for team bonding.
  • Access to training platforms like Reforge, Udemy, and DataCamp is provided for professional development.
  • A welcome kit is given to new employees to support their onboarding experience.
  • Health coverage agreements with quality providers or reimbursements are available based on the employee's location.
  • An extra week of post-natal leave is offered to support employees with their families.
  • A marriage bonus includes a gift card and an extension of legal marriage leave with two additional days off provided by Xepelin.