Application Security - Design Reviews Threat Modelling

📍 São Paulo - SP Publicado 17/07/2026 Tecnologia da Informação
Remoto / Home office
Carregando opções de candidatura Estamos preparando as ações disponíveis para esta vaga.

Sobre a vaga

Leia os requisitos e vantagens antes de aplicar. Atualize seu currículo para aumentar as chances.

This position is listed on behalf of a partner company, who manages all applications and next steps.

Our partner is looking for a Application Security - Design Reviews Threat Modelling based in Brazil.

Local

São Paulo - SP

Remoto

Responsabilidades

  • Conduct security design reviews and threat modeling exercises for new products, services, applications, and platform capabilities.
  • Collaborate with engineering and product teams to identify security risks and recommend practical mitigation strategies throughout the development lifecycle.
  • Review application architectures, technical designs, data flows, deployment models, and system configurations to identify vulnerabilities and recommend secure design patterns.
  • Act as a security consultant for engineering teams by providing guidance on secure implementation practices, application security principles, and risk management.
  • Partner with teams developing AI and machine learning features to identify emerging security risks and support secure implementation approaches.
  • Maintain and improve security standards, reference architectures, documentation, and internal security guidance.
  • Develop and enhance automation, tooling, and processes that improve the efficiency and scalability of threat modeling and security review activities.
  • Support application security assessments, investigate security concerns, and contribute to root cause analysis for identified issues.
  • Participate in developer education initiatives through workshops, documentation, office hours, and security awareness programs.
  • Assist with security incident investigations related to application vulnerabilities when required.

Requisitos

  • 5+ years of experience in Application Security, Product Security, Security Engineering, or a related technical field.
  • Availability to work until 11:00 AM Pacific Standard Time (PST).
  • Strong knowledge of application security principles, including OWASP Top 10, API security, authentication, authorization, secrets management, and cryptography.
  • Proven experience conducting security reviews, threat modeling exercises, architecture assessments, or application security evaluations.
  • Strong understanding of modern application architectures, cloud environments, and secure software development practices, with AWS experience preferred.
  • Ability to read and understand source code in one or more modern programming languages.
  • Experience developing scripts, tools, or automation to improve security and engineering workflows.
  • Strong technical writing skills with experience creating security documentation, guidelines, and recommendations.
  • Excellent communication skills with the ability to explain complex security concepts to engineers and stakeholders with varying levels of expertise.
  • Ability to assess security risks, prioritize vulnerabilities, and provide practical recommendations aligned with business and technical objectives.
  • Collaborative mindset with experience working closely with software engineering and product teams.

Diferenciais

  • Fully remote work environment with flexibility to collaborate across distributed teams.
  • Opportunity to work on large-scale security initiatives impacting modern software products.
  • Exposure to advanced technologies, including cloud platforms, AI, and machine learning security challenges.
  • Collaborative culture focused on innovation, knowledge sharing, and continuous improvement.
  • Opportunity to contribute to security automation, developer enablement, and secure engineering practices.
  • Professional growth opportunities within a global technology environment.

Sobre a empresa

This position is listed on behalf of a partner company, who manages all applications and next steps.

Our partner is looking for a Application Security - Design Reviews Threat Modelling based in Brazil.

Benefícios

  • Fully remote work environment with flexibility to collaborate across distributed teams.
  • Opportunity to work on large-scale security initiatives impacting modern software products.
  • Exposure to advanced technologies, including cloud platforms, AI, and machine learning security challenges.
  • Collaborative culture focused on innovation, knowledge sharing, and continuous improvement.
  • Opportunity to contribute to security automation, developer enablement, and secure engineering practices.
  • Professional growth opportunities within a global technology environment.

Como Jobgether funciona

  • We use an AI-powered matching process to ensure your application is reviewed quickly, objectively, and fairly against the role's core requirements.
  • Our system identifies the top-fitting candidates, and this shortlist is then shared directly with the hiring company.
  • The final decision and next steps (interviews, assessments) are managed by their internal team.

Política de Privacidade

  • By submitting your application, you acknowledge that Jobgether will process your personal data to evaluate your candidacy and share relevant information with the hiring employer.
  • This processing is based on legitimate interest and pre-contractual measures under applicable data protection laws (including GDPR).
  • You may exercise your rights (access, rectification, erasure, objection) at any time.

Estimativa salarial para Application Security Specialist em São Paulo/SP

Listamos abaixo as 3 profissões mais próximas com salário médio, conforme aproximação com ocupações do Ministério do Trabalho e Emprego.

Novo: relatório de compatibilidade CV x vaga

Veja o percentual de aderência do seu currículo com esta vaga.

Após o login você poderá solicitar o relatório. Nós iremos analisar a compatibilidade para você, comparando seu currículo com os requisitos da vaga e destacando o percentual de aderência, os pontos fortes e as lacunas que podem ser melhoradas. Você recebe por e-mail um resumo claro com recomendações práticas para aumentar suas chances de entrevista.