
201 - 500 employees
Founded 2014
💳 Fintech
☁️ SaaS
🤝 B2B
Fintech • SaaS • B2B
U. S. Financial Technology is the largest and most technologically advanced mortgage securitization platform in the U. S. , operating the Common Securitization Platform for Fannie Mae and Freddie Mac. It manages issuance and administration of Single-Family Mortgage-Backed Securities (SF MBS / UMBS), centrally houses loan- and pool-level data in a 100% cloud-based platform, and provides near real-time reporting, analytics, and operational services to support lenders, GSEs, and investors. The company emphasizes data management, risk and cybersecurity, and enabling liquidity in the primary mortgage market to facilitate home purchases and refinances.
🕒 June 12
🇺🇸 United States – Remote
💵 $156.5k - $181k / year
⏰ Full Time
🟠 Senior
👮♂️ Cybersecurity / Security Engineer
👻 Ghost score 50%
Improve your chances of getting an interview by checking your resume score before you apply.

201 - 500 employees
Founded 2014
💳 Fintech
☁️ SaaS
🤝 B2B
Fintech • SaaS • B2B
U. S. Financial Technology is the largest and most technologically advanced mortgage securitization platform in the U. S. , operating the Common Securitization Platform for Fannie Mae and Freddie Mac. It manages issuance and administration of Single-Family Mortgage-Backed Securities (SF MBS / UMBS), centrally houses loan- and pool-level data in a 100% cloud-based platform, and provides near real-time reporting, analytics, and operational services to support lenders, GSEs, and investors. The company emphasizes data management, risk and cybersecurity, and enabling liquidity in the primary mortgage market to facilitate home purchases and refinances.
• Act as a subject matter expert for all Vulnerability and Configuration Management programs, processes, and tooling • Conduct comprehensive vulnerability assessments using Wiz and Tenable • Identify weaknesses in U.S. FinTech’s IT infrastructure • Communicate findings through reports and meetings to prioritize vulnerability remediation • Track, prioritize, and ensure remediation of vulnerability and compliance issues • Continuously monitor infrastructure for vulnerability and compliance issues • Improve monitors, scans, dashboards, and reporting • Configure, tune, and maintain vulnerability management tools • Collaborate with Security Architecture on new builds, businesses, technologies, and environments • Build security baselines for CIS, DISA STIG, and custom baselines • Correlate vulnerabilities with threat intelligence to assess exploitability and risk • Work with the Cyber Security Operations Center to ensure mitigations are in place • Provide detailed risk assessments for discovered vulnerabilities • Enforce remediation timelines according to standard operating procedures • Collaborate with IT and DevOps teams to ensure timely remediation • Conduct regular and ad-hoc vulnerability scans • Integrate tools with all cloud environments and ensure complete IT-environment coverage • Ensure alignment with internal security policies, regulatory requirements, and industry best practices • Support audits and assessments with evidence and documentation • Liaise between security, IT, development, and risk teams • Provide actionable recommendations to technical and non-technical audiences • Mentor and train junior VCM analysts • Identify gaps in vulnerability or compliance management programs and propose improvements • Develop and maintain SOPs, frameworks, job aids, and how-to materials
• Bachelor's Degree or equivalent required • BA/BS degree in Computer Science, Information Systems, Cyber Security or a related technical field • Minimum of 7 years of experience with security engineering and operations, managing and supporting large, complex mission-critical systems, vulnerability management tools, patching processes and tools, VM operation/workflow, or configuration/Baseline/File-integrity monitoring applications and processes • Must be authorized to work in the US without requiring employer sponsorship currently or in the future • AWS Cloud experience required • Subject matter expertise in vulnerability and compliance management • Familiarity with current security vulnerabilities, advisories, incidents, penetration techniques, attacks, and countermeasures • Strong understanding of AI Models, technologies, attack paths, vulnerabilities, and securing AI tools or technologies • Experience leveraging AI models to identify, research, or remediate vulnerabilities • Subject matter expertise in network and system vulnerabilities, malware, networking protocols, multi-tiered applications, and attack methods • Experience in a senior technical security role, including network security, operating system security, Internet or Web security, and vulnerability testing • Strong knowledge of TCP/IP, basic packet analysis, network engineering, and LAN/WAN technologies and topologies • Experience conducting comprehensive vulnerability assessments with Wiz and Tenable • General knowledge and experience with Windows/Linux operating systems, baseline security configurations, audit, forensics, and patch management • Experience developing SOPs, job aids, and hands-on training materials • Ability to work in a fast-paced environment with occasional on-call activities • Excellent interpersonal, presentation, verbal, and written communication skills • Ability to manage multiple priorities, projects, deliverables, and stakeholders • Ability to influence peers and management and work cross-functionally • Active in the security industry with external networking relationships • AWS Security or AWS Architect certifications desired
• Performance bonus • 401k match • Healthcare coverage • PTO • Broad range of other benefits
Apply Now🕒 June 11
Strategic Security Advisor leveraging deep expertise to develop consultative relationships with customer leaders. Helping organizations mitigate their most critical cybersecurity challenges and optimize security posture.
🕒 June 11
Strategic Security Advisor at GuidePoint Security developing consultative relationships with cybersecurity clients. Leveraging expertise to address security challenges and drive business outcomes in New York City.
🕒 June 9
Lead AI Security Architect at Aimpoint Digital designing secure AI security architectures for enterprise implementations. Transforming risk management in generative AI across various industries.
🕒 June 8
Senior security administrator strengthening identity, endpoint security, and data governance for ZAZZ’s cloud-first enterprise clients. Administering Google Workspace, Entra ID, AWS, Intune, and Defender.
🕒 June 7
Cybersecurity Engineer at Defianx managing security technologies and optimizing cyber defense capabilities across enterprise environments.