Greenlight Financial Technology

Senior Staff Product Security Engineer

Greenlight Financial Technology$180K — $240K *
Information Technology
11 - 15 years of experience
Job Overview by Ladders

Qualifications

  • 12+ years in product or application security
  • Proven success in large-scale security programs
  • Hands-on expertise in production security solutions
  • Expertise in web/mobile application security
  • Deep experience with AppSec tools and frameworks
  • Strong cloud security knowledge, especially AWS
  • Exceptional communication and cross-functional influencing skills

Responsibilities

  • Define and lead product security strategy and roadmap
  • Act as the internal expert on application and product security
  • Cultivate a culture of security ownership within engineering teams
  • Architect a comprehensive Product Security program
  • Lead secure development standards across various platforms
  • Identify and address high-impact security vulnerabilities
  • Oversee penetration testing programs and incident response processes
  • Mentor engineering staff to enhance overall security capabilities

Benefits

  • Medical, dental, vision, and HSA match
  • Unlimited PTO and paid company holidays
  • Professional development stipends
  • Fertility healthcare and 100% paid parental leave
  • Flexible remote and in-office work options
  • Mental health resources and financial planning services
  • Well-stocked kitchen with catered lunches
Full Job Description
We are seeking a seasoned and highly accomplished Senior Staff Product Security Engineer to join our security leadership team. This is a senior individual contributor role that carries significant organizational influence. You will define the technical vision for product security at Greenlight and set the standard for how we build and ship secure software. The ideal candidate brings deep, hands-on expertise paired with the strategic mindset to drive large-scale security initiatives from concept to production. You will operate across the full breadth of our engineering organization, embedding security into every layer of our SDLC, shaping architecture decisions, and building the programs and processes that protect millions of families who trust us with their financial, location and personal data.

This role reports to the VP, Security GRC & Trust.

Technologies we use:

  • Node.js, Java/Kotlin, React, Redux, Swift, SwiftUI
  • AWS, GCP
  • MySQL, DynamoDB, Redis
  • Kubernetes, Ambassador, Helm, Rancher


Your day-to-day:

  • Define and lead the long-term product security strategy, roadmap, and vision in alignment with company goals, risk appetite, and regulatory requirements.
  • Serve as the internal authority on application and product security, providing expert guidance to engineering, product, and executive leadership.
  • Drive a company-wide culture of security ownership embedding security thinking deeply into the habits of every engineering team.
  • Architect and continuously evolve a best-in-class Product Security program, spanning threat modeling, SAST, DAST, IAST, SCA, runtime protection, and API security.
  • Lead the design and enforcement of secure development standards across web, mobile, and cloud including secure coding guidelines, IaC policies, and API security frameworks.
  • Identify and drive resolution of systemic, high-impact vulnerabilities and architectural security gaps across Greenlight's platform.
  • Lead and mature Greenlight's penetration testing program, both through internal efforts and external vendor partnerships.
  • Partner with engineering and platform teams to build security-enhancing product features that protect our customers' financial data.
  • Establish and lead incident response processes for product-level security events, including root cause analysis and systemic remediation.
  • Evaluate and introduce emerging security tooling, techniques, and frameworks to keep Greenlight ahead of the threat landscape.
  • Mentor staff and senior engineers across the security and engineering organizations, raising the overall security engineering capability of the company.


What you'll bring to the team:

  • 12+ years of experience in product security, application security, or a related engineering discipline.
  • Proven track record of defining and driving security programs at scale across complex, multi-platform environments.
  • Hands-on experience architecting and implementing security solutions and processes in production environments, enabling engineering teams to build and ship securely at scale.
  • Expert-level knowledge of web and mobile application security, including OWASP Top 10, API security, and mobile threat vectors (iOS and Android).
  • Deep hands-on experience with the full AppSec toolchain: SAST, DAST, IAST, SCA, secrets scanning, and runtime protection.
  • Strong command of cloud security architecture and controls, particularly in AWS environments.
  • Experience leading or heavily influencing the security architecture of distributed, microservices-based systems.
  • Experience in developing and implementing security solutions
  • Demonstrated ability to build strong cross-functional relationships and influence engineering culture without direct authority.
  • Exceptional communication skills - you can distill complex security risk into clear, actionable language for engineers, executives, and non-technical stakeholders alike.
  • Experience operating in regulated industries (e.g. financial services, fintech, healthcare).
  • Plus: Hands-on certifications such as OSCP, GWAPT, GPEN, CISSP, or equivalent - and/or public code/research. Share your GitHub or any public security work with us!
  • Plus: Experience building or scaling Product Security programs in high-growth startup environments.
  • Plus: Familiarity with security tools including Burp Suite, or Kali Linux.


Work perks at Greenlight:

  • Medical, dental, vision, and HSA match
  • Paid life insurance, AD&D, and disability benefits
  • Traditional 401k with company match
  • Unlimited PTO
  • Paid company holidays and pop-up bonus holidays
  • Professional development stipends
  • Mental health resources
  • 1:1 financial planners
  • Fertility healthcare
  • 100% paid parental and caregiving leave, plus cleaning service and meals during your leave
  • Flexible WFH, both remote and in-office opportunities
  • Fully stocked kitchen, catered lunches, and occasional in-office happy hours
  • Employee resource groups


Our stance on salaries:

Greenlight provides a competitive compensation package with a market-based approach to pay and will vary depending on your location, experience and skill set. The total compensation package for this position will also include a discretionary performance bonus, equity rewards, medical benefits, 401K match, and more. Greenlight conducts continuous compensation evaluations across departments and geographies to ensure we are keeping our pay current and competitive.

The estimated base pay range for this position in (NY, CA, WA): $180,000-240,000

The estimated base pay range for this position in (CO): $180,000-220,000

About Greenlight Financial Technology

Greenlight Financial Technology is a financial technology company that provides a debit card for kids and teens. The company was founded in 2014 by Tim Sheehan and Johnson Cook. Greenlight's debit card is designed to help parents teach their children financial responsibility and manage their children's spending. The card allows parents to set spending limits, approve or deny transactions, and monitor their children's spending. Greenlight also offers a mobile app that allows parents to manage their children's accounts and track their spending. The company is headquartered in Atlanta, Georgia.
Learn more about Greenlight Financial Technology
Size
300 employees
Industry
Founded
2014

Similar Jobs

More Jobs at Greenlight Financial Technology

More Information Technology Jobs

Find similar Senior Staff Product Security Engineer jobs: