Blip is a leading tech company focused on software engineering solutions for sports entertainment.
We operate at scale. As part of Flutter Entertainment, we play an essential role in the Group's goal of becoming the global leader in online sports betting and iGaming, developing innovative products and platforms for over 14 million monthly customers worldwide.
We are serious about Tech. We are problem-solvers with big ambitions, keeping a people-first mindset at the core of our work. We prioritize flexibility as we strive to deliver the best technological products and tackle the greatest industry challenges.
Recognizing that everyone brings their own strengths, backgrounds and new perspectives, we empower you to be yourself. That uniqueness shapes the culture of belonging we are so proud of.
The role
As a Security Engineer you'll own meaningful security work across threat modeling, penetration testing, architecture reviews, and automation. You'll bring deep expertise in one or more security domains and use it to design solutions, run engagements with real consequence, and guide engineering teams through building securely from the beginning. The problems you take on will sometimes be ambiguous and tangled up with competing product and platform priorities, and you'll be ready to make independent calls on the right approach, balancing short-term risk reduction with fixes that actually stick. You'll partner closely with engineering teams and contribute to the Security Champions community, making sure the lessons from each engagement land somewhere durable: a pattern, a guardrail, an automation, or an architectural standard others can reuse.
What You’ll Be Doing
- Own and deliver on quarterly team goals, taking security problems from ambiguous starting points through to shipped, durable outcomes.
- Run threat modeling and penetration testing engagements, and turn findings into structural improvements rather than one-off fixes.
- Support risk assessments and help translate findings into clear, actionable guidance that engineering teams and stakeholders can act on.
- Contribute to the operation of our HackerOne bug bounty and vulnerability disclosure program, including triage, remediation tracking, and feedback loops.
- Deliver security advisements to engineering teams on design decisions, helping them make the right security call early.
- Support and contribute to the Security Champions program, helping engineers across the business grow their security instincts.
- Build and improve automation that scales the team's work by turning repeatable assessment and review activities into faster, more consistent, build-secure-by-default capabilities.
- Contribute to the data and tooling behind vulnerability and risk management, helping the business track and prioritize risk with confidence.
- Influence priorities, processes, and trade-offs across the teams you partner with, not just within your own.
- Other duties as required.
What You’ll Bring
- Several years of hands-on security engineering experience with deep expertise in at least one security domain such as security architecture, application security, penetration testing, detection engineering, or similar.
- Track record of independently designing and delivering security solutions, not just executing on someone else's plan.
- Familiarity with bug bounty or vulnerability disclosure programs and the triage and remediation workflows that support them.
- Experience contributing to automation or tooling that makes security work faster or more scalable.
- Strong working knowledge of modern cloud infrastructure (AWS, GCP, or Azure), CI/CD pipelines, and software development practices.
- Experience working with and securing enterprise security tools, including collaboration and SaaS tooling
- Proficiency in at least one modern programming language (Python, Go, JavaScript, Java, or similar).
- Familiarity with industry frameworks such as NIST, ISO 27001, OWASP, or MITRE ATT&CK.
- Ability to influence priorities and decisions across team boundaries and communicate security risk clearly to technical and non-technical audiences.
- Excellent written and verbal communication skills (English and Portuguese).
This is what you should have. What do we have, you ask? Well...you can check our amazing perks & benefits right here !
So ... are you in?
Equal opportunities
At Blip, we are committed to creating a diverse and inclusive workplace. We strongly encourage people from all backgrounds, ways of thinking, and working to apply.
We are committed to including everyone regardless of their race, disability, age, gender identity, sexual orientation, and religion.
Everyone brings different perspectives and experiences; you don’t have to meet all the requirements listed to apply for this role. If you need any adjustments to apply for the position and to ensure this role aligns with your needs, please send an email to [email protected]
We will only respond to inquiries related to disabilities.
