Назад
Company hidden
2 дня назад

Staff Security Engineer (Fintech)

Формат работы
hybrid
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
France
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Staff Security Engineer (Fintech): Building scalable security capabilities and privacy architecture for products, data, APIs, and the engineering platform with an accent on application security, access control, cryptographic data isolation, and privacy-preserving systems. Focus on designing attack-resilient architectures, limiting the blast radius of compromised accounts and services, and shipping security controls directly into production code.

Location: Paris, France; hybrid workplace

Company

hirify.global develops products and engineering platforms that handle sensitive and personal data.

What you will do

  • Identify and reduce high-impact security risks across applications, APIs, and internal tools.
  • Strengthen authentication, authorization, IAM, and access-control mechanisms.
  • Improve protection of sensitive and personal data and limit the blast radius of compromised accounts, services, or infrastructure.
  • Improve security monitoring, auditability, and detection of suspicious access patterns.
  • Perform threat modeling and targeted security reviews while partnering directly with Engineering teams.
  • Build reusable security capabilities into the engineering platform and development lifecycle, including data isolation, encryption, tokenisation, and privacy-preserving systems.

Requirements

  • Significant experience building or securing production software and distributed systems.
  • Ability to read and write production code, design systems, and work directly with Engineering teams.
  • Deep security engineering expertise across several areas including Application Security, API Security, IAM, cloud security, cryptography, data security, privacy engineering, threat modeling, or security monitoring.
  • Experience with OAuth2/OIDC, WebAuthn/FIDO2, RBAC/ABAC, privilege management, KMS/HSM, envelope encryption, tokenisation, or secrets management.
  • Strong attacker mindset focused on attack paths, blast radius, least privilege, and systemic security risks rather than compliance alone.

Nice to have

  • Experience with large-scale SaaS or fintech platforms.
  • Experience handling highly sensitive or regulated data and working with multi-tenant architectures.
  • Experience with insider risk, data-loss prevention, or advanced cryptographic and privacy-enhancing technologies.

Culture & Benefits

  • Security requirements are expected to become code rather than documentation wherever possible.
  • Pragmatic prioritisation of immediate high-impact controls, architectural redesigns, and operationally appropriate cryptographic solutions.
  • Close collaboration with Engineering teams to address systemic risks and reduce friction when building secure systems.
  • Focus on enforcing security through the platform rather than through manual processes.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →