Sezzle

Senior Security Infrastructure Engineer

Sezzle
Apply
4 hours ago
Remote, ArgentinaSenior

Responsibilities

  • Lead vulnerability management across infrastructure, platforms, and applications, including scanning, dependency analysis, validation, remediation coordination, and verification.
  • Build, operate, and mature SIEM/XDR capabilities through log ingestion, detection rule development, alert tuning, and investigation workflows.
  • Investigate security incidents across cloud infrastructure and applications, perform root cause analysis, and drive long-term fixes.
  • Design detection strategies for suspicious activity, including data exfiltration patterns using application and database telemetry.
  • Lead threat modeling and security design reviews to identify risks early and improve system architecture.
  • Secure and improve AWS and Kubernetes infrastructure, including cloud hardening and resilience initiatives.
  • Drive CI/CD hardening and software and container supply-chain risk controls.
  • Partner with engineering teams to remediate vulnerabilities and improve secure development and deployment practices.
  • Implement security controls aligned with PCI DSS, SOC 2, and other compliance requirements.
  • Develop automation, including AI-assisted automation, for security operations, detection, and response.
  • Triage and validate external security findings, including bug bounty findings, and coordinate remediation.

Requirements

  • 6+ years of experience in security, software, or infrastructure engineering with hands-on experience securing cloud-based production systems.
  • Experience with threat modeling, security design reviews, vulnerability management, scanning, triage, validation, remediation coordination, and verification.
  • Experience with SIEM platforms such as Wazuh, Splunk, or ELK for detection engineering, monitoring, and incident response.
  • Experience triaging vulnerability scanner and bug bounty findings.
  • Strong knowledge of AWS, Linux, and Kubernetes infrastructure, including security architecture, hardening, and operational practices.
  • Experience with CI/CD hardening, software supply-chain risk mitigation, and container and dependency security tools such as Snyk, Trivy, and Grype.
  • Ability to investigate issues using logs, cloud tooling, and system-level data.
  • Knowledge of common security vulnerabilities and mitigation strategies, including OWASP and SANS guidance.
  • Working knowledge of PCI DSS and SOC 2 compliance frameworks.
  • Preferred experience designing and tuning detection rules, reducing alert noise, improving investigation workflows, and building log-based detection and telemetry pipelines.
  • Preferred experience designing secure CI/CD workflows and translating application and infrastructure risks into actionable improvements.
  • Demonstrated experience working with Claude or equivalent large language model tools is required.

Benefits

  • Full-time remote position.
  • Monthly gross compensation range of $5,000-$9,500 USD, based on experience level.
  • Opportunity to work on security capabilities at scale in a fintech and retail technology environment.

Tech Stack

AWSElasticsearchGitGoKubernetesLinuxMySQLPostgreSQLPythonReactReact NativeSplunkTypeScript

Categories

Sezzle

About Sezzle

201-500 employees

Sezzle builds a buy now, pay later platform that lets consumers split purchases into interest-free installments online and in stores, integrated with e-commerce and retail merchants. The company earns revenue from merchant fees and related consumer charges and provides underwriting and payment processing services. Founded in 2016 and headquartered in Minneapolis, Sezzle is a public company dual-listed on Nasdaq and the ASX.

Contact me