Affirm logo
Affirm

We create honest financial products that improve lives.

Staff Product Security Engineer

Security EngineerSecurity EngineerFull TimeRemoteLeadTeam 1,001-5,000Since 2012H1B SponsorCompany SiteLinkedIn

Location

United States

Posted

67 days ago

Salary

$200K - $275K / year

Seniority

Lead

Bachelor DegreeEnglishAWSAzureCloudJavaKotlinPython

Job Description

Staff Product Security Engineer

Affirm

• Partner with Affirm product teams to ensure that security is included in every phase of the product development lifecycle. • Conduct threat modeling and architecture reviews to ensure threats are understood, documented, and mitigated. • Review and analyze product source code to identify security vulnerabilities and provide recommendations for secure implementation. • Seek out opportunities to automate processes when appropriate. • Identify emerging classes of vulnerabilities and developing solutions for them before they’re a problem. • Assist product teams in the development of security focused test cases to enforce security requirements. • Advise product teams on business security requirements early in the product development lifecycle. • Decompose large, cross-team projects into individual tasks. Manage scope across teams and drive toward project closure.

Job Requirements

  • Deep understanding of web application architecture and design principles
  • Experience using modern software development and delivery techniques to develop cloud-based services. Python, Kotlin, Java, AWS, and Azure experience preferred.
  • Knowledge of common security flaws and resolution as published by OWASP, SANS, etc.
  • Experience with PCI or other regulated environments.
  • Experience conducting threat models for complex, distributed products using standard threat modeling techniques and methodologies.
  • Experience with standard authentication mechanisms, including SAML and OAuth2.
  • Understanding of continuous integration / continuous deployment processes and tools.
  • BS degree in related field or equivalent experience. MS degree in a related field or equivalent experience is a plus.

Benefits

  • Health care coverage - Affirm covers all premiums for all levels of coverage for you and your dependents
  • Flexible Spending Wallets - generous stipends for spending on Technology, Food, various Lifestyle needs, and family forming expenses
  • Time off - competitive vacation and holiday schedules allowing you to take time off to rest and recharge
  • ESPP - An employee stock purchase plan enabling you to buy shares of Affirm at a discount

Related Categories

Related Job Pages

More Security Engineer Jobs

Samsara logo

Senior Security Engineer – Enterprise Security

Samsara

Pioneer of the Connected Operations Cloud

Full TimeRemoteTeam 1,001-5,000Since 2015H1B Sponsor

• Provide influence and leadership over Samsara’s Enterprise Security roadmap and priorities, helping to balance both near-term and long-term business impact with technical considerations • Write clear, concise documentation and runbooks for enterprise security workflows • Collaborate with partners across Engineering, IT, and Security to ensure proper implementation of security tools and policies • Occasionally assist the Security Operations team during security investigations, acting as a technical subject matter expert within your domain • Partner with engineering teams to triage and support remediation of vulnerabilities and misconfigurations in systems and applications • Mentor engineers in the Security team to grow their domain knowledge, tool-specific skills, and communication abilities • Champion, role model, and embed Samsara’s cultural principles as we scale globally and across new offices

California + 4 moreAll locations: California | Hawaii | Nevada | Oregon | Washington
$135.5K - $204.9K / year
CrowdSec logo

Data Analyst – Cybersecurity

CrowdSec

CrowdSec is a CTI tool leveraging crowdsourced data to identify and block malevolent IPs in real time worldwide.

Full TimeRemoteTeam 11-50H1B No Sponsor

• Analyze Cyber Threat Intelligence data to extract meaningful insights • Identify trends, patterns, and anomalies in large-scale security data • Produce regular data-driven content (reports, blog posts, insights) to showcase the value of CrowdSec data • Analyze product usage to understand how users interact with CrowdSec • Identify friction points in the user journey • Provide actionable insights to improve feature adoption and overall user experience • Contribute to shaping future product features based on data • Define and monitor key product and business KPIs • Analyze network growth, user retention and churn patterns • Help the team understand what drives engagement and long-term usage • Leverage data to generate qualified leads and insights for Sales and Marketing • Identify high-potential accounts or segments based on usage or behavior • Support go-to-market strategies with data-driven insights

France
Full TimeRemoteTeam 10,001+Since 1993H1B Sponsor

• Design and operate telemetry ingestion pipelines that collect and process data from endpoint, identity, network, cloud, and other enterprise security sources. • Normalize and enrich telemetry into structured datasets using standardized schemas and entity models so signals from different systems can be correlated consistently. • Build and maintain data models and graph ready structures that connect users, devices, identities, and activity across the security ecosystem. • Provide governed access to security datasets through APIs, query interfaces, and streaming pipelines used by Detection, Automation, AI, and Analytics teams. • Define lifecycle and retention strategies across hot, cold, and archive storage tiers to balance performance, scalability, and cost. • Work closely with enterprise data engineering and security engineering teams to align on architecture, data fabric strategy, and shared platform capabilities. • Maintain clear documentation of data sources, schemas, and entity definitions so teams across NVIDIA can reliably build on the platform.

California + 1 moreAll locations: California | New York
$136K - $224.3K / year
Job Closed
Full TimeRemoteTeam 5,001-10,000H1B Sponsor

• Owning the technical aspects of integration (configuration, debugging, documentation, testing, go-live) of our Security Solutions • Analyzing customer traffic as well as systems and customizing Akamai security solutions to answer customers' security issues • Managing and documenting technical issues, responses and requests to ensure information is recorded and updated • Collaborating with cross-functional project team to scope, set timelines, create technical solutions, and support the ongoing implementation • Participating in ongoing training initiatives to up-skill yourself and to train others.

India
Job Closed