Назад
Company hidden
2 дня назад

Application Security Engineer (Fintech)

175 000 - 215 000$
Формат работы
remote (только USA)
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/

TL;DR

Application Security Engineer (Fintech): Building secure-by-default products and services for an AI-native insurance platform with an accent on threat modeling, automated security guardrails, and secure development practices. Focus on embedding security throughout the SDLC, conducting vulnerability analysis, and ensuring resilience in a highly regulated environment.

Location: Must be based in the U.S. (excluding U.S. territories)

Salary: $175,000 – $215,000

Company

hirify.global is an insurance technology innovation company backed by State Farm, focused on engineering advanced risk prediction and prevention solutions.

What you will do

  • Partner with Product and Engineering teams to integrate security into application design and development.
  • Lead threat modeling exercises and identify practical security solutions for complex systems.
  • Conduct secure code reviews, application security assessments, and vulnerability analysis.
  • Develop and implement automated security guardrails across the SDLC.
  • Investigate, prioritize, and drive remediation of application security findings.
  • Create and maintain security standards, procedures, and best practices that scale across teams.

Requirements

  • Must be based in the U.S. (excluding U.S. territories)
  • 4–6+ years of experience in software engineering, with at least 2 years focused on application security.
  • Knowledge of secure-by-design principles and modern application security practices.
  • Familiarity with OWASP Top 10, ASVS, MASVS, and common application security frameworks.
  • Experience with threat modeling methodologies such as STRIDE or PASTA.
  • Proficiency in at least one programming language and its security ecosystem.

Nice to have

  • Security certifications such as CSSLP, GWEB, or OSWE.
  • Experience in insurance, financial services, or other regulated industries.
  • Familiarity with AI technologies, LLM security, or prompt engineering.
  • Experience with mobile application security or penetration testing.

Culture & Benefits

  • Comprehensive health, dental, and vision insurance, plus 401(k) with company match.
  • Remote-first environment with a $2,000 one-time home office equipment stipend.
  • Four weeks of PTO in the first year and twelve weeks of fully paid parental leave.
  • Up to $5,000 annually for professional learning and career development.
  • Access to LinkedIn Learning, BetterUp coaching, and Headspace subscription.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →