
Security Engineer
- SIEM
- Datadog
- CrowdStrike
- Cloudflare
- Incident Response
- DLP
- Google Workspace
- AWS
- Kubernetes
- AI
- CI/CD
- EDR
- Okta
- SCIM
- MCP
About ARQ
The global financial platform for affluent consumers in the Americas.
Tech
ARQ opens the world's strongest assets and markets to travelers, investors, and professionals across the Americas β so they can grow their money wherever they are. We operate with long-term ambition and absolute conviction. If you are exceptional at what you do, this is a defining moment to join us. We are building one of the most important financial institutions in the world β and assembling the team to do it. We are hiring in New York, Buenos Aires, SΓ£o Paulo, Krakow, Mexico City, Bogota, and London. You will find more details in our careers portal.
The role
# **About ARQ**ARQ is one of the fastest-growing fintechs in the world. Our mission is to redefine how people interact with money across borders, building the infrastructure to move value seamlessly. Weβre still early in our journey, which means every person who joins shapes the future of our product, culture, and growth. If youβre excited by big challenges, global impact, and the chance to grow fast with a world-class team, ARQ is the place to do it.# What you'll do- Build and improve SIEM detection rules, alert pipelines, and automated response playbooks (Datadog SIEM, CrowdStrike, Cloudflare)- Contribute to incident response readiness, including IR playbooks, tabletop exercises, and forensic procedures- Support DLP strategy and data protection controls across Google Workspace, Slack, and internal tooling- Conduct cloud security assessments across AWS and Kubernetes environments- Drive application security initiatives: threat modelling, secure code review support, API testing, and security pipeline improvements- Assess and secure AI/agentic workflows across the company β reviewing prompts, preventing destructive actions, and controlling data exposure- Establish and run the vendor security assessment process β building a scalable due diligence framework for third-party onboarding# What you'll need- 4β7 years in information security, ideally having built or significantly shaped the security function at a startup or high-growth company - you've been the person who sets things up, not just maintains them- Hands-on experience with cloud infrastructure security (AWS, Kubernetes)- Working knowledge of SIEM platforms and detection engineering - you've written detection rules, not just consumed alerts- Familiarity with application security practices: threat modelling, secure code review, CI/CD pipeline hardening, and API security testing- Experience with endpoint security tooling (EDR/XDR) and identity & access management in a SaaS-heavy environment (Google Workspace, Okta/Cloudflare Access, SSO/SCIM)- Ability to assess and secure emerging AI/agentic tooling - you understand the risks of LLM integrations, MCP servers, and automated workflows, and can define practical guardrails- Experience running or contributing to vendor security assessments and third-party due diligence- Strong written and verbal communication- Business fluent in English; Spanish or Portuguese a plus
Security Engineer Β· ARQ