Job Closed
This listing is no longer active.
Empowering businesses to grow beyond borders
Staff Product Security Engineer
Location
California
Posted
16 days ago
Salary
0
Seniority
Senior
Job Description
Staff Product Security Engineer
Airwallex
About Airwallex Airwallex is the only unified payments and financial platform for global businesses. Powered by our unique combination of proprietary infrastructure and software, we empower over 200,000 businesses worldwide - including Brex, Rippling, Navan, Qantas, SHEIN and many more - with fully integrated solutions to manage everything from business accounts, payments, spend management and treasury, to embedded finance at a global scale. Proudly founded in Melbourne, we have a team of over 2,200 of the brightest and most innovative people in tech across 26 offices around the globe. Valued at US$8 billion and backed by world-leading investors including T. Rowe Price, Visa, Mastercard, Robinhood Ventures, Sequoia, Salesforce Ventures, DST Global, and Lone Pine Capital, Airwallex is leading the charge in building the global payments and financial platform of the future. If you're ready to do the most ambitious work of your career, join us. Attributes We Value We hire successful builders with founder-like energy who want real impact, accelerated learning, and true ownership. You bring strong role-related expertise and sharp thinking, and you're motivated by our mission and operating principles. You move fast with good judgment, dig deep with curiosity, and make decisions from first principles, balancing speed and rigor. You're humble and collaborative; turn zero-to-one ideas into real products, and you "get stuff done" end-to-end. You use AI to work smarter and solve problems faster. Here, you'll tackle complex, high-visibility problems with exceptional teammates and grow your career as we build the future of global banking. If that sounds like you, let's build what's next. About the team Airwallex's Information Security team partners closely with engineering, IT, and other stakeholders to protect our systems, data, and employees while enabling the business to move quickly. The team helps build and maintain strong security practices across the company-from secure product and infrastructure design to risk reduction, incident response, audits, and compliance-so security is built into how we operate, not treated as a blocker. Your role As a Staff Product Security Engineer at Airwallex, you will be a trusted member of the Information Security team and work closely with Infrastructure, Product and Engineering teams across the business. Reporting directly to the Product Security Engineering Manager, this role will see you being a critical part of Airwallex, helping to identify, protect, detect, respond and recover the organisation from cybersecurity threats. This is a dynamic and hands-on role that requires experience in designing, developing and managing infrastructure projects, processes and standards related to the security of our networks, systems and applications. What you'll be doing - Create and build security controls that strengthen Airwallex's ability to scale securely. - Design and deliver security improvements across applications, software, and services. - Develop and operationalise detection strategies and response workflows that improve the speed and effectiveness of incident response. - Build and enhance secure systems through strong integration, testing, operations, and maintenance practices. - Leverage and analyse endpoint, network, and cloud telemetry to identify, investigate, and mitigate threats. - Design, implement, and maintain cybersecurity infrastructure that improves resilience across the Airwallex environment. - Investigate, contain, and respond to cybersecurity incidents to reduce risk and strengthen defensive capability. - Assess and improve system and network security by identifying vulnerabilities, configuration issues, and remediation opportunities. - Collect and analyse threat intelligence and forensic evidence to better understand, track, and disrupt threats. - Conduct and support defensive operations, tactical forensics, and threat hunting to strengthen security outcomes. - Partner with teams across Airwallex to embed security into new and existing applications, software, and services and drive continuous improvement. Minimum Qualifications (must-have) - 8+ years working in a security engineering or incident response role within a tech company - In depth expertise with at least one major cloud platform - Strong knowledge of common software development tools and infrastructure, including CI/CD tooling and pipelines - Comprehensive understanding of common attacker tools and techniques, how they can be detected and prevented, and ability to respond to incidents with high depth and quality of investigation - Strong communication skills with the ability to explain technical security and software concepts to a non-technical audience - A passion for solving the complex challenges of high-growth startups - Self motivation and drive to learn new skills, or dive deeper into existing skills Highly Desired - Bachelor's degree in Cybersecurity, Computer Science or similar - Recognised training or cybersecurity certifications (eg OSCP, GIAC, CEH) - Strong experience with Splunk and other common security monitoring tools - Past DevOps/SRE experience with Kubernetes - Experience with GCP or Alibaba Cloud (with or without certification) - Experience with Okta, GSuite, and cloud-based VPN services - Experience with Python, Java/Kotlin - Published articles, journals or blogs related to cybersecurity Applicant Safety Policy: Fraud and Third-Party Recruiters To protect you from recruitment scams, please be aware that Airwallex will not ask for bank details, sensitive ID numbers (i.e. passport), or any form of payment during the application or interview process. All official communication will come from an @airwallex.com email address. Please apply only through careers.airwallex.com or our official LinkedIn page. Airwallex does not accept unsolicited resumes from search firms/recruiters. Airwallex will not pay any fees to search firms/recruiters if a candidate is submitted by a search firm/recruiter unless an agreement has been entered into with respect to specific open position(s). Search firms/recruiters submitting resumes to Airwallex on an unsolicited basis shall be deemed to accept this condition, regardless of any other provision to the contrary. Equal opportunity Airwallex is proud to be an equal opportunity employer. We value diversity and anyone seeking employment at Airwallex is considered based on merit, qualifications, competence and talent. We don't regard color, religion, race, national origin, sexual orientation, ancestry, citizenship, sex, marital or family status, disability, gender, or any other legally protected status when making our hiring decisions. If you have a disability or special need that requires accommodation, please let us know. #BI-Hybrid
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
• Partner with product and engineering teams to integrate security throughout the development lifecycle and drive security initiatives across our stack. • Leverage AI and automation to scale product security coverage, matching the pace of AI-assisted development across engineering. • Design and implement security controls and architecture that scale with our growing product portfolio. • Conduct comprehensive security reviews and threat modeling to identify and mitigate potential vulnerabilities, including risks introduced by AI-generated code and AI-powered features. • Contribute to our vulnerability management program, including triaging bug bounty and vulnerability disclosure reports and driving remediation efforts. • Develop and implement automated security testing, monitoring, and response capabilities, using Tines itself, plus AI-driven tooling, to eliminate manual toil. • Serve as an incident responder during security events and lead post-incident reviews. • Champion security awareness and provide technical guidance to engineering teams, including best practices for secure AI-assisted development.
Security Engineer
GoDaddyGoDaddy is a web services platform that helps individuals and businesses worldwide start, grow, and manage their online presence. GoDaddy employs team members a
Role Description Join GoDaddy’s Product Security group as a Security Engineer. In this remote position, you will work from home while occasionally visiting a GoDaddy office for team events or meetings. You will be responsible for: - Identifying security threats and vulnerabilities in applications and infrastructure and providing remediation mentorship to system owners. - Collaborating with SRE and development teams to discover and implement creative ways to reduce the occurrence of vulnerabilities at scale. - Developing repeatable and reusable security processes and frameworks. - Advocating for secure by build and secure by default development strategies. - Reviewing quality issues and striving to detect both obvious and subtle security flaws. - Assisting with prioritizing prospective projects and participating in projects from kickoff through “definition of done” via end-to-end ownership. - Applying your industry experience to own and drive resolution and retesting of complex security events, policy questions, and technical security risks. Qualifications - 1+ years of progressive security engineering experience with expertise in multiple security domains, including but not limited to Security Architecture, Cryptography, Network Security, Cloud Security, Mobile Security, and Web Security. - Demonstrated problem-solving abilities combined with a strong technical grasp of security engineering. - Experience in threat modelling complex software services, secure code review, and penetration testing. - Solid knowledge of security controls across all layers of the OSI model related to common technologies. - Experience applying security engineering guidelines that align with security and privacy compliance requirements. Requirements - Bachelor's degree (preferred). - Experience in Secure Development Lifecycle and Shift Left with a Security by Build methodology. - Proficiency in system architecture and building, scripting/development skills (e.g., Python, C, C++, Java, Ruby, or PowerShell). - Hosting Industry and/or Cloud Experience. - Hardware security experience. Benefits - Paid time off. - Retirement savings (e.g., 401k, pension schemes). - Bonus/incentive eligibility. - Equity grants. - Participation in our employee stock purchase plan. - Competitive health benefits. - Family-friendly benefits including parental leave. Company Description GoDaddy is empowering everyday entrepreneurs around the world by providing the help and tools to succeed online, making opportunity more inclusive for all. Our mission is to give our customers the tools, insights, and people to transform their ideas and personal initiative into success. - We know diverse teams build better products. - We prioritize integrating diversity, equity, inclusion, and belonging principles into the core of how we work every day. - GoDaddy is proud to be an equal opportunity employer.
• Lead the design, implementation, and governance of SAP security across S/4HANA, SAP BTP, Fiori, and associated cloud platforms. • Manage user access administration, provisioning, lifecycle management, and identity integration using SAP Cloud Identity Services (IAS/IPS). • Design and maintain SAP roles and authorisations, ensuring secure and compliant access aligned with business requirements. • Drive Segregation of Duties (SoD) governance, risk analysis, mitigation strategies, and audit remediation activities. • Support incident and security management processes, investigating access-related issues and implementing corrective actions. • Provide security architecture guidance across SAP projects and enhancement programs, embedding security-by-design principles. • Lead and support the transition from legacy Identity Management solutions to SAP Identity Access Governance (IAG). • Collaborate with business, Basis, architecture, and audit teams to deliver secure, scalable, and compliant SAP solutions. • Ensure security controls and governance are maintained across hybrid SAP environments, including BTP, SAC, Datasphere, BW, and related platforms.
Cloud Security Engineer
Booz Allen HamiltonBooz Allen Hamilton is an award-winning provider of strategic innovation, management consulting, technology, and engineering services. Founded in 1914, the comp
Cloud Security Engineer Location: Tampa United States Alexandria, VA Full time Job Description: The Opportunity: Define, communicate, and implement cybersecurity architecture and administration processes for Amazon Web Services (AWS) and Microsoft Azure cloud environments across multiple network domains. Collaborate across our cloud infrastructure delivery team and with stakeholders using an Agile process to design, implement, verify, and continuously monitor cloud solutions across multiple domains. Develop Risk Management Framework (RMF) Body of Evidence artifacts, including system security plans and cybersecurity concept of operations documents for Cloud environments in alignment with existing RMF packages. Support assessment and authorization activities to achieve and maintain Authority to Operate (ATO) on multiple networks. Evaluate enhancements to Cloud environments against RMF controls and DoD Security Technical Implementation Guidance (STIG) requirements. Support data capture and configuration within tools to enable achievement of the organization's Assessment and Authorization (A&A) objectives. Work without considerable direction. Mentor and supervise team members, as needed. You Have: - 4+ years of experience securing computer systems, performing DoD authorization activities, developing a body of evidence for RMF, and writing security plans - 4+ years of experience with secure IT architecture and computing hardware and software - Experience working with Cloud technologies, including AWS, Azure, or Infrastructure as a Service - Experience with Microsoft products - Experience supporting security reviews of software and system releases within a DevSecOps framework and supporting recurring path-to-production software and system release activities - Experience with terminology, processes, and regulations of IT system A&A for the RMF - Secret clearance - HS diploma or GED - Ability to obtain a DoD 8570 or 8140 IAT Level II Certification within 90 days of hire date Nice If You Have: - Experience assessing and authorizing network connections between on-premise and cloud - Experience planning, implementing, and managing continuous monitoring solutions and working within an Agile-based project management framework - Experience with Red Hat Enterprise Linux (RHEL) or Windows system administration - Experience with code management tools such as Git or GitLab in a team setting - Experience with the Army, DoD, or Intelligence Community (IC) Information Assurance (IA) or Information Systems - Experience in Information System Security Engineer (ISSE) or Information System Security Officer (ISSO) roles - Knowledge of terminology and federal regulations related to the specification, development, acquisition, and maintenance of IT systems - Ability to work independently and as an integrated member of a project team - Possession of excellent verbal and written communication skills - TS/SCI clearance Clearance: Applicants selected will be subject to a security investigation and may need to meet eligibility requirements for access to classified information; Secret clearance is required. Compensation At Booz Allen, we celebrate your contributions, provide you with opportunities and choices, and support your total well-being. Our offerings include health, life, disability, financial, and retirement benefits, as well as paid leave, professional development, tuition assistance, work-life programs, and dependent care. Our recognition awards program acknowledges employees for exceptional performance and superior demonstration of our values. Full-time and part-time employees working at least 20 hours a week on a regular basis are eligible to participate in Booz Allen's benefit programs. Individuals that do not meet the threshold are only eligible for select offerings, not inclusive of health benefits. We encourage you to learn more about our total benefits by visiting the Resource page on our Careers site and reviewing Our Employee Benefits page. Salary at Booz Allen is determined by various factors, including but not limited to location, the individual's particular combination of education, knowledge, skills, competencies, and experience, as well as contract-specific affordability and organizational requirements. The projected compensation range for this position is $99,000.00 to $225,000.00 (annualized USD). The estimate displayed represents the typical salary range for this position and is just one component of Booz Allen's total compensation package for employees. Identity Statement As part of the hiring process, we will ask you to complete an identity verification process that leverages advanced biometrics and artificial intelligence to ensure authenticity and protect against identity fraud. You are expected to be on camera during interviews and assessments. We reserve the right to take your picture to verify your identity and prevent fraud. Candidate AI Usage Policy AI is a part of our daily work at Booz Allen, and we are committed to the responsible and ethical use of AI tools. However, we want to ensure a fair candidate process based on your own skills and knowledge. As part of this commitment, the use of artificial intelligence (AI) or other tools to assist with responses during interviews (whether in-person or virtual) is prohibited unless permission is explicitly provided. Work Model Our people-first culture prioritizes the benefits of collaboration, whether it occurs in person or virtually. To support engagement and effective communication, employees working virtually are generally expected to have their cameras on during meetings. - Remote: If this position is listed as remote, there may still be occasions when you are required to work in person at a Booz Allen or customer facility. - Hybrid: If this position is listed as hybrid, you will be expected to work from a Booz Allen facility frequently, in alignment with leadership expectations and the needs of the role. You may also be required to work from or visit a customer facility. - Onsite: If this position is listed as onsite, work will primarily be performed at a Booz Allen office or customer facility, where employees will collaborate directly with colleagues and customers as required by the role. Commitment to Non-Discrimination All qualified applicants will receive consideration for employment without regard to disability, status as a protected veteran or any other status protected by applicable federal, state, local, or international law.




