Senior Security Engineer

Remote

SentiLink

SentiLink combines technology and expertise to help financial institutions stop identity fraud at the application stage.

View company page

SentiLink provides innovative identity and risk solutions, empowering institutions and individuals to transact confidently with one another.   By building the future of identity verification in the United States and reinventing the currently clunky, ineffective, and expensive process, we believe strongly that the future will be 10x better.   We’ve had tremendous traction and are growing extremely quickly. Already our real-time APIs have helped verify hundreds of millions of identities, beginning with financial services. In 2021, we raised a $70M Series B round, led by Craft Ventures to rapidly scale our best in class products. We’ve earned coverage and awards from TechCrunch, CNBC, Bloomberg, Forbes, Business Insider, PYMNTS, American Banker, LendIt, and have landed on the Forbes Fintech 50 in 2023 and 2024. Last but not least, we’ve even been a part of history -- we were the first company to go live with the eCBSV and testified before the United States House of Representatives.

Role:

As a Senior Security Engineer at SentiLink, you will develop, implement, and manage security operations, platform security, application and product security, threat planning and research, corporate security, security strategy, and compliance for SentiLink. You will work cross functionally to advocate for security and privacy across the company with the goal of instilling trust in SentiLink from our employees, partners, customers, and auditors.

Responsibilities:

  • Architects, designs, implements, maintains and operates information system security controls and countermeasures
  • Designs, develops, deploys, and operates cloud infrastructure using infrastructure as code and related GitOps tooling
  • Performs assessments and improvements to security configurations of various cloud-based Linux servers
  • Collaborate with the Infrastructure team to ensure cloud security for promoting DevSecOps and Shift Left
  • Monitors information systems for security incidents and vulnerabilities, develops monitoring and visibility capabilities
  • Safeguard sensitive information by working with business units and vendors/third parties to determine and enforce appropriate access levels
  • Participate various white hat efforts against SentiLink’s product and corporate infrastructure - including phishing tests, penetration tests, and simulations for disaster recovery and business continuity
  • Researches and assesses new threats and security alerts and recommends remedial actions
  • Assists with management responses to audit findings, directing remediation, tracking progress and providing status reporting

Requirements:

  • 5+ Years in a InfoSec role or related Software Engineering role
  • Experience with software development (Python, Golang, Javascript, etc.)
  • Experience Engineering cloud-based infrastructure in the AWS environment using Infrastructure as Code (IaC). Terraform experience is a plus.
  • Proficient in many cybersecurity technologies, IT concepts, strategies and methodologies, as well as security aspects of multiple platforms, operating systems, software, communications and network protocols.
  • Experience implementing security controls aligned to organizational policies and standards.
  • Excellent communication skills, including the ability to convey complex security related concepts to technical and non-technical audiences alike.
  • Knowledge of industry standard frameworks - NIST, ISO, PCI, SOC2
  • Experience working in a highly regulated environment is a plus (NIST 800-53, ISO 27001, etc)
  • Familiarity working in financial services is a big plus.
  • Candidates must be legally authorized to work in the United States and must live in the United States

Salary Range:

  • $140,000/year - $185,000/year
 

Perks:

  • Employer paid group health insurance for you and your dependents
  • 401(k) plan with employer match (or equivalent for non US-based roles)
  • Flexible paid time off
  • Regular company-wide in-person events
  • Home office stipend, and more!

Corporate Values:

  • Follow Through
  • Deep Understanding
  • Whatever It Takes
  • Do Something Smart
Apply now Apply later
  • Share this job via
  • or

Tags: APIs AWS Cloud Compliance DevSecOps FinTech Golang ISO 27001 JavaScript Linux Monitoring NIST NIST 800-53 Privacy Product security Python Security strategy SOC 2 Strategy Terraform Vulnerabilities

Perks/benefits: 401(k) matching Flex hours Flex vacation Home office stipend Team events

Regions: Remote/Anywhere North America
Country: United States
Job stats:  32  6  0

More jobs like this

Explore more InfoSec / Cybersecurity career opportunities

Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.