Clara is seeking a Lead Security Engineer to secure its infrastructure and defend against cyber threats. The Lead Security Engineer will proactively monitor incoming attacks, develop mitigation strategies, build security plans for potential threats, and conduct continuous offensive security testing. They will also run an in-house Security Operations Center (SOC), ensure compliance with security audits and certifications, and perform continuous scanning and vulnerability assessment on systems.
Responsibilities:
- Continuously monitor systems for active threats, unauthorized access, and potential vulnerabilities.
- Actively respond to and mitigate security incidents in real-time.
- Develop and refine playbooks for various attack scenarios and their mitigation.
- Perform continuous penetration testing and active scanning of internal infrastructure, networks, and services.
- Identify security weaknesses before attackers do and recommend security hardening strategies.
- Run an in-house SOC focused on active defense, logging, and real-time monitoring.
- Leverage threat intelligence feeds and develop in-house intelligence to stay ahead of attack trends.
- Develop tools and techniques for anomaly detection and automated incident response.
- Design, implement, and maintain zero-trust security models across cloud and on-prem infrastructure.
- Work closely with DevOps and infrastructure teams to ensure secure CI/CD pipelines and secure cloud deployments.
- Maintain compliance documentation, conduct internal security audits, and ensure security measures align with business objectives.
- Work with legal and compliance teams to ensure adherence to privacy laws.
- Run internal red team exercises and simulate real-world cyberattacks against the company’s infrastructure.
Requirements:
- 5+ years of experience in cybersecurity, infrastructure security, or offensive security (red teaming, pentesting, or SOC leadership).
- Experience with offensive security tools.
- Proficiency in SIEM tools (Splunk, ELK Stack, Wazuh, etc.) and log analysis.
- Strong understanding of cloud security (AWS) and container security (Kubernetes, Openshift).
- Knowledge of compliance frameworks (ISO 27001, PCI-DSS, NIST, GDPR, etc.).
- Scripting and automation skills.
- Experience with forensic analysis and threat hunting methodologies.
What Clara Offers:
- Competitive salary & a robust stock ownership plan
- 100% flexible work model
- A set of benefits that are adaptable to your needs & way of life
- Opportunities for growth in a fast-paced environment
- A chance to shape B2B payments in Latin America and increase the region’s economic competitiveness
Apply
Clara
Clara is a leading spend management platform transforming business finances across Latin America. Backed by prominent investors, Clara provides an end-to-end solution featuring locally-issued corporate cards and a sophisticated software platform for bill payment. Serving thousands of successful companies, they foster an inclusive culture based on clarity, simplicity, ownership, pride, continuous improvement, and inclusivity. Clara offers opportunities to shape B2B payments, driving economic competitiveness in the region.