Beyond Finance logo

Beyond Finance

Staff Security Engineer

Work from home

Remote role where the employee must remain based in a particular country.

United States only

Employer listed it 3 weeks ago · Added 5 days ago

Been open since 3 weeks ago, still being checked, but it has been live a while.

Salary

$160k to $195k per year

Location

United States only

Timezone

Not stated

Contract

Full-time

Experience

Lead

Category

Software

Stated by the employer in the job description

Remote flexibility

Work from home

This is a remote role, but the employee must be based in United States. It is work from home rather than work from anywhere.

What the employer says

  • Source listing states candidate location: "Remote, Chicago, IL"

What Nomaders makes of it

  • Residency required in United States
  • Payroll and tax are likely handled in that country only

The quotes above are the employer's own words; the reading is ours. Always check the original listing and employment terms before working from another country.

About the role

At Beyond Finance, we've made it our mission to help everyday Americans escape the endless cycle of crippling debt and step into a brighter financial future. Through compassionate, individualized care, a culture focused on compliance and ethics, supportive user-centric technology, and customized financial solutions, we've helped over 1 million clients on their path to a brighter future.

While we're proud of what we've already accomplished, we're searching for new collaborators to help us get to the next level! If you're looking to join a forward-thinking, rapidly growing organization with helping people as its number one goal, we want to hear from you.

Role Overview

As a Staff Security Engineer, you'll get involved early with Product and Software Engineering teams to embed security into our architecture and processes as they design, build, and ship. You'll also be someone the Security team can pull into any project, at any phase and regardless of domain, to make sure it lands on the right security outcome.

This is a hands-on role, and you don't need to be an expert in all three areas: application security, cloud security, and security automation and tooling. You should have strong, demonstrated depth in one of the three, along with enough working knowledge of the other two to contribute without hand-holding and to be a trusted voice on technical decisions outside the systems you personally own.

What You'll Do

Partner with Engineering, DevOps, and Product across projects, providing security input at any phase of design or build, regardless of domain.

Guide secure design and code review for web and mobile applications, and help manage core AppSec tooling (SAST, SCA, secret scanning, DAST, ASM, and mobile security tooling).

Help triage and remediate application-level vulnerabilities with engineering teams.

Contribute to cloud security posture across the AWS environment, including IAM, network segmentation, container security, secrets, and data exposure, using CNAPP and AWS-native tooling.

Support cloud and application vulnerability management, and help tune WAF rules as needed.

Build automation and internal tooling, primarily in Python, that reduces manual work for the security team.

Contribute to security log pipelines, SIEM detections, and endpoint security controls.

Help embed security checks, such as scanning and secrets detection, into CI/CD pipelines in partnership with DevOps.

Contribute to secure development and infrastructure standards, playbooks, and enablement materials used across engineering.

What We're Looking For

Requirements

8+ years of hands-on security engineering experience.

Strong, demonstrated depth in one of the following, with working knowledge of the other two: application security, cloud security, or security automation and tooling.

Working knowledge of threat modeling.

Operates independently and drives projects without day-to-day oversight.

Nice to Have

Deeper expertise across more than one of the following: application security (SAST/DAST/ASM tooling, secure SDLC), cloud security (AWS IAM, networking, container orchestration, CNAPP-driven posture management), or security automation (Python tooling, log pipelines, SIEM detection engineering).

Hands-on Infrastructure as Code experience, ideally Terraform.

Requirements

  • ·8+ years of hands-on security engineering experience.
  • ·Strong, demonstrated depth in one of the following, with working knowledge of the other two: application security, cloud security, or security automation and tooling.
  • ·Working knowledge of threat modeling.
  • ·Operates independently and drives projects without day-to-day oversight.

Benefits

  • ·The base annual salary range is listed below. This role is eligible for additional incentives, including an annual bonus.
  • ·Base Salary Range
  • ·$160,000 — $195,000 USD
  • ·Considerable employer contributions for health, dental, and vision programs
  • ·Generous PTO, paid holidays, and paid parental leave

How to apply

  1. 1Check the flexibility label above, work from home, matches where you plan to live and work.
  2. 2Tailor your CV to the role at Beyond Finance, mentioning your remote working experience.
  3. 3Apply directly on the employer's careers page using the button below. Nomaders never handles your application.

Found 5d ago. Last checked 23 Sept. Always confirm the details on the original posting, salary and location can change after publication.

Listing sourced from Company boards.

Similar roles

Other open software roles with comparable remote rules.

Browse all open roles

Free to apply, no account needed.

$160k to $195k per year · You'll be taken to the employer's careers page.