Search Remote Jobs

Security and Threat Operations Engineer

🔥 12 hours ago

🇺🇸 United States – Remote

💵 $140k - $190k / year

⏰ Full Time

🟡 Mid-level

🟠 Senior

👮‍♂️ Cybersecurity / Security Engineer

🦅 H1B Visa Sponsor

infoinfo

👻 Ghost score 0%

infoinfo
Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of OnePay

OnePay

501 - 1000 employees

💳 Fintech

🏦 Banking

₿ Crypto

💰 $300M Series unknown on 2025-01

Fintech • Banking • Crypto

OnePay is a U. S. -based financial technology company that provides consumer-facing banking and payment products through partner banks. The app offers checking/savings with early pay and high-yield savings, a credit-builder program and secured Builder Mastercard, a CashRewards card with Walmart-focused cashback, investing and cryptocurrency trading, a digital wallet, pay-later options, and free tax filing for customers. OnePay partners with Coastal Community Bank, Lead Bank, Synchrony, and other providers for banking, card issuance, lending, and custody services; it is not itself a bank.

📋 Description

• Build and tune detections, alerts, and monitoring workflows across cloud, application, identity, and edge environments • Review API, authentication-flow, and WAF traffic patterns to identify malicious activity, abuse patterns, and anomalous behavior • Use AI for triage, analysis, and workflow automation while helping define guardrails for AI-enabled systems • Operate the vulnerability management program by triaging, prioritizing, and driving remediation of findings from Wiz and vulnerability scanning • Develop Python-based tooling and automation for investigations, enrichment, response, and operational scale • Partner with Product Security to translate threat models, security reviews, and product risks into production detections and response playbooks • Investigate security events end to end, including triage, scoping, containment support, and remediation follow-through • Support vulnerability management and operational security practices aligned with PCI and SOC 2 expectations • Participate in proactive threat hunting, detection improvement, and a 24x7 security incident response on-call rotation

🎯 Requirements

• 5+ years of experience in information security, threat detection, security operations, detection engineering, or incident response • Strong experience investigating suspicious activity in web, API, authentication, and infrastructure telemetry • Ability to distinguish attacker behavior from normal production noise • Experience identifying malicious activity, fraud, account abuse, credential attacks, reconnaissance, and exploitation attempts • Strong Python programming skills • Experience building and tuning detections in a SIEM or detection platform • Experience with observability and logging systems such as CloudWatch, Datadog, or similar platforms • Experience operating or supporting a vulnerability management program • Familiarity with Wiz, including CNAPP, runtime, code, and vulnerability scanning use cases • Experience with at least one major cloud provider, preferably AWS • Working knowledge of identity and access systems and modern authentication flows • Understanding of security implications of internet-facing applications and APIs • Strong understanding of threat modeling, risk prioritization, and practical security controls • Practical experience using AI tools in security workflows • Judgment regarding AI risks including prompt injection, data leakage, excessive tool access, and weak auditability • Excellent analytical, communication, and cross-functional collaboration skills • United States work authorization required • Must disclose whether immigration sponsorship is required

🏖️ Benefits

• Stock options • Health benefits from Day 1 • 401(k) plan with company match • Remote-friendly (US) • Flexible time off (FTO) • Opportunities for growth • Inclusive, mission-driven culture • AI-assisted initial screen and interview process

Apply Now

Similar Jobs

🔥 12 hours ago

Halcyon

51 - 200

🔒 Cybersecurity

☁️ SaaS

🏢 Enterprise

Senior Information Security Specialist advancing Halcyon’s ransomware-defense cybersecurity and GRC programs. Managing third-party risk, compliance controls, security testing, and incident preparedness.

🔥 13 hours ago

MRO

1001 - 5000

🏥 Healthcare

☁️ SaaS

📋 Compliance

Information security advisor managing HITRUST and SOC 2 assurance for MRO. Driving Vanta-based audits, risk management, incident response, and compliance readiness.

🔥 13 hours ago

Optiv

1001 - 5000

Optiv cybersecurity advisor designing threat management solutions for client security programs. Driving security services sales, client strategy, and scalable defensive architectures.

🔥 13 hours ago

Accenture Federal Services

10,000+ employees

💼 Consulting

🎖️ Defense

📦 Logistics

Security Engineer managing vulnerability assessments, remediation, and ATO readiness. Supporting Accenture Federal Services’ mission to strengthen US federal government technology and security.

🔥 14 hours ago

FAR.AI

11 - 50

🤖 Artificial Intelligence

📚 Education

🤝 Non-profit

IT & Security Manager securing systems, devices, identity, and networks for FAR.AI, a nonprofit AI safety research institute. Building scalable internal IT and security operations.