Sezzle

Senior Security Infrastructure Engineer

Sezzle
Apply
4 hours ago
Remote, ChileSenior

Responsibilities

  • Lead vulnerability management across infrastructure, platforms, and applications, including scanning, dependency analysis, validation, remediation coordination, and verification.
  • Build, operate, and mature SIEM/XDR capabilities through log ingestion, detection rule development, alert tuning, and investigation workflows.
  • Investigate and respond to security incidents across cloud infrastructure and applications, perform root cause analysis, and drive long-term fixes.
  • Design detection strategies for suspicious activity, including data exfiltration patterns using application and database telemetry.
  • Lead threat modeling and security design reviews to identify risks and strengthen architecture.
  • Design, secure, and improve resilient cloud infrastructure using AWS and Kubernetes.
  • Harden infrastructure and CI/CD workflows and reduce software, dependency, and container supply chain risks.
  • Implement security controls aligned with PCI DSS, SOC 2, and other compliance requirements.
  • Develop automation, including AI-enabled automation, to improve security operations, detection, and response.
  • Triage external security findings and coordinate remediation with engineering teams.

Requirements

  • 6+ years of experience in security, software, or infrastructure engineering, including hands-on experience securing cloud-based production systems.
  • Experience with threat modeling, security design reviews, vulnerability management, security investigations, and remediation coordination.
  • Experience with SIEM platforms such as Wazuh, Splunk, or ELK for detection engineering, monitoring, and incident response.
  • Experience triaging findings from vulnerability scanners and bug bounty programs.
  • Strong knowledge of AWS, Linux, and Kubernetes infrastructure, including security architecture, hardening, and operational practices.
  • Experience with CI/CD hardening, software supply chain risk mitigation, and container and dependency security tools such as Snyk, Trivy, and Grype.
  • Ability to investigate issues using logs, cloud tooling, and system-level data.
  • Knowledge of common security vulnerabilities and mitigation strategies, including OWASP and SANS.
  • Working knowledge of PCI DSS, SOC 2, and other compliance expectations.
  • Demonstrated experience with Claude or equivalent large language model tools is required.
  • Preferred qualifications include experience tuning detection rules, reducing alert noise, building telemetry pipelines, designing secure CI/CD workflows, and using automation and AI at scale.

Benefits

  • Full-time remote role.
  • Gross monthly compensation of $5,000–$9,500 USD, based on experience level.
  • Opportunity to shape security capabilities across detection, supply chain security, data protection, automation, and incident response.
  • Collaborative environment with engineering teams and emphasis on ownership, autonomy, and practical security improvements.

Tech Stack

AWSElasticsearchGitGoKubernetesLinuxMySQLPostgreSQLPythonReactReact NativeSplunkTypeScript

Categories

Sezzle

About Sezzle

201-500 employees

Sezzle builds a buy now, pay later platform that lets consumers split purchases into interest-free installments online and in stores, integrated with e-commerce and retail merchants. The company earns revenue from merchant fees and related consumer charges and provides underwriting and payment processing services. Founded in 2016 and headquartered in Minneapolis, Sezzle is a public company dual-listed on Nasdaq and the ASX.

Contact me