
201 - 500 employees
đł Fintech
âïž SaaS
đ API
Fintech âą SaaS âą API
Solidgate is a fintech SaaS platform that provides payment orchestration and global payment infrastructure for merchants and businesses. It offers hosted payment pages and APIs, intelligent routing, connectors to dozens of payment providers and alternative payment methods, acquiring, billing and subscription engines, antifraud and chargeback representment tools, and treasury/business accounts to move and receive funds. Solidgate focuses on helping businesses launch and scale global commerce with enterprise-grade security, multi-region availability, and developer-friendly integrations.
đ June 2
đȘđș Europe â Remote
â° Full Time
đĄ Mid-level
đ Senior
đĄïž Security Operations
đ» Ghost score 20%
Improve your chances of getting an interview by checking your resume score before you apply.

201 - 500 employees
đł Fintech
âïž SaaS
đ API
Fintech âą SaaS âą API
Solidgate is a fintech SaaS platform that provides payment orchestration and global payment infrastructure for merchants and businesses. It offers hosted payment pages and APIs, intelligent routing, connectors to dozens of payment providers and alternative payment methods, acquiring, billing and subscription engines, antifraud and chargeback representment tools, and treasury/business accounts to move and receive funds. Solidgate focuses on helping businesses launch and scale global commerce with enterprise-grade security, multi-region availability, and developer-friendly integrations.
âą Build and operationalize the SIEM from PoC to production - including case management and UEBA, with full ownership of the technology selection âą Design, write, and tune detection rules mapped to MITRE ATT&CK, covering identity compromise, privilege escalation, lateral movement, and endpoint threats âą Triage and investigate L2/L3 alerts, reduce false positives, and establish clear escalation paths for each use case âą Lead incident response and basic forensics - containment, eradication, and structured lessons learned âą Onboard log sources across AWS, JumpCloud, Google Workspace, CDE, and SWIFT; âą Run threat hunts based on realistic attack hypotheses specific to a payment platform's risk profile âą Build and maintain runbooks and playbooks; automate repetitive actions via SOAR or scripting âą Define SOC metrics and own monthly reporting to management on detection coverage and response performance
âą 3+ years in SOC / Detection & Response at L2/L3 level, with hands-on investigation experience âą Practical experience building or operating a SIEM, including writing and tuning detection rules âą Detection engineering with MITRE ATT&CK mapping; confident with KQL, SPL, or equivalent query languages âą Experience investigating cloud log sources: AWS CloudTrail, GuardDuty, Google Workspace, EDR/XDR âą Scripting and automation skills (Python or similar) for telemetry processing and routine tasks âą Solid understanding of attacker techniques and how they manifest in logs - not just tool knowledge, but threat understanding âą Structured under pressure: disciplined investigation process, clear documentation, clean post-mortems âą SOAR experience and a detection-as-code approach (version control for rules, CI pipelines for detection) âą UEBA, threat intelligence enrichment, or alert contextualization at scale âą Familiarity with payment-specific environments - CDE monitoring, SWIFT, PCI DSS context âą Purple teaming experience working alongside an offensive security team
âą 30+ days off âą Unlimited sick leave âą Free office meals âą Health coverage âą Apple gear to keep you productive âą Courses, conferences, sports and wellness benefits
Apply Now