Summary
What you’ll impact
Our company is seeking a hands‑on Lead Security Engineer to build a repeatable security operating system, owning compliance, testing, detection, and automation across its AI‑driven financial services platform. This staff‑level individual contributor will be the sole dedicated security hire, reporting to senior leadership and working closely with infrastructure, IT, and People Operations.
Responsibilities
What you'll do
- You will own compliance operations, boundary testing, access and vulnerability management, detection and response, and the automation that makes all of it repeatable and provable.
- The operating procedure for SOC 2, PCI, enterprise security questionnaires, and bank-specific security requirements, keeping implementation, approval, submission, and acceptance separate.
- Security testing across cloud/IAM, application, payment, and AI boundaries, including synthetic tests covering recordings, transcripts, logs, tools, storage, and providers.
- Investigation of access anomalies.
- Stronger IAM/PAM controls and monitoring.
- Network and vulnerability scanning, with every finding tracked through service-owner remediation and retest, or an authorized exception.
- Incident runbooks, useful detections, and proven handoffs between security, service teams, and backup personnel.
- Automation for security controls and evidence: tested evidence connectors, asset reconciliation, obligation tracking, and claim-review workflows.
Requirements
What you’ll bring
- You own outcomes end to end and ship weekly with a small team, deciding with incomplete information.
- You're a software engineer first: you write production-quality code and build tested tooling and automation.
- You have hands-on experience securing cloud infrastructure and identity and access (IAM/PAM), including investigating suspicious access.
- You prioritize by real risk, are clear about what isn't covered, and can explain tradeoffs to leadership.