Security Engineer (Remote OK)


Applications have closed
Affirm logo

Posted 7 months ago

Affirm is reinventing credit to make it more honest and friendly, giving consumers the flexibility to buy now and pay later without any hidden fees or compounding interest.

Affirm values information security as being critical to the company’s continued success. Our mission is to make information security programmatic and cultural in Affirm, enabling the company to succeed in building honest financial products. The Security team posture increases security and reduces risk while securely enabling access to information for those who need it!

The Security Engineer candidate will have experience crafting software solutions for the transformation, delivery, ingestion, processing, storage, detection, and alerting of security logs and metrics. The ideal candidate will work alongside the greater Affirm Observability team while taking ownership of security log monitoring facilities.

What you'll do

  • Configure and implement facilities for the ingestion and monitoring of information security logs including logs related to AWS API usage, server and container-based audit logging, database access logs, and application security logging.
  • Develop and deploy AWS-based infrastructure using Terraform configurations and standard source code management tooling.
  • Perform incident response as part of the greater Security team. Incorporate lessons learned from incident investigations into monitoring and alerting capabilities.
  • Work closely with teammates to effectively test, tune, and deploy security technologies that are scalable and enhance detection and response.
  • Develop effective and efficient internal security procedures and documentation (i.e. runbooks), used for day-to-day security operations.
  • Research and understand emerging information security threats, vulnerabilities, and their countermeasures.

What we look for

  • Experience configuring and monitoring SIEM software and log collection facilities. Extra points for Elastic SIEM experience!
  • Experience developing, configuring, and securing AWS cloud services.
  • Software development experience, using Python.
  • Hands-on experience running container-based infrastructure.
  • Experience developing and deploying cloud services using Terraform.
  • Database experience including administration and monitoring preferred.
  • Basic understanding of Developer Best Practices using source code version control encouraged (e.g. GitHub etc)
  • Foundational knowledge of and passion for Cyber Security concepts
  • BS degree in related field or equivalent experience. MS degree in a related field or equivalent experience is a plus
Location   We’re excited to announce that Affirm is now a remote-first company! This role can be located anywhere in the U.S. and Canada (with the exception of Quebec). Remote based employees may occasionally travel to an Affirm office for meetings or team building events. Our offices in San Francisco, New York City, Pittsburgh, Chicago, and Salt Lake City will remain operational and accessible for anyone to use on a voluntary basis. If you got to this point, we hope you're feeling excited about the job description you just read. Even if you don't feel that you meet every single requirement, we still encourage you to apply. We're eager to meet people that believe in Affirm's mission and can contribute to our team in a variety of ways – not just candidates who check all the boxes.   At Affirm, People Come First is a core value and that’s why diversity and inclusion are vital to our priorities as an equal opportunity employer. You can read about our D&I program here and our progress thus far in our 2019 D&I report.   We will consider for employment qualified applicants with arrest and conviction records in accordance with applicable federal, state and local laws, including the San Francisco Fair Chance Ordinance. By clicking Submit Application, I acknowledge that I have read the Affirm Employment Privacy Policy, and hereby consent to the collection, processing, use, and storage of my personal information as described therein.
Job tags: AWS Google Incident response Python SIEM Vulnerabilities
Job region(s): Remote/Anywhere
Job stats:  117  13  0