Senior Network & Edge Security Engineer
hace 2 días
Barcelona
ph3Why should you join dLocal? /h3pdLocal enables the biggest companies in the world to collect payments in 40 countries in emerging markets. Global brands rely on us to increase conversion rates and simplify payment expansion effortlessly. As both a payments processor and a merchant of record where we operate, we make it possible for our merchants to make inroads into the world’s fastest-growing, emerging markets. /ppBy joining us you will be a part of an amazing global team that makes it all happen. Being a part of dLocal means working with 1000+ teammates from 30+ different nationalities and developing an international career that impacts millions of people’s daily lives. We are builders, we never run from a challenge, we are customer-centric, and if this sounds like you, we know you will thrive in our team. /ph3What’s the opportunity? /h3pWe are looking for a Senior Network Edge Security Engineer to help design, operate, and evolve dLocal’s global cloud and hybrid network perimeter. This role combines deep cloud networking expertise with a strong security mindset: you will own secure connectivity, traffic protection, WAF and firewall controls, and the automation that makes those services reliable at scale. You will work closely with Platform, Information Security, Compliance, and Product teams to keep critical services secure, available, low-latency, and ready for international growth. /ph3What you’ll do /h3ullipDesign, implement, and operate secure, resilient, and scalable network solutions across cloud and hybrid environments, with a focus on availability, latency, disaster recovery, and operational simplicity. /p /lilipOwn and continuously improve our edge-security stack, including cloud WAFs, network firewalls, proxies, load balancers, and traffic-routing policies that protect public APIs, frontends, and internal services. /p /lilipDefine, tune, and maintain WAF and firewall rules, policies, and traffic flows; proactively reduce noise and false positives while preserving effective protection against attacks. /p /lilipDesign and operate AWS networking services such as VPCs, subnets, route tables, Transit Gateway, VPC peering, Route 53, load balancers, security groups, Network ACLs, and AWS Network Firewall. /p /lilipCoordinate, implement, and support third-party connectivity, including IPsec/SSL VPNs, leased lines, partner interconnections, routing, DNS, and failover paths. /p /lilipManage FortiGate-based services, including IPsec and SSL VPNs, security policies, virtual IPs/servers, NAT, routing, and log analysis. /p /lilipBuild and maintain end-to-end HTTP/HTTPS and network observability using logs, metrics, dashboards, alerting, synthetic checks, and traffic analysis to identify performance degradation, misconfigurations, and security events early. /p /lilipDrive network and security infrastructure as code using Terraform or similar tools, integrating changes into CI/CD pipelines so they are repeatable, auditable, tested, and secure across environments. /p /lilipAutomate network and edge-security workflows such as site onboarding and decommissioning, rule and policy lifecycle management, partner connectivity, configuration validation, and controlled WAF-provider failovers. /p /lilipLead and actively participate in incident response for network, connectivity, WAF, and edge-security events; execute DR procedures, coordinate controlled failovers, and drive postmortems and remediation actions. /p /lilipPartner with Information Security and Compliance to ensure network and edge controls support regulatory and industry requirements, including PCI and SOX, and provide audit-ready evidence when needed. /p /lilipMaintain clear, actionable documentation for architectures, traffic flows, standards, operational procedures, and runbooks so other engineering teams can move quickly and safely. /p /li /ulh3What we need you to have /h3ullipSolid hands-on experience designing, operating, and troubleshooting cloud networking in production environments with high availability and security requirements. /p /lilipStrong knowledge of TCP/IP, HTTP/HTTPS, TLS, DNS, routing, NAT, load balancing, proxies, VPN/IPsec, and network troubleshooting practices. /p /lilipPractical experience with AWS networking services, including VPC, subnets, route tables, Route 53, load balancers, Transit Gateway, VPC peering, security groups, Network ACLs, and AWS Network Firewall. /p /lilipHands-on experience managing WAFs and/or edge-security controls protecting web applications and APIs; experience in multi-provider environments is a plus. /p /lilipExperience managing firewalls, ideally FortiGate, including VPNs, security policies, virtual IPs, routing, and log analysis. /p /lilipExperience with Infrastructure as Code and automation tools such as Terraform, CloudFormation, Ansible, or similar, and the ability to integrate infrastructure changes into CI/CD workflows. /p /lilipExperience with monitoring and observability platforms such as ELK, New Relic, Coralogix, or similar; ability to build actionable dashboards and alerts for latency, errors, throughput, availability, and anomalous traffic patterns. /p /lilipLinux administration fundamentals and practical command-line troubleshooting skills. /p /lilipExperience with HTTP/TCP proxies and reverse proxies, such as NGINX, HAProxy, or Squid. /p /lilipStrong understanding of cloud-security best practices, network segmentation, least privilege, and secure change-management practices. /p /lilipStrong written and spoken English, with the ability to document technical decisions and collaborate effectively across Networking, Security, Platform, Product, and external partn /p /li /ulh3Would be awesome if you had /h3ullipExperience with AWS, GCP, Azure, or multi-cloud networking and security architectures. /p /lilipExposure to PCI-DSS, SOX, or other regulated-industry security and compliance requirements. /p /lilipExperience operating in high-criticality environments such as payments, fintech, banking, or global e-commerce, where uptime, resilience, and latency are essential. /p /lilipExperience designing disaster-recovery strategies, multi-provider WAF failover, or zero-trust network architectures. /p /lilipAWS certifications such as AWS Certified Advanced Networking – Specialty, Solutions Architect, Security – Specialty, or DevOps Engineer. /p /li /ul pstrongWhat do we offer? /strong /ppBesides the tailored benefits we have for each country, dLocal will help you thrive and go that extra mile by offering you: /pp- Flexibility: we have flexible schedules and we are driven by performance. /pp- Fintech industry: work in a dynamic and ever-evolving environment, with plenty to build and boost your creativity. /pp- Referral bonus program: our internal talents are the best recruiters - refer someone ideal for a role and get rewarded. /pp- Social budget: you'll get a monthly budget to chill out with your team (in person or remotely) and deepen your connections! /pp- dLocal Houses: want to rent a house to spend one week anywhere in the world coworking with your team? We’ve got your back! /ppbFlexibility in how you work: /bWe focus on impact and productivity over fixed hours. This means our teams have flexible schedules and, depending on your role and location, you will combine self‑managed focus time with moments of in‑person connection in our collaboration hubs. /ppbWhat happens after you apply? /b /ppOur Talent Acquisition team is invested in creating the best candidate experience possible, so don’t worry, you will definitely hear from us. We will review your CV and keep you posted by email at every step of the process! /ppAlso, you can check out our webpage, Linkedin and Youtube for more about dLocal! /p /p #J-18808-Ljbffr