Logo for R2 Companies

Cloud Security Engineer (LatAm Only)

Role overview

Qualifications

  • 3–5 years of experience in cloud security, DevSecOps or a similar role
  • Hands-on experience with CSPM/CNAPP/DSPM platforms (Wiz, Prisma Cloud, Orca or equivalent)
  • Strong AWS security knowledge (IAM, KMS, Secrets Manager, Security Hub, GuardDuty, Inspector)
  • Scripting ability (Python, Bash; Go a plus) for security automation via APIs

Responsibilities

  • Operate and improve CSPM, CNAPP and DSPM tooling across R2’s AWS footprint
  • Implement and harden IAM controls, encryption, secrets management and data protection across AWS accounts
  • Integrate security controls into CI/CD pipelines (GitHub Actions, GitLab CI) — SAST/SCA/IaC scanning
  • Manage and harden network security controls — WAF rule sets, security groups, NACLs, and network segmentation across VPCs

Key facts

Hard skills

About the company

R2 Companies logo

R2 Companies

Real Estate Development & Management

The R2 platform is designed to programmatically manage the real estate investment process from end-to-end: R2 casts a wide net to originate and underwrite the very best investment opportunities, act decisively when an attractive risk-adjusted investment presents itself, and execute a disciplined plan to create sustainable value. R2 is an opportunistic firm that invests its own capital alongside a select group of institutional partners, making it an active and highly vested manager and operator. R2 currently owns and operates more than 6 million square feet of commercial real estate in Chicago, Austin, Nashville, Minneapolis & Milwaukee and has a multi-year track record of realizing superior risk-adjusted returns utilizing various investment strategies across market cycles. The R2 platform is designed to be nimble, able to quickly and deftly shift strategies and allocations in response to changing market conditions. The R2 team is a group of knowledgeable and motivated principals with experience in acquisitions, capital markets, development, leasing, and asset, property, and construction management. With this array of core competencies, R2 can directly control the success variables in any given investment. For more information, visit R2.me.

Company details

IndustryReal Estate Development & Management
Company size11 - 50

Your match analysis

See how your profile stacks up against this role.

We compared the job requirements to your profile to show where you're strong and where you fall short.

Job description

At R2, we believe that small and medium businesses are the productive engine of society. Small and medium businesses (SMBs) make up over 90% of companies in Latin America, yet they face a trillion-dollar credit gap. Our mission is to unlock SMBs’ potential by providing financial solutions tailored to their needs. We are reimagining the financial infrastructure of Latin America, where SMBs’ financial needs are met without ever having to go to a bank.


R2 enables platforms across Latin America to embed financial services that SMBs can leverage, starting with revenue-based financing. We are a high-performing, close-knit team with talent from organizations such as Google, Amazon, Nubank, Uber, Capital One, Mercado Libre, Globant, and J.P. Morgan. 


We are entering a new phase of growth following a strategic investment from Ant International, focused on rapidly expanding our partner footprint, strengthening our credit and underwriting capabilities, and scaling operations across multiple markets. As part of this growth journey, eligible team members have the opportunity to participate in R2’s Phantom Share Program, a performance-based incentive designed to align our team with the company’s long-term success and value creation. We believe in building a culture of ownership, where those who help create value share meaningfully in it.


R2 is scaling quickly, and we're looking for a Cloud Security Engineer (IC3). You will secure R2’s cloud infrastructure and drive the adoption of DevSecOps practices across engineering. You’ll report to the Director of Infrastructure and work closely with our Security, Infrastructure and Platform Engineering teams. We’re looking for someone proactive, detail-oriented, and passionate about technology.

What You'll Do

  • Cloud Security Posture
    • Operate and improve CSPM, CNAPP and DSPM tooling across R2’s AWS footprint
    • Identify, prioritize, triage and track remediation of cloud security findings end-to-end
    • Ensure zero open high-severity findings older than 30 days
  • IAM, Secrets & Data Protection
    • Implement and harden IAM controls, encryption, secrets management and data protection across AWS accounts
    • Own secrets rotation and access review processes for production systems
  • DevSecOps & Automation
    • Integrate security controls into CI/CD pipelines (GitHub Actions, GitLab CI) — SAST/SCA/IaC scanning with blocking criteria for high-severity findings
    • Automate security processes via scripting (Python/Bash/Go), APIs and Terraform/IaC
  • Network & Perimeter Security
    • Manage and harden network security controls — WAF rule sets, security groups, NACLs, and network segmentation across VPCs
    • Tune and maintain AWS WAF rate-limiting thresholds and manage rule groups against scanning and malicious traffic
    • Enforce least-privilege network access across accounts and environments
  • GenAI & Agent Security
  • Contribute to securing R2’s GenAI applications, RAG architectures, agents, APIs, connectors and MCP servers
  • Design and build internal AI/LLM-based security agents to automate threat detection, finding triage, and incident response.
  • Define controls against data leakage, improper access, prompt injection and unsafe tool use by autonomous agents
  • SOC & Detection
    • Collaborate with the SOC on alert integration and use-case development in SIEM
  • Cross-functional
  • Build and maintain security documentation, runbooks and standards
  • Support incident response, root cause analysis and remediation across production environments

Who You Are

  • 3–5 years of experience in cloud security, DevSecOps or a similar role
  • Hands-on experience with CSPM/CNAPP/DSPM platforms (Wiz, Prisma Cloud, Orca or equivalent)
  • Strong AWS security knowledge (IAM, KMS, Secrets Manager, Security Hub, GuardDuty, Inspector)
  • Experience embedding security into CI/CD pipelines and Infrastructure as Code (Terraform)
  • Scripting ability (Python, Bash; Go a plus) for security automation via APIs
  • Familiarity with Kubernetes/EKS and container security
  • Experience hardening network security controls (WAF, security groups, NACLs, VPC segmentation)
  • Understanding of GenAI/LLM security risks (prompt injection, agentic tool misuse, data leakage)
  • English proficiency — written and spoken (required)

Nice to Have

  • AWS Certified Security – Specialty
  • Experience with SIEM/SOAR platforms
  • Familiarity with ISO 27001, SOC 2, or similar compliance frameworks
  • Fintech or regulated-industry experience

What We Offer

  • The chance to join a high-impact, mission-driven fintech.
  • Ownership and impact in a fast-paced, growth-oriented startup.
  • Cross-functional collaboration with exceptional teams.
  • Exposure to complex regulatory challenges and innovation in embedded finance.


Locations: Buenos Aires, São Paulo, Bogotá, Santiago

Apply once. Then go straight to the hiring manager.

After you apply, unlock the direct contact details of the people who actually make the call. A quick follow-up makes you 5x more likely to land an interview.

MR

Marcus Rivera

Chief Revenue Officer

m.rivera@company.com
linkedin.com/in/marcusrivera
Unlocked after you apply
·

Cloud Security Engineer Related jobs

Other jobs at R2 Companies

Premium

Reach out to the hiring manager directly.

Gain access to the contact details of the hiring managers who actually decide, and reach out to network with them directly. That, plus more when you upgrade:

  • Full match report with fit score and gaps
  • Career diagnostics on how recruiters read you
  • Curated company matches and warm intros
  • 48h early access to new roles

Cancel anytime.