Remote Dev Jobs

27 jobs available

100% Remote8ms
-
Active filters:
EP

Empower Professionals · 🇺🇸 United StatesRemote1d ago

Role: Cloud Engineer Location: 100 percent remote but Jersey city or NYC preferred Contract: 3 month extendable W2 role Must have: Cloud, Azure, vulnerability management (they need to do actual remediation and troubleshooting) , terraform, and Virtual Machines Nice to have: Google Cloud Platform They want cloud engineers with infra learning, NOT devops with cloud. The reason why so many candidates have been ruled out is because of that reason. Most important pieces are the azure and vulnerabili…

CM

Computer Merchant, Ltd., The · 🇺🇸 United StatesRemote1w ago

JOB TITLE: Network Security Engineer JOB LOCATION: Remote WAGE RANGE*: $50-$53 JOB NUMBER: 25-03828 JOB DESCRIPTION: Strong network engineering background (routing/switching, VLANs, firewalls, NAC/802.1X, traffic flow understanding). Security fundamentals including vulnerability management, identity integrations, endpoint visibility, log sources, and interpreting security events. Experience with asset inventory tools or security platforms (SIEM, EDR, CMDB, scanners, or agentless discovery tools…

KT

Kforce Technology Staffing · 🇺🇸 United StatesRemote2w ago

RESPONSIBILITIES: Kforce has a client that is seeking a Senior Software Engineer. This role is Remote. Summary: We are seeking experienced Software Engineers to support enterprise vulnerability remediation and API/security governance initiatives. These roles will focus on modernizing and securing applications, addressing vulnerabilities, developing and supporting APIs, and working within a modern microservices and containerized environment. Key Responsibilities: * Design, develop, enhance, and …

A

AbnormalRemote2w ago

Headquarters: Remote - USA About the Role Abnormal AI is looking for an Application Security Engineer II to secure the AI-powered systems at the core of our AWS-based platform (LLM-integrated features, agentic workflows, MCP connectors, and the model supply chain) against threats like prompt injection at production scale. This is an individual contributor role that blends deep application security expertise with strong engineering fundamentals. You'll focus on integrating security into every phase of our software development lifecycle, conducting comprehensive security reviews, and partnering with engineering teams to build defensible architectures. You will own the security architecture and development of secure coding practices while ensuring security is a foundational partner to our engineering stakeholders. You'll coach developers across the engineering organization on application security principles, act as a technical liaison across teams, and contribute directly to keeping our applications and customers secure. This role reports to the Director of Security Engineering. What you will do Lead threat modeling and security architecture reviews with engineering teams by translating security risks into concrete development actions, with particular focus on AI-powered features (LLM integrations, agentic workflows, MCP connectors). Architect, build, and maintain security tooling and integrations that make secure development the default in our CI/CD pipelines. Design and deploy automated security testing to identify vulnerabilities early in the development process. Serve as a hands-on technical contributor during security incidents by analyzing application-level behavior and enhancing response processes. Coach developers on secure coding, security architecture, and threat modeling for AI-native systems. Define and track key security posture metrics, building dashboards or reports to visualize security coverage and vulnerability trends. Must Haves 5+ years of experienc

KT

Kforce Technology Staffing · 🇺🇸 United StatesRemote3w ago

RESPONSIBILITIES: Kforce has a client that is seeking a Java Software Engineer (Remote). Summary: We are seeking a Java Software Engineer with strong Java development experience to support application modernization, vulnerability remediation, API security, and overall application hardening. This role is approximately 60% backend development and 40% frontend development, working on customer-facing applications where code quality, security, and stability are critical. The ideal candidate is a str…

Stripe

Stripe · 🇺🇸 United StatesRemote1mo ago

Who we are About Stripe Stripe is a financial infrastructure platform for businesses. Millions of companies—from the world’s largest enterprises to the most ambitious startups—use Stripe to accept payments, grow their revenue, and accelerate new business opportunities. Our mission is to increase the GDP of the internet, and we have a staggering amount of work ahead. That means you have an unprecedented opportunity to put the global economy within everyone’s reach while doing the most important work of your career. About the team In this role, you would join Stripe's Vulnerability Management team, whose mission is to "Surface vulnerabilities at scale across Stripe." Our vision is to create a culture of continuous excellence in managing vulnerabilities. We want to enhance customer trust by giving users context about threats and vulnerabilities affecting Stripe's systems. We aim to be a key partner in Stripe's risk management by providing visibility into vulnerabilities across Stripe's products and services. What you’ll do As a Software Engineer focused on Vulnerability Management at Stripe, you will use your software engineering expertise to find and prioritize vulnerabilities in our systems. Working closely with engineers across the company, you will drive the timely remediation of discovered vulnerabilities, playing a key role in Stripe's overall security and risk strategy. In addition, you will continuously improve Stripe's security defenses by enhancing our vulnerability management processes and selecting effective scanning tools to uncover weaknesses. Your core responsibilities as a Vulnerability Management Software Engineer will involve building data- and agent-backed systems to surface vulnerabilities across Stripe. In addition, you will coordinate fixes to prevent exploits that could impact Stripe or our users and serve as an advisor on security risks. All of this requires collaborating cross-functionally to advocate for practices that strengthen the safety of

G

GovCIO · 🇺🇸 United StatesRemote2mo ago

United States Suitability/Public Trust Fully remote Information Technology Overview GovCIO is hiring a Security Engineer to support the Department of Veterans Affairs (VA) Data Modernization initiative supporting VA environment vulnerability remediation. The Senior Security Engineer will provide guidance on cloud security, deliver surge support for data ingestion needs, and help customers efficiently navigate the Security Impact Analysis (SIA) process. This position is fully remote within the U…

Full-Time
$115K–$195K/yr
Data Analysis
G

GovCIO · 🇺🇸 United StatesRemote2mo ago

United States Suitability/Public Trust Fully remote Cyber Security Services Overview GovCIO is hiring a Senior Security Engineer to support the Department of Veterans Affairs (VA) Data Modernization initiative with a focus on VA environment vulnerability remediation. The Senior Security Engineer will provide expert guidance on cloud security, deliver surge support for data ingestion needs, and help customers efficiently navigate the Security Impact Analysis (SIA) process. This role is critical …

ALIQAN Technologies

ALIQAN TechnologiesRemote2mo ago

Headquarters: Noida URL: http://aliqantechnologies.com Greetings from ALIQAN Technologies! We are hiring Site Reliability & DevOps Engineer for one of our client MNCs. Job Title:Devops Engineer Exp: 4-6 Yrs Location:Remote Key Responsibilities Infrastructure & Platform Engineering ● Design, implement, and maintain scalable cloud infrastructure using Infrastructure as Code (IaC) principles ● Architect and manage Kubernetes clusters and containerized applications across multiple environments ● Develop and maintain automation scripts for infrastructure provisioning and configuration management ● Implement and optimize CI/CD pipelines for seamless application deployment Monitoring & Reliability ● Design and implement comprehensive monitoring solutions for infrastructure, applications, and services ● Create and maintain alerting systems with appropriate thresholds and escalations ● Analyze system performance and implement improvements to enhance reliability ● Lead incident response and post-mortem analysis to prevent future occurrences Security & Compliance ● Implement and maintain security best practices across all infrastructure components ● Manage access controls, encryption, and security protocols ● Ensure compliance with industry standards and regulatory requirements ● Conduct regular security audits and vulnerability assessments Required Qualification s ● 4-6 years of experience in DevOps, Site Reliability Engineering, or similar roles ● Strong expertise in cloud platforms, with GCP preferred ● Proficiency in containerization technologies (Docker, Kubernetes) ● Experience with Infrastructure as Code tools (Terraform, Ansible, CloudFormation) ● Strong knowledge of CI/CD pipelines and automation tools ● Experience with monitoring and observability tools (Prometheus, Grafana, ELK stack) ● Solid understanding of networking, security, and system administration ● Experience with scripting languages (Python, Bash, Go) ● Knowledge of database administration and backup stra

H

HackerOne · 🇬🇧 London, United KingdomRemote57y ago

HackerOne is a global leader in Continuous Threat Exposure Management (CTEM). The HackerOne Platform unites agentic AI solutions with the ingenuity of the world’s largest community of security researchers to continuously discover, validate, prioritize, and remediate exposures across code, cloud, and AI systems. Through solutions like bug bounty, vulnerability disclosure, agentic pentesting, AI red teaming, and code security, HackerOne delivers measurable, continuous reduction of cyber risk for enterprises. Industry leaders, including Anthropic, Crypto.com , General Motors, Goldman Sachs, Lufthansa, Uber, UK Ministry of Defence, and the U.S. Department of Defense, trust HackerOne to safeguard their digital ecosystems. HackerOne was recognized in Gartner’s Emerging Tech Impact Radar: AI Cybersecurity Ecosystem report for its leadership in AI Security Testing and has been named a Most Loved Workplace for Young Professionals (2024). HackerOne is at a pivotal inflection point in the security industry. Offensive security is no longer optional – it is the standard for forward-thinking companies that want to build trust and resilience in a world where AI-driven innovation and adversaries are moving faster than ever. With the industry shifting, HackerOne stands apart: we combine the ingenuity of the largest security research community with a best-in-class AI-powered platform, trusted by the world’s top organizations. HackerOne Values HackerOne is dedicated to fostering a strong and inclusive culture. HackerOne is Customer Obsessed and prioritizes customer outcomes in our decisions and actions. We Default to Disclosure by operating with transparency and integrity, ensuring trust and accountability. Employees, researchers, customers, and partners Win Together by fostering empowerment, inclusion, respect, and accountability. Senior Security Engineer, Detection and Response Remote Location: Austin TX, Seattle, WA, Washington, DC, San Francisco, CA, Boston, MA Position Summary At

Y

Ygo · Remote EURemote57y ago

YGO.ai is a VC-funded AI tourism platform. We are hiring a Cloud Security Engineer to own the security of our cloud platform, the APIs our enterprise clients run on and the company itself. 🛡️ About this role. The role carries two things at once. You own security engineering directly and hands-on. You build the security function around it as we grow. At YGO a pod lead is a squad leader and a spokesperson, close to the work and close to the client, rather than a full-time manager. You will not stop being an engineer. The work is broad. You might review source code in the morning, investigate an endpoint alert after lunch and help design a new authentication flow the next day. You identify the highest-risk problems, decide what happens first and execute. We serve major travel enterprises and we have enterprise commitments going live from the start of 2027. Security is a condition of that business, not a layer added afterwards. 🧑‍💻 What you'll own Application security. Hands-on code and architecture review across our APIs, backend services and internal tooling. Targeted penetration testing to validate issues yourself. Working with engineers on root causes and practical fixes rather than handing over reports. Vulnerability management and the external penetration tests we commission Detection and response. Knowing we are under attack while it is happening and what happens next. Alerting, intrusion detection, incident process and the on-call path Cloud and platform hardening. Access control, network boundaries, secrets management, containers and the deployment pipeline. Security through the SDLC: CI/CD, repositories and dependencies The security of our APIs. Authentication and authorization, tenant isolation, token scoping and lifecycle, abuse prevention, enterprise SSO and the audit trail our clients and our own accountability depend on The security of our AI systems. Prompt injection, tool and agent permissions, our MCP server, retrieval and data ingestion. The data-r

S

Samsara · 🇬🇧 London, United KingdomRemote57y ago

Who we are Samsara (NYSE: IOT) is the pioneer of the Connected Operations™ Cloud, which is a platform that enables organizations that depend on physical operations to harness Internet of Things (IoT) data to develop actionable insights and improve their operations. At Samsara, we are helping improve the safety, efficiency and sustainability of the physical operations that power our global economy. Representing more than 40% of global GDP, these industries are the infrastructure of our planet, including agriculture, construction, field services, transportation, and manufacturing — and we are excited to help digitally transform their operations at scale. Working at Samsara means you'll help define the future of physical operations and be on a team that's shaping an exciting array of product solutions, including Video-Based Safety, Vehicle Telematics, Apps and Driver Workflows, and Equipment Monitoring. As part of a recently public company, you'll have the autonomy and support to make an impact as we build for the long term. About the role: Samsara sits at the center of hardware, software, AI, and the physical world, processing 25+ trillion data points annually across thousands of connected devices. The Samsara Application Security team protects this vast footprint end-to-end, spanning cloud services, internal systems, and firmware running on IoT hardware in the field. As a Staff Application Security Engineer, you'll drive the overarching technical direction for our application security and vulnerability management programs. This is a high-visibility role where you'll influence a broad surface area while retaining the flexibility to dive deep into critical domain focus areas as security priorities evolve. This is a remote position, open to candidates residing in the UK. Relocation assistance will not be provided for this role. You should apply if: You want to impact the industries that run our world: Your efforts will result in real-world impact—helping to keep the lig

V

Vivenu · 🇩🇪 GermanyRemote57y ago

Redefine the future of live entertainment tech Welcome to vivenu, the global leader in event ticketing tech and one of the world’s fastest-growing live entertainment tech firms. We are transforming event ticketing for global leaders like the Grammys, the Golden Globes, Stanford University and the Hockenheimring turning what was once a simple transaction into a strategic business advantage. Backed by over $65 million in funding, our platform empowers event organizers to own their brand experience, unlock deep data insights, and seamlessly integrate ticketing into their digital infrastructure. With six offices worldwide and growing, we deliver a customizable, intuitive solution and industry-leading support that simplify even the most complex ticketing challenges – helping organizers deliver exceptional experiences and drive real growth. Join us and build the future of live entertainment. With over 10 million end users and usage quadrupling annually, our infrastructure now handles over 1 billion requests per month — and counting. Our API-first platform solves complex system challenges at scale — delivering performance, flexibility, and reliability for the world’s leading live entertainment brands. This isn't just a maintenance role – it is a blank canvas to build, scale, and architect a state-of-the-art AppSec program from the ground up. We are currently operating at a fraction of our ultimate potential, which means you have an immense, blank-canvas opportunity to fundamentally shape our security culture, processes, and tooling across the entire global engineering organization. You will drive the entire AppSec lifecycle: from offensive red teaming and threat modeling to risk-based vulnerability management and pioneering a true shift-left culture. What Makes This Role Challenging and Engaging: High-Impact Technical Environment: You won't just follow blueprints; you will holistically influence a shift-left architecture across both application and platform layers. Modern

VG

virtual7 GmbH · HomeofficeRemote57y ago

Bei virtual7 verbinden wir unsere technologische Expertise mit einem tiefen Verständnis für die Bedürfnisse unserer Kunden. Durch maßgeschneiderte Lösungen schaffen wir einen echten Mehrwert für unsere Rahmenvertragspartner in der öffentlichen Verwaltung. Aktuell suchen wir für einen unserer Kunden eine:n Senior Vulnerability & Container Security Engineer (m/w/d). Projektstandort: Remote und Bonn Zeitraum: 01. Oktober 2026 bis 31. Dezember 2026, Verlängerung möglich Arbeitsmix: 90% Remote (nur in Deutschland möglich) Wichtig: Bereitschaft zur SÜ2 nach § 9 SÜG Geheim/Sabotageschutz DEINE MISSION Im Projekt geht es darum, die Sicherheit moderner Container- und Cloud-Umgebungen im öffentlichen Sektor zu stärken und ein ganzheitliches Vulnerability Management für Container, Images und Software-Lieferketten sicherzustellen. Die Aufgaben im Detail: Verantwortung für das Vulnerability Management im Container- und Cloud-Umfeld Analyse und Priorisierung von Schwachstellen in Container-Images, Dependencies und Laufzeitumgebungen Betrieb und Integration von Container-Scanning-Lösungen Definition und Weiterentwicklung von Policies für sichere Base Images und eine abgesicherte Software Supply Chain Bewertung von CVEs hinsichtlich Exploitability und konkretem Risiko in der jeweiligen Laufzeitumgebung Steuerung und Begleitung von Remediation-Prozessen in Zusammenarbeit mit Entwicklungs- und Plattformteams Überwachung und Sicherstellung von Security Baselines sowie relevanten Compliance-Anforderungen Erstellung von Security Reports, Risikobewertungen und Handlungsempfehlungen MUST-HAVES FÜR DIESE POSITION Mindestens 5 Jahre Erfahrung im Vulnerability Management, insbesondere in der Analyse, Bewertung und Priorisierung von CVEs und technischen Schwachstellen Mindestens 5 Jahre Erfahrung im Bereich Container Security mit Kubernetes und Docker, einschließlich Betrieb und Absicherung von Kubernetes-Umgebungen sowie Container- und Image-Scanning-Lösungen wie Trivy oder Grype Mindestens

TG

Trusteq Gmbh · 🇩🇪 Munich, GermanyRemote57y ago

YOUR TASKS You assume overall responsibility for projects, key topics, and the company’s development within the field of cybersecurity You take on leadership and strategic responsibilities in the consulting, design, and implementation of cybersecurity solutions You ensure that defined milestones and project objectives are achieved You manage stakeholder communication and lead status meetings You serve as the primary point of contact for our clients, project leads, and team members, representing the team’s results externally You assess and advise our clients in the field of cybersecurity and contribute to the development of new services and topic areas You analyze complex processes and systems, particularly in the area of Identity & Access Management (IAM) You design solution concepts and IT architectures You actively contribute to new client acquisition efforts You conduct IT vulnerability assessments and risk evaluations of information security incidents and further develop internal security methodologies and standards You lead and support transformation initiatives in the field of cybersecurity You take responsibility for internal development initiatives aimed at expanding and strengthening our company YOUR PROFIL You hold a strong to very strong completed Master’s degree in Business Administration, (Business) Informatics, or a related discipline You bring 5–8 years of professional experience in the field of cybersecurity, including the implementation of Zero Trust concepts and technologies Ideally, you have gained experience in Identity & Access Management, Azure AD, Zero Trust, and/or security architecture design You possess strong leadership capabilities and management experience You have a very strong understanding of business processes in the field of cybersecurity You have in-depth knowledge of networking as well as a comprehensive understanding of cybersecurity-specific architectures and principles You demonstrate very strong analytical and problem-solving

TG

Trusteq Gmbh · 🇩🇪 Munich, GermanyRemote57y ago

YOUR TASKS You will advise our clients on the further development of their cybersecurity, risk, and compliance frameworks and support them in sustainably embedding security and governance requirements within their organizations You will assist clients in implementing regulatory requirements such as NIS2, DORA,eIDAS2.0, and other European regulations, and guide their integration into existing processes and organizational structures You will analyze existing IT, security, and governance structures, assess cyber and IT risks, and use these findings to develop concrete recommendations for action and implementation roadmaps You will develop concepts and target frameworks for governance, risk, and control structures, as well as subject-specific topics such as Identity & Access Management (IAM) and vulnerability management, and support their implementation You will plan, manage, and coordinate work packages within IT and cybersecurity projects, working closely with business units, IT, information security, and compliance functions You will design and structure assessments and support clients in decision-making and prioritizing measures, for example by conducting workshops or interviews You prepare analysis results, management documents, and presentations tailored to the target audience and communicate complex issues clearly to various stakeholders You monitor technological, regulatory, and market-related developments in the field of cybersecurity and contribute fresh ideas to client projects and the further development of our consulting portfolio (e.g.,in the area of digital identities) YOUR PROFIL You have a bachelor’s or master’s degree with good tovery goodgrades in (Business) Computer Science, Economics, Engineering, Mathematics, Natural Sciences, or a comparable field You have some relevant professional experience (internships or work-study positions) for the role of Consultant, ideally in consulting or a strategy-focused environment You have some practical experience

G

gitlab · RemoteRemote57y ago

<div class="content-intro"><p>GitLab is the intelligent orchestration platform for DevSecOps. GitLab enables organizations to increase developer productivity, improve operational efficiency, reduce security and compliance risk, and accelerate digital transformation. More than 50 million registered users and more than 50% of the Fortune 100* trust GitLab to ship better, more secure software faster.</p> <p>The same principles built into our products are reflected in how our team works: we embrace AI as a core productivity multiplier, with all team members expected to incorporate AI into their daily workflows to drive efficiency, innovation, and impact. GitLab is where careers accelerate, innovation flourishes, and every voice is valued. Our high-performance culture is driven by our values and continuous knowledge exchange, enabling our team members to reach their full potential while collaborating with industry leaders to solve complex problems. <a href="https://www.youtube.com/watch?v=OuZIb5zszQI">Co-create the future with us</a> as we build technology that transforms how the world develops software.</p> <p>*<em>Fortune 500® is a registered trademark of Fortune Media IP Limited, used under license. Claim based on GitLab data. Fortune 100 refers to the top 20% ranked companies in the 2025 Fortune 500 list, published in June 2025. Fortune and Fortune Media IP Limited are not affiliated with, and do not endorse products or services of GitLab.</em></p></div><h3><strong>An overview of this role</strong></h3> <p>As an Intermediate Software Engineer on GitLab’s Vulnerability Management team, you’ll help build the core security workflows that GitLab Ultimate customers use to triage, prioritize, and act on vulnerabilities. You’ll work primarily in Ruby on Rails on backend systems, including security dashboards, vulnerability reports, and ingestion pipelines. You’ll take ownership of well-defined projects, solve technical problems with support from experienced team members, an

P

Pleo · 🇬🇧 United KingdomRemote57y ago

About Pleo Messy spend management is tricky business. And tedious processes are a lose-lose situation for all involved, not just finance. At Pleo, we're changing that. We build spend solutions that make managing money seamless, empowering, and surprisingly effective for finance teams and employees alike - with a vision to help all businesses ‘go beyond’. The word ‘Pleo’ actually means ‘more than you’d expect’, and living by that mantra has been the secret to our success over the last 10 years. Now, we’re at a pivotal moment in our journey; every move we make has a direct impact on our 40,000+ customers, our business, and our collective success. We need people who take pride in uncovering customer needs, who turn complex problems into simple solutions, challenge the way things are done (respectfully), and always aim high. With great ambitions driving us forward, we can’t say we’ve got this whole thing figured out. And frankly, that’s half the fun! What we can say is that we’re a driven, progressive, and, importantly, a kind bunch of 850+ people from over 100 nationalities, all committed to delivering the future of business spending, together. About the role We're looking for a Senior Application Security Manager to join our Cybersecurity team at Pleo. In this role, you'll own vulnerability management and set the long-term application security strategy, turning a growing stream of signal into a risk-ranked plan the engineering organisation can actually act on. If you're a player-coach who wants high leverage with low bureaucracy, and you'd rather mature a program than maintain one, then this is the opportunity for you! Who you'll be working with and reporting to You'll report to our VP of Fraud & Security and lead a small AppSec team with dotted lines to other security members. Your primary customers are Pleo's engineering squads, and your closest partners are DevSecOps, who feed you signal and automation, alongside SecOps, Risk & Compliance, Privacy, and Legal. Our t

E

Escape · RemoteRemote57y ago

About Escape Escape secures the code-to-cloud attack surface that covers DAST, ASM and AI Pentesting. Our platform continuously maps and tests every asset exposed to the internet, including undocumented APIs and endpoints, with automated AI penetration testing and DAST running at the pace of modern development teams. With a team of 45+ people based across Paris, Amsterdam, Hawaii, Boston, and New York, Escape is Series A funded and rapidly growing. We are building a world-class team to help organizations protect what matters most. The Role As a Security Advocate at Escape, you will bridge the gap between our security technology and the engineering community. You will champion security best practices, promote our platform, and empower developers, security teams, and customers to take proactive approaches to security. Our users and customers are deeply technical: Security Engineers, AppSec teams, developers, security researchers and CISOs. We’re looking for someone who can speak their language and become one of the technical voices of Escape in the security community. Your mission: demystify complex security issues, contribute to our product’s visibility, and build lasting relationships with technical communities. Through talks, live demos, content creation, and customer engagement, you’ll be the voice of Escape’s security expertise and a trusted partner for our users. Why We’re Hiring Some of the best conversations in cybersecurity don't start with a sales pitch. They start with an interesting vulnerability, a technical demo, a GitHub project, a conference talk, a strong opinion or a very good security meme. Key Responsibilities: Serve as a subject matter expert on application and cloud security, representing Escape at industry events, conferences, and webinars Create and deliver engaging content: blogs, videos, presentations, and technical documentation that educates and inspires Work directly with customers to understand their challenges, provide best practice guid

B

Blockchain · 🇬🇧 London, United KingdomRemote57y ago

<div class="content-intro"><p><strong>Blockchain</strong> is connecting the world to the future of finance. As the most trusted and fastest-growing global crypto company, it helps millions of people worldwide safely access cryptocurrency. Since its inception in 2011, Blockchain has earned the trust of over 90 million wallet holders and more than 40 million verified users, facilitating over $1 trillion in crypto transactions.</p></div><p>You will operate the Product Security programe for Blockchain.com’s internally-developed products across Consumer, OTC and MRE lines. This is a senior, hands-on role: you’ll design and run the secure development lifecycle, lead threat modeling and architecture review, own the security debt lifecycle for product engineering teams, and architect the automated pipelines that protect billions in transaction volume. You will embed with product and engineering teams, convert technical findings into business-prioritized remediation, and lift developer capabilities so security is delivered by code and process.</p> <p><strong>WHAT YOU WILL DO</strong></p> <ul> <li><strong>Strategic Security Partnership:</strong> Act as a senior security engineer for the different product lines like Consumer, OTC. You will own the security gates for major feature releases and ensure security is integrated from the design phase.</li> <li><strong>Secure SDLC Operator:</strong> Operate and improve the secure development lifecycle. This includes orchestrating SAST/SCA/DAST, streamlining SARIF ingestion, PR review standards, CI/CD security automation, and vulnerability triage workflows.</li> <li><strong>AI-Driven SDLC Innovation:</strong> Research, architect, and safely embed cutting-edge AI utilities and Large Language Model (LLM) agents directly into our secure development lifecycle.</li> <li><strong>Threat Modelling & Architecture Reviews:</strong> Lead STRIDE/attack-tree threat models for sensitive flows including authentication, payment, custody, reconciliatio