Staff Security Engineer

đź•’ August 6

🇺🇸 United States – Remote

đź’µ $160k - $195k / year

⏰ Full Time

đź”´ Lead

👮‍♂️ Cybersecurity / Security Engineer

🦅 H1B Visa Sponsor

infoinfo

đź‘» Ghost score 14%

infoinfo
Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of Beyond Finance

Beyond Finance

1001 - 5000 employees

đź’¸ Finance

đź’ł Fintech

👥 B2C

đź’° $110M Debt Financing on 2021-02

Finance • Fintech • B2C

Beyond Finance is a financial services company that offers debt consolidation and management solutions to help individuals move beyond debt. They provide personalized options to reduce fees and interest, and aim to cut monthly payments for enrolled debts by 40% or more. Beyond Finance assists clients through a structured program designed to eliminate debt typically within 24 to 48 months, utilizing an easy-to-use mobile app for program management. Despite the potential impacts on credit scores, their services have positively impacted over 700,000 clients, offering consolidation loans ranging from $1,000 to $100,000. They also focus on customer satisfaction, receiving high ratings on platforms such as Trustpilot.

đź“‹ Description

• Serve as the security technical authority across projects and domains, from design through post-incident response • Raise security architecture, process, and technical decision standards across the department • Partner with engineering and DevOps during design and sprint planning to address risk proactively • Build and maintain secure development and secure-infrastructure standards, playbooks, and enablement materials • Guide secure design, threat modeling, and code review for web and mobile applications • Manage and improve application security tooling, including SAST, SCA, secret scanning, DAST, ASM, and mobile security tools • Triage application vulnerabilities and drive remediation with engineering teams • Contribute to AWS cloud security posture, including IAM, network segmentation, containers, secrets, and data exposure • Establish Terraform secure defaults through reusable modules, guardrails, and policy as code with DevOps • Operate and tune WAF rules, rate limiting, and bot mitigation • Contribute to vulnerability management through intake, prioritization, SLA tracking, and remediation • Build Python security automation and internal tooling for ingestion, deduplication, prioritization, and developer workflows • Build and operate security log pipelines and tune SIEM detections and alerts • Deploy and tune endpoint security controls • Integrate the security stack through APIs and connective code • Partner with DevOps to harden CI/CD pipelines and embed security checks, secrets detection, scanning, and policy-as-code gates

🎯 Requirements

• 10+ years of hands-on security engineering experience • Deep, demonstrable ownership of application security, cloud security, or security automation and tooling, with working proficiency across the other two domains • Application security knowledge including secure coding practices, OWASP Top 10, SAST/DAST/ASM tooling, and secure SDLC • Cloud security experience in AWS, including IAM, networking, container orchestration, logging and audit, CNAPP posture management, and vulnerability management at scale • Security automation and tooling experience building custom tooling and log pipelines primarily in Python, SIEM onboarding and detection engineering, and endpoint security across a mixed fleet • Working knowledge of OWASP Top 10 and threat modeling • Hands-on Infrastructure as Code experience with Terraform • Ability to operate independently and drive projects without day-to-day oversight • Nice to have: PCI-regulated or financial services environment experience • Nice to have: mobile application security experience • Nice to have: AI/ML security exposure, including prompt injection, data poisoning, model abuse, and mitigating controls • Nice to have: identity security across human and non-human identities • Nice to have: development experience with Ruby on Rails, Python, Go, or similar languages

🏖️ Benefits

• Competitive compensation • Considerable employer contributions for health, dental, and vision programs • Generous PTO, paid holidays, and paid parental leave • 401(k) matching program • Merit advancement opportunities • Career development & training • Uplifting, collaborative work environment • Community, connection, and belonging across the organization

Apply Now

Similar Jobs

đź•’ August 5

Snowflake

5001 - 10000

đź’Ľ Consulting

📣 Marketing

Staff Security Engineer building AI-powered threat detections and response workflows at Snowflake, a cloud data platform. Improving detection coverage, automation, and security analytics at global scale.

đź•’ August 5

Zcash Open Development Lab (ZODL)

11 - 50

₿ Crypto

đź’ł Fintech

Director of Security protecting Zcash wallets, protocols, and cryptographic infrastructure at ZODL. Leading incident response, audits, security policy, and proactive vulnerability mitigation across a distributed global team.

🇺🇸 United States – Remote

đź’µ $185k - $230k / year

⏰ Full Time

đź”´ Lead

👮‍♂️ Cybersecurity / Security Engineer

đź•’ August 5

Gainwell Technologies

10,000+ employees

đź’Ľ Consulting

📦 Logistics

⚕️ Healthcare Insurance

Information Security Officer leading security governance, audits, risks, and compliance for Gainwell’s healthcare technology services. Managing incidents, remediation, security plans, and contractual reporting remotely across the US.

🇺🇸 United States – Remote

đź’µ $101.3k - $144.7k / year

đź’° Grant on 2023-06

⏰ Full Time

đźź  Senior

đź”´ Lead

👮‍♂️ Cybersecurity / Security Engineer

🦅 H1B Visa Sponsor

infoinfo

đź•’ August 4

Tremendous

51 - 200

đź’Ľ Consulting

📣 Marketing

📦 Logistics

Head of Security owning cybersecurity for Tremendous, a global business payouts platform. Building security posture, incident response, AI risk controls, and the future security team.

đź•’ August 4

Cotiviti

5001 - 10000

🏥 Healthcare

đź’Ľ Consulting

📦 Logistics

FedRAMP Information Systems Security Manager sustaining authorization and continuous compliance for Cotiviti’s cloud systems serving U.S. government healthcare customers. Leading security documentation, assessments, monitoring, and audit readiness.

🇺🇸 United States – Remote

đź’µ $135k - $155k / year

⏰ Full Time

đźź  Senior

đź”´ Lead

👮‍♂️ Cybersecurity / Security Engineer

🦅 H1B Visa Sponsor

infoinfo