





**At Cocos, we believe investing is simple and for everyone!** We pursue our dream of expanding the capital markets by democratizing investment access for all Argentinians. We want people to protect their savings, grow their wealth, and achieve the financial freedom they deserve. We have an outstanding team composed of top professionals in every field, always placing the user at the center of everything we do. We have an opportunity for you! We are currently seeking a **Application Security Engineer** for our **IT** team. The role’s objective is to ensure the security of our applications throughout their entire lifecycle, working closely with Product and Development teams to identify risks, prevent vulnerabilities, and elevate the security standard of our solutions. **What will you do on a day-to-day basis?** * Support development teams in identifying and mitigating vulnerabilities in web and mobile applications. * Participate in security code reviews and solution design reviews. * Implement and maintain AppSec tools such as SAST, DAST, SCA, and dependency analysis. * Analyze and prioritize security findings, collaborating with teams to ensure proper remediation. * Define and promote secure development practices (e.g., OWASP, secure coding). * Collaborate on penetration tests, bug bounty programs, or external audits, and follow up on results. * Participate in defining security controls within CI/CD pipelines. * Document security standards, guidelines, and procedures applicable to development. * Contribute to security awareness initiatives across teams. **What do we expect from you?** * More than 4 years of experience in Application Security, AppSec, Security Engineering, or similar roles. * Experience in web and mobile application security. * Solid knowledge of OWASP, secure coding, and threat modeling. * Experience with SAST, DAST, and SCA tools, and experience working with CI/CD pipelines. * Understanding of REST APIs, authentication and authorization (OAuth2, JWT, OpenID). * Ability to read and understand code (we’re not looking for a developer, but do require technical judgment). * General knowledge of cloud security (AWS/GCP/Azure) as applied to applications. **What’s it like to work at Cocos?** * We are a fintech that doesn’t believe in limits—we set ambitious goals and constantly strive to surpass them. * We learn on the move: we’re curious, agile, and love experimenting and improving. * We value every voice and idea, believing there’s always something new to learn. * We have a talented, friendly, and motivated team eager to build transformative things. * Our culture places financial education, innovation, and collaboration at the heart of everything we do. * And we aim not only to grow as a company, but also to foster the growth of every person on our team.


