Full-Time

Product Security Engineering Manager

Confirmed live in the last 24 hours

ONE Finance

ONE Finance

501-1,000 employees

Personal finance management and fintech platform

Fintech

Compensation Overview

$200,000 - $250,000Annually

+ Stock Options + 401(k) Plan + Flexible Time Off Programs

Senior

Remote in USA

Required Skills
Kubernetes
TypeScript
AWS
Requirements
  • 8+ years of experience in security roles, with a focus on application security and cloud security.
  • 2+ years of team management experience.
  • Deep understanding of cybersecurity principles, threat landscape, and best practices.
  • Deep knowledge of application security principles, secure coding practices, and common vulnerabilities (e.g., OWASP Top Ten), especially as they apply to TypeScript and React Native applications.
  • Knowledge of security best practices for modern application stacks, including Kubernetes.
  • Expertise in AWS services, including IAM, EC2, S3, Lambda, and AWS' ecosystem of security services.
  • Experience with API security, authentication, and authorization mechanisms.
  • Expertise in verifying and measuring common security vulnerabilities, and demonstrated ability to communicate these concepts to technical and non-technical partners.
  • Certifications such as CISSP, GCLD, or GCSA are a plus.
Responsibilities
  • Developing and executing the security capabilities roadmap ensuring its alignment with product initiatives and business goals.
  • Collaborating with cross-functional teams to integrate security practices into the software development lifecycle.
  • Leading and mentoring a team of security engineers in both the United States and India while fostering a collaborative and innovative security culture.
  • Setting performance goals, conducting performance evaluations, and providing ongoing feedback.
  • Assessing and enhancing the security of our applications and APIs, and the underlying infrastructure on which they are deployed.
  • Conducting code reviews, secure configuration reviews, and vulnerability assessments, and overseeing security testing by qualified third parties.
  • Implementing secure coding practices, developing standards, and educating development teams.
  • Driving the product strategy and technology roadmap for security capabilities, including automated testing tools like SAST, SCA, DAST, and CSPM.
  • Designing, implementing, and managing infrastructure and platform security controls, especially for a modern application deployment stack to include Kubernetes and the AWS control plane.
  • Working closely with stakeholders to prioritize security enhancements.
  • Ensuring security solutions enable the product and business operations to comply with industry standards (e.g., ISO 27001, NIST) and regulatory requirements while meeting the product design requirements.

This firm excels in personal finance management through a comprehensive platform that combines fintech solutions with banking and consumer products. Supported by notable investors like Walmart and Ribbit Capital, it leverages cutting-edge technology to simplify financial management for its users. The collaboration with major industry players not only fortifies its market position but also enriches its work culture with diverse expertise and innovation-focused practices, making it a prime workplace for professionals keen on shaping the future of finance.

Company Stage

M&A

Total Funding

$66.7M

Headquarters

New York, New York

Founded

2022

Growth & Insights
Headcount

6 month growth

37%

1 year growth

122%

2 year growth

155%