Senior Security Engineer I

Chicago, IL/REMOTE

Applications have closed

OppFi

OppFi is a leading tech-based finance platform that broadens the reach of community banks to extend credit access for everyday Americans.

View company page

Helping the Everyday Consumer Build Financial Health 

OppFi is a leading financial technology platform that powers banks to help the everyday consumer gain access to credit. Through our unwavering commitment to customer service, OppFi helps consumers who are turned away by traditional providers build a better financial path. OppFi is an Inc. 5000 company for five straight years, a Deloitte's Technology Fast 500™, and the seventh fastest-growing Chicagoland company by Crain's Chicago Business. The company was also named on Forbes America 2021 list of America's Best Startup Employers and Built In's 2021 Best Places to Work in Chicago. We welcome individuals to join us in facilitating financial inclusion and credit access for everyday consumers to live the life they deserve.

OppFi is a team of caring, innovative, and inclusive individuals with diverse perspectives and backgrounds. Our employees approach every new challenge with an unparalleled ability to see what could be rather than settle for what is. We want people to be excited to come to work every day and know you are a part of making a difference. Our company values guide us and create an open and collaborative culture where we hold the door, say what we see, do what we say, and dare to win together!

We are looking for a motivated, and service-oriented Information Security Engineer with hands-on knowledge of AWS, cloud architecture, and security best practices to join our expanding Information Security team. You will work directly with OppFi internal teams to ensure overall environment security, visibility, and compliance measures are adhered to and enforced. You will evaluate existing technical capabilities and systems,  and identify opportunities for improvements while maintaining standard operating procedures and protocols to ensure Security Operations continues to meet operational requirements. 

 

What you get to do: 

  • Balance the needs of delivering technical security assurance while still allowing development and operations teams to move quickly
  • Conduct cloud and on-prem vulnerability assessments, analyzing vulnerabilities, determining severity, and recommending paths for eliminating or mitigating security gaps
  • Act as a technical incident point person in the event of a security incident. Triage, investigate and respond to potential incidents. Provide on-call support when needed. 
  • Work with Engineering and IT teams to ensure that programmatically-deployed infrastructure is built following OppFi’s security principles
  • Ensure the proper security controls are deployed within our cloud environments to address confidentiality, integrity, and availability of these services
  • Build automation for in-house network, service, and endpoint security testing
  • Create Deployment Pipeline security integrations
  • Help with the identification and evaluation of security gaps, and translate them into functional specifications to implement 
  • Maintain a current understanding of the security threat landscape. Research and review new technologies and trends

What you will bring to the team:

  • 7+ years of experience in security operations
  • Strong attention to detail with an analytical mind and outstanding problem-solving skills
  • Ability to work under pressure in a fast-paced environment
  • Familiarity using Terraform and/or CloudFormation
  • Prior experience working in a highly containerized environment is a plus (AWS ECS, EKS, Fargate)
  • Has working knowledge of AWS SSO, and IDP configurations in AWS
  • Has worked with Identity and access management solutions such as OneLogin, OKTA, and others 
  • Experience in security hardening for Linux, Windows, Macs, Containers
  • Experience with security and risk management practices and security frameworks (FFIEC, NIST, ISO, CIS Benchmarks)
  • Experience with security operations systems: MDM, DLP, Web filter, Firewalls, Nessus, CASB, Log collectors, SIEM/SOC
  • Prior experience working with Crowdstrike or similar
  • Solid Understanding of Incident response process and procedures
  • Security certifications a plus (CISSP, CEH, PCNSE)

The minimum salary based on qualifications and experience is $117,000. The total compensation package includes eligibility for performance-based bonuses as well as a 1-time equity grant based on level.

The actual offer, reflecting the total compensation package and benefits, will be at the company’s sole discretion, and determined by a myriad of factors including, but not limited to, years of experience, depth of experience, and other relevant business considerations.


Define your career at OppFi

OppFi is committed to providing an exceptional employee experience from Day 1. Key new hire programs include Day 1 Orientation, training with your manager and team, lunches with our CEO and President, and an educational summit featuring presentations by our senior leaders. Throughout and beyond your first-year journey, you'll have access to a variety of events focused on culture, inclusion, connection, and education. We want you to feel welcomed, informed, and valued for who you are and what you bring to our company. 

  • Day 1 - Month 3: Define Your Mission

You’ll understand our company mission, values, and vision, and how your position at OppFi plays a part in that. With the help of your manager, you’ll set mission-aligned goals to make an impact in your role.

  • Months 3 - 6: Define Your Belonging

You’ll understand OppFi’s culture and know how to engage with and influence that culture.

  • Months 6 - 12: Define Your Journey

You’ll feel confident in your ability to execute in your role and empowered to take next steps in developing your career at OppFi.

 

Compensation and Benefits

OppFi offers a flexible remote environment, 401(k) matching program, and flexible paid vacation. Other benefits include medical benefits, dental and vision coverage, and tuition reimbursement. To support your wellness & growth, we provide monthly meditation and yoga classes and access to all LinkedIn Learning courses. We also offer Fringe, which is a lifestyle benefits platform that lets you decide how you want to spend your rewards from dozens of vendors like Uber, Doordash and Urban Sitter. Dress code is casual. 

 

EEOC Statement: 

OppFi is an equal opportunity employer and does not discriminate based on any actual or perceived legally recognized protected bases under local, state, or federal law or regulations. Our goal as a company is to build an equitable workplace that actively works to dismantle systems of oppression in our processes, procedures, and interactions. We aim to help our employees thrive where they work and beyond. Check out our Culture page here.

OppFi is committed to the full inclusion of all qualified individuals. As part of this commitment, OppFi will ensure that persons with disabilities are provided reasonable accommodations. If reasonable accommodation is needed to participate in the job application or interview process, to perform essential job functions, and/or to receive other benefits and privileges of employment, please contact our People team at recruiting@oppfi.com

Pursuant to the requirements of the California Consumer Privacy Act, OppFi is providing the "OppFi California Employee Privacy Policy", which details the categories of personal information collected and your rights under the policy. If you are a California resident, please review the policy here: https://www.oppfi.com/careers/

Tags: Automation AWS CEH CISSP Cloud Compliance CrowdStrike Endpoint security Firewalls IAM Incident response Linux Nessus NIST Okta Privacy Risk management SIEM SOC SSO Terraform Vulnerabilities Windows

Perks/benefits: Career development Equity Flex hours Flex vacation Health care Salary bonus Startup environment Team events Wellness Yoga

Regions: Remote/Anywhere North America
Country: United States
Job stats:  9  1  0

More jobs like this

Explore more InfoSec / Cybersecurity career opportunities

Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.