Featured Job

Lead Security Engineer

San Francisco, CA Full-time Hybrid $200k — $300k per year 10/01/2026 Job ID: 000330
Apply Now
SOC 2 compliance PCI compliance Enterprise security questionnaires Bank-specific security requirements Cloud security testing

Summary

What you’ll impact

Our company is seeking a hands‑on Lead Security Engineer to build a repeatable security operating system, owning compliance, testing, detection, and automation across its AI‑driven financial services platform. This staff‑level individual contributor will be the sole dedicated security hire, reporting to senior leadership and working closely with infrastructure, IT, and People Operations.

Responsibilities

What you'll do

  • You will own compliance operations, boundary testing, access and vulnerability management, detection and response, and the automation that makes all of it repeatable and provable.
  • The operating procedure for SOC 2, PCI, enterprise security questionnaires, and bank-specific security requirements, keeping implementation, approval, submission, and acceptance separate.
  • Security testing across cloud/IAM, application, payment, and AI boundaries, including synthetic tests covering recordings, transcripts, logs, tools, storage, and providers.
  • Investigation of access anomalies.
  • Stronger IAM/PAM controls and monitoring.
  • Network and vulnerability scanning, with every finding tracked through service-owner remediation and retest, or an authorized exception.
  • Incident runbooks, useful detections, and proven handoffs between security, service teams, and backup personnel.
  • Automation for security controls and evidence: tested evidence connectors, asset reconciliation, obligation tracking, and claim-review workflows.

Requirements

What you’ll bring

  • You own outcomes end to end and ship weekly with a small team, deciding with incomplete information.
  • You're a software engineer first: you write production-quality code and build tested tooling and automation.
  • You have hands-on experience securing cloud infrastructure and identity and access (IAM/PAM), including investigating suspicious access.
  • You prioritize by real risk, are clear about what isn't covered, and can explain tradeoffs to leadership.

Ready to Move Forward?

Apply now and our recruiting team will reach out with next steps, interview guidance, and client insights tailored to this role.