Job Opportunities API

The Public Ledger of Openings

← Back to the ledger

Chief Information Security Officer

Nubank
CompanyNubank
CategorySecurity
LocationBogota
RemoteHybrid
EmploymentNot stated
LevelExecutive
SalaryNot stated by the employer
Posted20 Jul 2026
Last verified10 Aug 2026
SourceEmployer ATS (ashby)
Applications are handled by the employer, not by us.Apply on the employer's site →
Description
ABOUT NU Nu is the leading digital bank in Latin America, serving 135 million customers across Brazil, Mexico, and Colombia. The company has been leading an industry transformation by leveraging data and proprietary technology to develop innovative products and services. Guided by its mission to fight complexity and empower people, Nu caters to customers’ complete financial journey, promoting financial access and advancement with responsible lending and transparency. The company is powered by an efficient and scalable business model that combines low cost to serve with growing returns. Nu’s impact has been recognized in multiple awards, including Time 100 Most Influential Companies, Fast Company’s Most Innovative Companies, and Forbes World’s Best Banks. Visit our Institutional Page https://www.nu.com/2026-en OUR CHALLENGE: Technology is not a sector of our business: it's intrinsic to every area at Nubank. We encourage everyone to challenge the status quo. There's no "innovation team" - we hire innovative people for all our positions and encourage them to constantly question decisions to keep finding better ways to do something. Our business is experiencing hyper growth in several dimensions: number of customers, products, international markets and employees., and our engineering team must match that demand. As we grow, we need to: - Relentlessly pursue, indicate and contribute to eradicate threats across complex environments.  - Report and help solving incidents at scale - Work in regulated environments aligning with all the requirements - Communicate clearly with external and internal stakeholders such as regulators, managers, etc..,  - Build solutions that enable faster and more effective incident response.  YOU’LL BE RESPONSIBLE FOR: - Create strong relationships with diverse teams, by coordinating communication between different audiences, teams and stakeholders in english and spanish. - Assess security gaps within the organization, in different technologies and business contexts, enabling risk treatment and designing technical action plans as necessary - Support compliance with regulatory requirements related to cybersecurity providing visibility and technical guidance on strategies for compliance and possible trade-offs based on risk - Working across different technical teams supporting and leading the solution of incidents, issues, regulatory requirements, understanding root cause and improving our security posture by implementing controls and defenses.  - Develop and implement policies and procedures related to information security, physical security, fraud prevention, and cyber risk management - Collaborate with cross-functional teams to understand the business requirements, and translate them into technical specifications and vice-versa - Define guidelines and best practices on business security matters that empower Nubankers to perform their work efficiently and securely - Support other security engineers, motivating and creating continuous learning in a collaborative environment. WE ARE LOOKING FOR A PERSON WHO HAS: - + 8 years of experience in Information & Business Security, Privacy, Risk Management and IT Governance disciplines - An ability to thrive in engineering environments, interacting with technical teams and being able to jump into technical conversations at least with a theoretical knowledge. - Practical knowledge of cloud infrastructure (private or public), microservices and distributed environments. - Solid hands-on experience implementing Technical Controls based upon industry best practices, but also challenging the status quo of current security frameworks. - Experience working in regulated institutions and environments, interacting with external and internal stakeholders. - Knowledge in ISO, PCI, NIST, Mitre ATT&CK and/or CSF frameworks. - Experience with Colombian regulation in special the one related to information security requi