Назад
Company hidden
обновлено 4 дня назад

Senior Staff Security Engineer (Fintech)

220 000 - 300 000$
Формат работы
hybrid
Тип работы
fulltime
Грейд
senior/lead
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Senior Staff Security Engineer (Fintech): Leading security architecture and product security strategy for Ripple Treasury with an accent on cloud infrastructure, secure SDLC, and threat modeling. Focus on driving security guardrails, automating defensive controls, and mentoring engineering teams to ensure robust protection for high-stakes financial systems.

Location: Chicago, Illinois, United States; hybrid collaboration with teams coming into the office 10+ days per month.

Annual base salary for Illinois: $220,000–$300,000 USD, excluding equity, bonuses, and commissions.

Company

hirify.global builds crypto solutions for financial institutions, businesses, governments, and developers to improve the global financial system.

What you will do

  • Own the security posture of hirify.global Treasury products and infrastructure from assessment through remediation and continuous maturity improvement.
  • Lead threat modeling, security architecture reviews, and senior-level architecture decisions across Treasury offerings.
  • Define secure software development lifecycle guardrails, CI/CD integrations, and developer guidance.
  • Design cloud security architecture across Azure and AWS, including IAM, network segmentation, encryption, zero trust, Kubernetes traffic policies, DDoS protection, and WAF strategy.
  • Drive vulnerability discovery, penetration testing, bug bounty findings, remediation, and validation with an emphasis on automation and developer self-service.
  • Build a Security Champions model, mentor Security Engineers, and translate emerging FinTech and crypto threats into defensive improvements.

Requirements

  • 10+ years of Security Engineering experience, including Product Security and Infrastructure Security.
  • Expertise in threat modeling, security architecture, OWASP Top 10, API security, authentication and authorization, and secure SDLC practices.
  • Deep cloud security experience across Azure, AWS, and/or GCP, including IAM, network security, secrets management, containers, Kubernetes, and infrastructure as code.
  • Hands-on experience with DevSecOps tooling, static and dynamic analysis, software composition analysis, secrets and container scanning, and CI/CD security integration.
  • Strong software engineering skills in Python, Go, or an equivalent language.
  • Experience with cryptographic principles and key management, including HSMs, MPC, PKI, and key rotation.

Nice to have

  • Background in FinTech, crypto, blockchain, or other high-stakes financial environments.
  • Experience working with systems where security failures can create direct customer or systemic financial impact.

Culture & Benefits

  • Fast-paced startup environment with experienced industry leaders.
  • Professional development budget and opportunities to work with current technologies.
  • Flexible manager- and team-led in-office collaboration for important moments, with 10+ office days per month.
  • Healthcare, retirement, family-forming and family-support benefits, employee giving match, and mobile phone stipend.
  • Vacation, R&R days, wellness reimbursement, parental leave, family planning benefits, catered lunches, and team events.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →