Stripe

Security Engineer, Privy

Stripe$130K — $160K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • 5-7 years of hands-on experience in a security engineering or technical role.
  • Proficient in programming languages such as Python, Go, or Ruby for building maintainable tooling.
  • Demonstrated experience in investigating security incidents and ambiguous technical problems.
  • Familiarity with security operations or incident response workflows.
  • Solid understanding of web and cloud security principles.
  • Strong analytical skills and good judgment under pressure during investigations.
  • Excellent communication skills for conveying technical risks and findings clearly.

Responsibilities

  • Own security engineering tasks from start to finish, including investigation and documentation.
  • Participate in the security on-call rotation and respond to incidents and alerts.
  • Develop and maintain automation tools to simplify security workflows.
  • Conduct thorough investigations of potential security breaches or anomalies.
  • Identify and engineer solutions to recurring operational challenges.
  • Collaborate with product and engineering teams on assessing security risks and trade-offs.
  • Contribute to security considerations across various domains in the organization.

Benefits

  • Encouraging environment for personal and professional growth.
  • Opportunity to work with a diverse set of security specialists.
  • Hands-on role with real code and significant operational ownership.
  • Flexible work arrangements and autonomy in decision-making.
  • Access to innovative security tools and technologies.
Full Job Description
What you'll do

As a Security Engineer at Privy, you will help keep a rapidly growing platform secure through hands-on investigation, operational ownership, and building real code to solve real problems. You'll work across security operations, incident response, application and infrastructure security, and internal tooling.

This is not a role limited to reviewing logs and designs or simply escalating findings. You will carry real ownership for the day-to-day work that protects Privy: investigating anomalies, improving security workflows, and building the automation that makes the team faster and more effective over time. You'll work closely with engineers across Privy and alongside specialists in cryptography, application security, offensive security, and infrastructure security to turn security expertise into practical, durable outcomes.
Responsibilities
  • Own security engineering work end to end: investigate alerts, findings, anomalies, and security requests; identify root causes; drive remediation; and clearly document outcomes.
  • Participate in Privy's security on-call rotation, helping respond to incidents, triage alerts, support vulnerability workflows, complete access reviews, and handle security escalations.
  • Build and maintain production-quality tooling that reduces manual work, including alert enrichment, automated triage and routing, remediation workflows, access-review automation, and detection improvements.
  • Lead focused investigations into suspected security events or compromises, gathering evidence methodically and coordinating the appropriate response.
  • Proactively identify recurring sources of operational toil and engineer durable solutions that improve the team's speed, consistency, and ability to scale.
  • Partner with product and engineering teams to assess security risks, review lower-complexity designs and implementation plans, and make practical security tradeoffs to deliver quickly with quality and soundness.
  • Contribute across Privy's application, infrastructure, cloud, and product-security surface area, developing broad context while building deeper expertise over time.
Who you are

We're looking for someone who meets the minimum requirements to be considered for the role. If you meet these requirements, you are encouraged to apply. The preferred qualifications are a bonus, not a requirement.
Minimum requirements
  • Experience as a security engineer, detection engineer, or similarly hands-on engineer in a technically demanding environment.
  • Strong software-engineering skills in Python, Go, Ruby, or a similar language. You can build maintainable tooling and contribute directly to production fixes, not only one-off scripts.
  • Experience investigating security signals, incidents, vulnerabilities, suspicious activity, or other ambiguous technical problems through to resolution.
  • Familiarity with security operations, incident response, vulnerability management, detection engineering, access reviews, or related operational-security workflows.
  • A strong understanding of web, browser, infrastructure, or cloud security, with the ability to apply that understanding across a broad range of problems.
  • Good judgment under pressure, a methodical approach to investigation, and comfort working independently with agency despite incomplete information.
  • Strong communication and collaboration skills, including the ability to explain technical findings, risks, and recommended actions clearly to clients and internal stakeholders alike.
  • A self-directed approach to work: you notice gaps, make progress through ambiguity, and reliably close the loop.
Preferred qualifications
  • Experience with AWS, GCP, or other cloud-security environments.
  • Experience with detection engineering, security automation, incident-response tooling, or remediation pipelines.
  • Bug-bounty experience, offensive-security exposure, or a strong attacker-minded approach to investigation.
  • Experience with IAM, secrets management, secure production access, or secure CI/CD.
  • Background in application security, infrastructure security, cryptography, or privacy engineering.
  • Experience with fintech, payments, blockchain, or another diligence-forward financial product domain.
  • Experience helping shape security operations, incident-response practices, vulnerability-management workflows, or a bug-bounty program.

About Stripe

Stripe is a technology company that builds economic infrastructure for the internet. Businesses of every size—from new startups to public companies—use our software to accept payments and manage their businesses online. Stripe helps new companies get started and grow their revenues, and established businesses accelerate into new markets and launch new business models. Stripe powers businesses all over the world, from the new startup that just launched yesterday to the Fortune 500 companies that we all know and love. Stripe is headquartered in San Francisco, with offices in Dublin, London, Paris, Singapore, Tokyo, and more.
Learn more about Stripe
Size
4,000 employees
Industry
Founded
2010

Similar Jobs

More Jobs at Stripe

More Information Technology Jobs

Find similar Security Engineer, Privy jobs: