Use our flexible platform and vast ecosystem to orchestrate the ideal payment strategy. Turn Possibilities into Payments
Cybersecurity Architect
Location
New York
Posted
35 days ago
Salary
0
Seniority
Lead
Job Description
Cybersecurity Architect
Spreedly
• Design, build, and implement robust security architectures for all Engineering projects and systems, including future products that incorporate AI/ML technology. • Lead, maintain, and drive the multi-year security architecture roadmap, ensuring it remains dynamic and aligned with business objectives, product innovation, and the evolving threat landscape. • Develop secure frameworks for AI/ML deployments and manage the long-term transition to Post-Quantum Cryptography (PQC) standards. • Partner with product and engineering leaders to define the overarching product security strategy, ensuring security is a core enabler of product innovation and high-scale payment orchestration. • Serve as the lead security advisor for international market expansion, ensuring architecture aligns with regional data residency requirements, localized payment regulations, and international standards. • Recommend updates to corporate security policies to ensure controls grow with the business, specifically targeting compliance with PCI DSS, ISO-27001, ISO-27701, ISO-42001, and emergent payment security regulations across global markets. • Provide technical guidance for Engineering teams and lead security-related cross-functional and business-driven projects. • Stay updated on the latest security trends, threat intelligence, and attack vectors to continuously improve the security posture.
Job Requirements
- 10+ years of experience in cybersecurity, with a focus on designing, planning, and integrating enterprise-class security systems.
- Proven experience in architecting security for emerging technologies, including AI/ML and advanced cryptographic systems.
- Deep expertise in IT security architecture, cloud security (AWS, Azure, Google Cloud), and network security.
- Experience with threat modeling, vulnerability testing, and security assessments in a high-growth environment.
- Strong understanding of security frameworks and compliance standards such as PCI DSS, SOC 2, ISO 27001, ISO 27701, and ISO 42001.
- Proficiency in programming and scripting languages (e.g., Python, Ruby, JavaScript).
- Exceptional communication and leadership skills, with the ability to convey complex security concepts to both technical and non-technical audiences, including executives.
- Expertise in designing scalable security solutions, including uplifting API security and authentication, while securing global data flows.
- A proactive and inquisitive mindset, with the ability to think like a malicious hacker to anticipate risks.
- Ability to operate autonomously in a fast-paced environment, prioritizing needs from a variety of stakeholders across different global regions.
Benefits
- Competitive salary + Equity
- Outstanding Medical and Dental benefits, including 100% employer-paid options
- Company-paid Life and Disability insurance
- Optional vision and supplemental insurance options, and various Flexible Spending Accounts (FSA)
- Open Paid Time Off policy + 12 weeks of paid leave for new parents
- Matching 401(k) plan (5% up to $5,000 yearly)
- Monthly home working/digital lifestyle stipend, new MacBook, and one-time accessory reimbursement
- $1,000 annual professional development stipend
- Access to company-paid professional coaching service
- Visits to HQ in Durham, North Carolina for remote employees
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
Professional Services Engineer – Microsoft Cybersecurity
Phoenix Software LimitedUtilising technology to enable UK organisations to innovate and transform. Outcome focused IT solutions and services.
• Deliver complex technical implementations for customer projects, acting as a delivery subject matter expert • Lead the implementation of agreed technical designs produced by Solution Architects and Technical Consultants • Diagnose and resolve technical issues, ensuring high levels of customer satisfaction and solution quality • Work closely with Project Managers to meet agreed milestones, timelines, and delivery standards • Deliver technical knowledge‑transfer workshops and handover sessions to customers • Produce high‑quality post‑delivery and technical documentation • Build and maintain strong working knowledge of all products and solutions across the practice
Role Description Fireflies.ai is looking for a hands-on Security Engineer to protect our infrastructure, product, and user data as we scale globally. This role is ideal for someone who can ship code, automate security workflows, triage vulnerabilities, and work closely with engineering teams to build secure systems. - Build and improve security controls across our product, backend, and infrastructure. - Review code, architecture, and infrastructure for security risks. - Run vulnerability assessments, penetration testing, and security audits. - Debug and patch security issues in backend systems. - Manage bug bounty triage and remediation workflows, including HackerOne. - Automate security checks, alerts, and vulnerability workflows. - Partner with engineering teams to promote secure coding practices. - Support incident response and security investigations. - Configure and maintain security tools such as firewalls, IDS/IPS, scanners, and monitoring systems. Qualifications - 3+ years of experience in security engineering, backend security, or infrastructure security. - Strong backend development experience with Node.js/TypeScript. - Ability to ship code end-to-end. - Good understanding of authentication, authorization, cryptography, and common vulnerabilities. - Experience with security testing tools such as Burp Suite, Metasploit, Wireshark, or similar. - Experience with cloud security, preferably GCP or AWS. - Familiarity with Kubernetes, Docker, and modern infrastructure security. - Strong problem-solving and communication skills. Requirements - Experience with SaaS or high-growth startup environments. - Bug bounty program experience. - Experience with SOC 2, HIPAA, GDPR, Vanta, or GitHub Advanced Security. - Contributions to the security community, such as CVEs, talks, or open-source work. - Experience with DevSecOps or security automation. Benefits - Competitive compensation. - Work remotely anywhere in your respective country. - Ability to move laterally within a team and grow rapidly. - Paid time off and flexible leave policy. - No boss culture. - Flexible working hours. - LGBTQ+ friendly. - Company offsites. - Tech reimbursements.
IT Security Consultant
ARES Consulting GmbHThe Cloud Native Company: Experten und Teams für die Bereiche Cloud Native Development, Cloud Admin und DevOps
• Advising clients from the private sector and public sector on information security, IT security and incident/emergency management • Analyzing existing security architectures and IT infrastructures with respect to ISO 27001, BSI IT-Grundschutz and other relevant standards and guidelines • Independently developing security concepts, risk analyses and tailored solutions while taking regulatory requirements into account • Establishing and further developing information security and incident/continuity management systems in close coordination with stakeholders • Advising on regulatory requirements (DORA, NIS2, BAIT, VAIT, MaRisk, KRITIS) • Preparing, maintaining and enhancing security documentation as well as conducting trainings and awareness measures • Technical leadership of project teams and mentoring of colleagues
Email Security Administrator
Concept Solutions, LLCWe create and support Mission-Critical solutions that keep our country safe.
• administer and secure enterprise email gateway systems • administrate and maintain Cisco IronPort Secure Email Gateway (SEG) appliances • manage AsyncOS configurations, upgrades, and system performance • implement and enforce email security policies (anti-spam, anti-malware, data loss prevention) • monitor, analyze, and respond to email threats and incidents • perform message tracking, reporting, and log analysis • apply firmware updates, patches, and security enhancements • support and administer Microsoft 365 (Exchange Online) • assist in email platform integration, migration, or coexistence strategies • collaborate with enterprise teams to ensure secure mail flow and policy alignment • install and configure network hardware and supporting infrastructure • utilize ServiceNow for incident, change, and request management • diagnose and resolve email delivery, connectivity, and security issues • conduct log analysis and root cause investigations • monitor system health and respond to alerts and incidents • partner with Cybersecurity teams on threat mitigation and response • maintain accurate system documentation, configurations, and procedures • collaborate with Cybersecurity, Network, and Enterprise Messaging teams • support audits, compliance requirements, and continuous improvement efforts



