Staff Security Engineer (Corporate Security)
Remote US
Affirm is reinventing credit to make it more honest and friendly, giving consumers the flexibility to buy now and pay later without any hidden fees or compounding interest.
Affirm values information security as being critical to the company’s continued success. Our mission is to cultivate a culture of security at Affirm, enabling the company to succeed in building honest financial products. The Enterprise Security program is the foundation of both preventive and responsive security practices to protect Affirm’s assets from an adverse event.
As a member of the Security Team at Affirm, you will be joining a team of fun, passionate and highly skilled individuals who like solving security challenges and enjoy learning new skills. We partner together with a team first mindset and are keen on redefining security in the fintech space.
We are looking for a Staff Security Engineer in the Enterprise Security team, primarily supporting the Corporate Security program including vulnerability management, data loss prevention, SaaS security, and corporate infrastructure security. In this role, you will collaborate with internal Security teams (such as Security Operations, Platform Security and IAM) and other external teams (such as product engineering teams, IT, legal and compliance) to create and improve enterprise security capabilities. You will partner with the right teams to solve complex security problems and help design solutions that are aligned with broader organizational goals.
What You'll Do
- Design, implement and maintain security measures for corporate systems
- Design, build and integrate security tooling to manage our corporate systems
- Perform security design review, code review, threat modeling and architecture reviews
- Manage the Corporate Vulnerability Management program
- Develop and enforce security policies, standards and best practices
- Configure and implement cloud security services, including identity and access management, detective controls, infrastructure protection, and data protection
- Contribute to developing and maturing corporate security playbooks and processes
- Collaborate with cross functional teams across Affirm and lead key Security projects
- Participant in security on call and serve as the senior escalation point for the team when needed for help with investigations and incidents
What We Look For
- A seasoned Enterprise Security engineer with a strong ability to design, build, evaluate and maintain systems.
- Experience leading investigations and incidents including containment actions and remediation when needed in a cloud heavy environment (AWS preferred).
- Demonstrated experience in …
This job isn't fresh anymore!
Search Fresh JobsJob Profile
Limited number of roles remain office-based Remote US
Benefits/Perks100% subsidized medical 100% subsidized medical coverage Competitive benefits Competitive vacation Competitive vacation and holiday schedules Employee stock purchase plan Equity Equity rewards ESPP Flexible Spending Flexible Spending Wallets Health care coverage Inclusive interview experience Inclusive interview experience for all Monthly stipends Monthly stipends for health Remote-first company Subsidized medical coverage Tech spending Time off Transparent pay structure Wellness Wellness and tech spending
Tasks- Collaborate with cross functional teams
- Collaborate with teams
- Design
Architecture AWS Cloud Security Code Review Communication Compliance Container Orchestration CrowdStrike Data Loss Prevention Data Protection EDR Elastic Endpoint Management Engineering Fintech GitHub Google Workspace Identity and Access Management Information security Infrastructure Infrastructure as Code Intune Jamf Jira Kubernetes Microsoft 365 Modeling Notion Okta Operations Organization Python Qualys Rapid7 REST SaaS Security Salesforce Security Engineering Security measures SIEM Slack Snowflake Splunk Technology Terraform Vulnerability Management Workday Zendesk Zscaler
Experience5 years
EducationEngineering Equivalent practical experience Related Field
TimezonesAmerica/Anchorage America/Chicago America/Denver America/Los_Angeles America/New_York Pacific/Honolulu UTC-10 UTC-5 UTC-6 UTC-7 UTC-8 UTC-9