8 months ago
Buenos Aires, Argentina +3 moreSenior
Responsibilities
- Participate in ISO 27001/27701, ISO 42001, SOC 2, and PCI DSS audits from a technical and implementation perspective.
- Translate security, compliance, and privacy requirements into scalable, enforceable, measurable, and auditable technical controls.
- Develop and maintain internal security tools using Python.
- Work with Engineering and DevOps teams to implement and validate cloud security controls in AWS and GCP.
- Support privacy-focused initiatives and stronger technical controls.
Requirements
- Practical experience working with ISO audits and translating controls into technical implementations.
- Experience in fintech, payments, or highly regulated environments.
- Familiarity with SOC 2 or PCI DSS frameworks from an engineering perspective.
- Understanding of privacy requirements and frameworks.
- Working knowledge of Python and the ability to build and maintain simple tooling.
- Solid knowledge of AWS and/or GCP security services, including WAF, GuardDuty, Security Hub, and monitoring.
- Strong collaboration skills and English fluency.
- Familiarity with Kubernetes or container security is preferred.
- Familiarity with infrastructure as code using Terraform or CloudFormation is preferred.
- Experience with vendor risk management and third-party security reviews is preferred.
- Familiarity with serverless, event-driven, or AI-integrated architectures is preferred.
Benefits
- Remote work from anywhere.
- One-time home office allowance.
- Work equipment.
- Stock options.
- Health plan wherever you are.
- Flexible days off.
- Full-time individual contributor position.
