Staff Product Security Engineer

Affirm
74d$200,000 - $275,000

About The Position

Affirm is reinventing credit to make it more honest and friendly, giving consumers the flexibility to buy now and pay later without any hidden fees or compounding interest. Affirm values information security as a critical part of the company’s continued success. Our mission is to make information security programmatic and cultural in Affirm, enabling the company to succeed in building honest financial products. The Security team posture increases security and reduces risk while securely enabling access to information for those who need it! The ideal employee will have extensive experience developing tooling and infrastructure used for securing technical resources as part of a larger team. The candidate will quickly come up to speed with current systems and processes, identify and develop improvements, and implement solutions used by experienced software and infrastructure engineers across the organization. We protect and secure Affirm’s production infrastructure while balancing risk to enable business growth. We are looking for a Staff Security Engineer in the Security Engineering and Architecture organization, primarily supporting the Infrastructure and Platform Security team focusing on vulnerability management, cloud security, perimeter and network security, and hardening of critical environments. We work closely with corporate/workforce security, incident response, security operations, identity and access systems and partner with infrastructure engineering teams that build, operate and manage compute, storage, caching and security systems at scale. You will partner with the right teams to solve complex security problems and help design solutions that are aligned with broader organizational goals.

Requirements

  • A proven track record of tackling difficult and ambiguous challenges and driving them to success.
  • Capable of shifting focus in a complex, ever changing environment to balance between security risks and business agility.
  • Strong in multiple domains including infrastructure operations (e.g. networking, systems, storage), Corporate IT, able to make technical trade-offs between short versus long term security business decisions.
  • Hands-on experience deploying infrastructure within a Kubernetes environment.
  • Experience developing and deploying cloud services using Terraform.
  • Understanding of methods and systems used for auditing usage and access to AWS cloud services.
  • Experience managing security tooling, including Wiz, Auditbeat, Crowdstrike Falcon EDR, AWS System Manager Agent, or similar.
  • BS degree in related field or equivalent experience.
  • MS degree in a related field or equivalent experience is a plus.

Responsibilities

  • Drive infrastructure, network and perimeter security initiatives for hardening and segmentation.
  • Work across multiple engineering functions and organizations to advocate for security practices.
  • Influence, align and implement security features across engineering teams.
  • Demonstrate expertise across various domains to design and develop scalable solutions.
  • Configure and implement cloud security services, including identity and access management, detective controls, infrastructure protection, and data protection.
  • Specify, standardize, configure, and validate access controls across a wide range of cloud services.
  • Integrate security tooling into existing infrastructure.
  • Develop security software configurations and improve tool functionality over time.
  • Implement security controls across Affirm’s data infrastructure, including S3, DynamoDB, RDS, and Snowflake.
  • Decompose large, cross-team projects into individual tasks.
  • Manage scope across teams and drive toward project closure.

Benefits

  • Health care coverage - Affirm covers all premiums for all levels of coverage for you and your dependents.
  • Flexible Spending Wallets - generous stipends for spending on Technology, Food, various Lifestyle needs, and family forming expenses.
  • Time off - competitive vacation and holiday schedules allowing you to take time off to rest and recharge.
  • ESPP - An employee stock purchase plan enabling you to buy shares of Affirm at a discount.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service