Sr. Security Engineer

Full-Time
Fully_Remote
Argentina, Chile, Colombia, Mexico, Peru, Uruguay, Brazil

Summary of the Role

We are looking for a Senior Security Engineer to own the design, implementation and hardening of enterprise cloud and systems infrastructure across AWS or Azure environments and the Microsoft security ecosystem (Defender, Intune, Entra ID). You will build preventive controls, run patch and vulnerability management programs, integrate security into CI/CD pipelines and set the security standard across Engineering, DevOps and IT, supporting compliance in highly regulated industries. Whether your cloud depth is in AWS or Azure, if you are a hands-on security engineer who builds durable controls, we want to hear from you.

Desired Skills

  • Full-Time availability
  • Upper Intermediate English (B2) or above, with strong verbal and written communication
  • 5+ years of hands-on security engineering experience
  • Microsoft Security Stack: Deep hands-on experience securing Microsoft environments, including Defender for Endpoint, Defender for Office 365, Intune, Entra ID (Conditional Access) and hybrid Active Directory.
  • Cloud Security (AWS or Azure): Strong experience securing cloud environments and implementing preventive controls through Infrastructure as Code: multi-account AWS (IAM, VPC, Security Groups, WAF) and/or Azure (Defender for Cloud, Azure Firewall, Key Vault, Azure Policy, using Terraform/Bicep).
  • Patch & Vulnerability Management: Proven ownership of enterprise patch or vulnerability management programs, including emergency patching, SLA-driven remediation and exception governance.
  • DevSecOps & Secure SDLC: Hands-on experience integrating security into CI/CD pipelines (SAST/AppSec, IaC review), conducting threat modeling and implementing cloud/network security controls.
  • Program & Technical Leadership: Demonstrated ownership of preventive security initiatives end-to-end, with the ability to mentor engineers, influence cross-functional teams and translate risk/compliance requirements into practical engineering controls.

Responsibilities

  • Infrastructure & Cloud Hardening: Design, deploy and enforce preventive security controls across AWS or Azure infrastructure and Microsoft modern workplace ecosystems (Intune, Defender, Entra ID).
  • Identity & Access: Administer and harden identity controls such as Conditional Access, RBAC, SSO/MFA and privileged access.
  • Patch, Vulnerability & Endpoint Management: Own the end-to-end patch and vulnerability management program, including regular updates, emergency deployments, remediation tracking and EDR platforms.
  • DevSecOps & Application Security: Integrate automated security testing into CI/CD pipelines, review Infrastructure as Code, partner with engineering teams on secure SDLC practices and conduct threat modeling.
  • Security Architecture & Compliance: Set structural security standards, author clear documentation, drive proactive controls that mitigate risk before incidents occur, and provide technical evidence for audits.
  • Mentorship & Collaboration: Mentor security engineers and influence Engineering, DevOps and IT teams to embed security best practices into daily workflows.

Nice-to-Haves

  • Industry & Audit Experience: Background in financial services, fintech, healthcare or other highly regulated industries, with exposure to SOC 2, PCI DSS, ISO 27001, HIPAA or HITRUST audits.
  • SIEM & Detection Engineering: Deploying and tuning Microsoft Sentinel or Splunk, writing KQL detection rules and SOAR playbooks, threat hunting or managed SOC oversight.
  • Vendor & Tooling Ownership: Selecting, onboarding or managing MDR/MSSP vendors; CSPM tools (e.g., Orca Security); EDR platforms such as CrowdStrike or SentinelOne; web filtering tools such as Zscaler or Netskope.
  • Scripting & Automation: KQL, PowerShell and/or Python to automate security playbooks and tune alert rules.
  • Additional Exposure: DaaS/VDI security (Azure Virtual Desktop / Windows 365), GRC automation platforms (e.g., Vanta) and AI-assisted security tools.
  • Relevant Certifications: CISSP, CCSP, AWS Certified Security – Specialty, AZ-500, Microsoft SC-200 / SC-300, OSCP or GIAC certifications.

Who You Are

  • Preventive & Proactive Security Mindset: You focus on prevention, architectural improvements and building durable controls, spotting configuration drift or security gaps on your own and driving remediation to completion.
  • Strong Ownership & Technical Leader: You take full ownership of security programs end-to-end, set high technical standards and enjoy mentoring other engineers.
  • Architectural Thinker & Communicator: You have strong risk-assessment judgment and translate complex security findings and compliance needs into clear, practical controls for engineering, audit and executive stakeholders.
  • Calm Under Pressure: You stay methodical and clear during security investigations, incident response and root cause analyses.

Some benefits: 

  • 🏢 Offices in some cities 
  • 🖥️ 100% remote work
  • ⌚ Full-time schedule, flexible according to objectives
  • 🏖️PTO & holidays
  • ⚕️Medical insurance

About Howdy

Howdy.com, founded in 2018 and headquartered in Austin, Texas, helps US companies who want to hire, manage, and retain their teams in Latin America (LatAm) directly but need help with multinational logistics, contracts, compliance, and culture. Companies that use Howdy.com get the best talent available in LatAm and gain access to an entire network and a thriving community of professionals who are changing the world. By partnering with Howdy.com, companies can expand their physical presence into some of the fastest-growing economies in LatAm.

Howdy.com is a member of Y Combinator and has garnered significant support from prominent investors, including Greycroft and Obvious Ventures. The company raised over $20 million in a series A venture capital round.

Our core values

#1 Sports Team: At Howdy, we win together. From players to support, everyone is vital to our success. We hire for excellence, prioritize teamwork, and strive for continuous improvement. We collaborate, seek advice, and actively contribute to Howdy's victories.

Altruism: Demonstrating altruism involves prioritizing the team and assuming the best in others. We communicate openly, provide honest feedback, and extend grace. Altruism is selfless service, focusing on supporting our players and team growth.

Curiosity: Being curious at Howdy means having the willingness to learn, adapt, and explore new ideas. We question existing beliefs, embrace humility, and see curiosity as our superpower. Demonstrating curiosity involves researching unfamiliar tasks, asking questions to understand the full picture, and seeking better ways to complete routine tasks.

Have Spirit: Having spirit at Howdy is about celebrating wins, building a sense of community, and bringing positivity. Demonstrating spirit involves attending events, getting to know teammates, participating in challenges, and proudly wearing the Howdy swag. Simply put, it's about bringing a super-fan spirit to work every day.