Назад
Company hidden
4 дня назад

Senior Staff Security Engineer (FinTech)

224 000 - 300 000$
Формат работы
hybrid
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Senior Staff Security Engineer (FinTech): Building and strengthening product, infrastructure, and cloud security for Ripple Treasury with an accent on threat modeling, secure software delivery, and multi-cloud architecture. Focus on designing zero-trust controls, automating DevSecOps safeguards, and solving complex security challenges across financial and crypto infrastructure.

Location: Hybrid work with in-office collaboration expected 10+ days per month; the salary range applies to positions based in New York.

Salary: $224,000–$300,000 USD annual base salary for positions based in New York, excluding equity, bonuses, and commissions.

Company

hirify.global builds crypto-based financial solutions for institutions, businesses, governments, and developers to improve the global financial system.

What you will do

  • Own the security posture of hirify.global Treasury products and infrastructure from assessment through remediation and continuous improvement.
  • Lead threat modeling, security architecture reviews, and senior-level architecture decisions across Treasury offerings.
  • Define secure SDLC guardrails, CI/CD integrations, developer guidance, and automated security controls.
  • Drive Azure and AWS security architecture, including IAM, network segmentation, encryption, zero-trust controls, Kubernetes policies, DDoS protection, and WAF strategy.
  • Manage vulnerability discovery and remediation through assessments, penetration testing, bug bounty programs, and developer self-service.
  • Build the Security Champions program and mentor Security Engineers across Treasury Engineering.

Requirements

  • 10+ years of Security Engineering experience across Product Security and Infrastructure Security.
  • Expertise in threat modeling, security architecture, OWASP Top 10, API security, authentication, authorization, and secure SDLC practices.
  • Deep cloud security experience with Azure, AWS, and/or GCP, including IAM, network security, secrets management, containers, Kubernetes, and infrastructure as code.
  • Hands-on experience with DevSecOps tooling, static and dynamic analysis, software composition analysis, secrets and container scanning, and CI/CD security integration.
  • Strong software engineering skills in Python, Go, or an equivalent language for building security tooling and automating controls.
  • Experience with cryptography and key management, including HSMs, MPC, PKI, and key rotation.

Nice to have

  • Background in FinTech, crypto, blockchain, or other high-stakes financial environments.
  • Experience with security architecture or security engineering leadership.

Culture & Benefits

  • In-office collaboration, with managers and teams deciding which 10+ days per month require office attendance.
  • Professional development budget and access to learning opportunities.
  • Competitive salary, bonuses, equity, healthcare, retirement, family support, and mobile phone stipend.
  • R&R days, flexible vacation, wellness reimbursement, parental leave, and family planning benefits.
  • Team offsites, bonding activities, catered lunches, stocked kitchens, and regular company-wide meetings.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →