Oscilar

AI Risk Decisioning

Sr./StaffSecurityEngineer

Brazil FULL TIME Remote Friendly
Market Sentiment
HIGH DEMAND

Neural analysis suggests this role is
optimal for Senior candidates.

The Brief

“Sr. /Staff Security Engineer at Oscilar. Skills: product security, application security, infrastructure security, LLM/agent security, AppSec program, threat modeling, authentication, authorization, RBAC, SAST, SCA, secret scanning, IaC scanning, container scanning, LLM security. Own threat modeling across our core platform APIs, risk decisioning and event-ingestion systems, and agentic AI. harden multi-tenant isolation and data-handling across designs and PRs”

What You'll Achieve.

making the internet safer for everyone; making the digital world safer; making the internet safer by protecting online transactions

Industry & Context.

AI Risk Decisioning
Problems you'll solve

solving complex problems

What They're Looking For.

Must Have

software engineering fundamentals — 5+ years building software, last 3+ focused on application or product security, hands-on Java and/or Python code review skills, Experience with SSO, SAML, OAuth 2.0, JWT, mTLS, and multi-tenant PII handling/tokenization, Working knowledge of AWS security primitives (IAM, KMS, Secrets Manager, VPC) and Kubernetes

Nice to Have

Experience providing technical evidence and controls for SOC 2 / PCI / ISO 27001 audits, Prior experience building or tuning SAST rules (Semgrep, CodeQL), OSCP, CISSP, or a meaningful bug-bounty track record

What You'll Do.

Own threat modeling across our core platform APIs

risk decisioning and event-ingestion systems

harden multi-tenant isolation and data-handling across designs and PRs

and deploy authentication

authorization (user and API)

and RBAC across our platform

Stand up our AppSec program from the ground up

Build guardrails around LLM usage

Drive security incident process

and the responsible-disclosure workflow

maintain a threat registry

and champion secure-by-default patterns

Partner with IT on shared areas

Collaborate with product and engineering teams on feature design

How You'll Work.

Team & Collaboration

Partner with IT on shared areas — incident response across corporate and product, access reviews, and audit evidence collection; Collaborate with product and engineering teams on feature design, embedding security early rather than gating at the end

Full Job Description

Shape the future of trust in the age of AI At Oscilar, we're building the most advanced AI Risk Decisioning™ Platform. Banks, fintechs, and digitally native organizations rely on us to manage their fraud, credit, and compliance risk with the power of AI. If you're passionate about solving complex problems and making the internet safer for everyone, this is your place https://oscilar.com/careers. WHY JOIN US: - Mission-driven teams: Work alongside industry veterans from Meta, Uber, Citi, and Confluent, all united by a shared goal to make the digital world safer. - Ownership and impact: We believe in extreme ownership. You'll be empowered to take responsibility, move fast, and make decisions that drive our mission forward. - Innovate at the cutting edge: Your work will shape how modern finance detects fraud and manages risk. JOB DESCRIPTION This is our first dedicated security engineering hire. Your center of gravity is product security — you'll initially span product, infrastructure, and LLM/agent security as we scale the function. WHAT YOU'LL DO - Own threat modeling across our core platform APIs, risk decisioning and event-ingestion systems, and agentic AI products; harden multi-tenant isolation and data-handling across designs and PRs. - Design, implement, and deploy authentication, authorization (user and API), and RBAC across our platform: own and propose new approaches as we scale - Stand up our AppSec program from the ground up: SAST (Semgrep), SCA (Dependabot/Snyk), secret scanning, IaC scanning, and container scanning on Pulumi + EKS - Build guardrails around LLM usage — prompt-injection defenses, output validation, and cost and abuse monitoring on Bedrock/Anthropic/OpenAI calls - Drive security incident process, vulnerability triage, and the responsible-disclosure workflow - Write SECURITY.md, maintain a threat registry, and champion secure-by-default patterns across the engineering org - Partner with IT on shared areas — incident response across corporate

Free ATS check

Applying for this Sr. /Staff Security Engineer role?

Most applicants get filtered before a human reads their resume. See if yours makes the cut.

How to Apply on Ashby

  • Ashby is a fast modern ATS — most applications take under 3 minutes.
  • The resume parser is strong; verify parsed experience dates and job titles.
  • Custom screening questions are often scored algorithmically — answer completely.
  • Location field affects geo-based screening; use your actual metro area.

ANONYMOUS · UNFILTERED

What do employees actually say about Oscilar?

Real rants from real employees. Read before you apply.

Read Company Rants →