xelys jobs xelys jobs

Security Engineer

Jobgether

full-remoteseniorpermanentsecurity United States 46 days ago via LinkedIn

See how well this job matches your profile

Sign up to get an AI match score and generate a tailored application in seconds.

Get your match score

Tags

Security EngineeringApplication SecurityThreat ModelingSecurity ReviewsSecurity AutomationPenetration TestingSOC 2PCI DSSRisk AssessmentFinTech Security

About the role

Role overview

Security Engineer for a product security function within a fast-scaling payments infrastructure environment. You will help design, review, and continuously improve the security posture of systems processing payments at global scale, embedding security throughout the development lifecycle.

Responsibilities

  • Conduct security reviews and threat modeling for product features and system designs; translate findings into actionable recommendations.
  • Own end-to-end security initiatives from design/planning through implementation and rollout.
  • Build and maintain internal security tooling and automation to streamline review, detection, and remediation workflows.
  • Coordinate penetration testing and ensure timely tracking and resolution of vulnerabilities.
  • Support compliance programs such as SOC 2 and PCI, including evidence gathering, audit preparation, and remediation tracking.
  • Contribute to the Application Security roadmap, including cloud security, supply chain security, AI-related risks, and ASPM.
  • Perform proactive security research and support incident investigation to improve resilience.
  • Partner with Cloud, Infrastructure, and Engineering teams to embed security into daily practices.

Requirements

  • Proven experience in product/application security, including threat modeling and security reviews in production environments.
  • Strong ability to read and write code; hands-on mindset for building security tools/automation.
  • Solid skills in risk evaluation, balancing real-world threats with theoretical vulnerabilities and communicating trade-offs.
  • Experience delivering security projects independently while aligning with technical direction and collaborating with senior engineers.
  • Strong communication skills, especially translating security concepts to non-security engineers.
  • Familiarity with cloud, distributed systems, or modern software architectures (highly beneficial).

Nice to have

  • Exposure to SOC 2 or PCI DSS compliance frameworks.
  • Experience in fintech/payments or other regulated high-security domains.
  • Interest in advanced security topics such as supply chain security, detection engineering, or AI security.

Benefits

  • Remote-first work environment with global flexibility.
  • Competitive share options.
  • 25+ days paid vacation plus uncapped holiday allowance.
  • Co-working access, workations, and annual retreats.
  • Home office support and learning/development budget.
  • Private medical insurance and additional location-based benefits.

About Jobgether

The role is listed via Jobgether on behalf of a partner company building payments infrastructure. The job focuses on hands-on product security within a fast-scaling, globally distributed payments environment, partnering closely with engineering teams across cloud and infrastructure.

Scraped 6/13/2026