374,061open jobs
9,677companies
50,954added this week
Browse all
Salary
$141k – $277k per year (Estimated)
Location
Remote (United States)
Seniority
Staff · 8+ years exp
Employment
Full-Time
Overview
Company
Impact
Profile match
Beyond Finance is a financial technology company headquartered in Houston, Texas, and founded in 2016. The organization provides debt consolidation services, debt settlement programs, and financial wellness tools designed to help clients manage and reduce unsecured debt. It operates primarily within the United States, utilizing proprietary technology to offer personalized financial solutions and support to individuals struggling with high-interest credit card debt.

At Beyond Finance, we've made it our mission to help everyday Americans escape the endless cycle of crippling debt and step into a brighter financial future. Through compassionate, individualized care, a culture focused on compliance and ethics, supportive user-centric technology, and customized financial solutions, we've helped over 1 million clients on their path to a brighter future.

While we're proud of what we've already accomplished, we're searching for new collaborators to help us get to the next level! If you're looking to join a forward-thinking, rapidly growing organization with helping people as its number one goal, we want to hear from you.

Role Overview

As a Staff Security Engineer, you'll get involved early with Product and Software Engineering teams to embed security into our architecture and processes as they design, build, and ship. You'll also be someone the Security team can pull into any project, at any phase and regardless of domain, to make sure it lands on the right security outcome.

This is a hands-on role, and you don't need to be an expert in all three areas: application security, cloud security, and security automation and tooling. You should have strong, demonstrated depth in one of the three, along with enough working knowledge of the other two to contribute without hand-holding and to be a trusted voice on technical decisions outside the systems you personally own.

What You'll Do

  • Partner with Engineering, DevOps, and Product across projects, providing security input at any phase of design or build, regardless of domain.
  • Guide secure design and code review for web and mobile applications, and help manage core AppSec tooling (SAST, SCA, secret scanning, DAST, ASM, and mobile security tooling).
  • Help triage and remediate application-level vulnerabilities with engineering teams.
  • Contribute to cloud security posture across the AWS environment, including IAM, network segmentation, container security, secrets, and data exposure, using CNAPP and AWS-native tooling.
  • Support cloud and application vulnerability management, and help tune WAF rules as needed.
  • Build automation and internal tooling, primarily in Python, that reduces manual work for the security team.
  • Contribute to security log pipelines, SIEM detections, and endpoint security controls.
  • Help embed security checks, such as scanning and secrets detection, into CI/CD pipelines in partnership with DevOps.
  • Contribute to secure development and infrastructure standards, playbooks, and enablement materials used across engineering.

What We're Looking For

Requirements

  • 8+ years of hands-on security engineering experience.
  • Strong, demonstrated depth in one of the following, with working knowledge of the other two: application security, cloud security, or security automation and tooling.
  • Working knowledge of threat modeling.
  • Operates independently and drives projects without day-to-day oversight.

Nice to Have

  • Deeper expertise across more than one of the following: application security (SAST/DAST/ASM tooling, secure SDLC), cloud security (AWS IAM, networking, container orchestration, CNAPP-driven posture management), or security automation (Python tooling, log pipelines, SIEM detection engineering).
  • Hands-on Infrastructure as Code experience, ideally Terraform.
  • Red teaming or offensive security experience.
  • PCI-regulated or financial services environment experience.
  • Mobile application security experience.
  • AI/ML security exposure: prompt injection, data poisoning, model abuse, and the controls that mitigate them.
  • Identity security across human and non-human identities.
  • Development experience with Ruby on Rails, Python, Go, or similar languages.

The Ideal Candidate

The ideal candidate measures success by reduced risk, not tickets closed. They understand how an attacker would approach a system and use that understanding to favor secure design and simple guardrails over adding more scanners or approval gates. They treat application code, cloud infrastructure, identity, and the pipeline as one connected system rather than separate problems.

This person is proactive. Given an ambiguous problem, they identify the highest-impact piece and start working on it rather than waiting for a fully scoped ticket, and they'd rather deliver a partial fix now and improve it over time than spend months on the perfect design. When a fix is needed in a system they don't own, they make the change themselves, get it reviewed, and ship it rather than filing a ticket and waiting on someone else.

Engineers trust this person's judgment. They catch a bad design, a fragile system, or an overlooked risk before it ships, and they flag potential blockers early enough to design around them instead of working around them later.

Why Join Us

  • High-ownership role with room to influence architecture, tooling, and process beyond your own domain.
  • Work spans application security, cloud security, and security automation rather than being boxed into one lane.
  • Modern engineering environment with strong leadership support for security.
  • Competitive compensation, benefits, and growth opportunities.

The base annual salary range is listed below. This role is eligible for additional incentives, including an annual bonus.

Base Salary Range

$160,000—$195,000 USD

Why Join Us?

While you make a difference for others, we’ll work to make a difference for you, providing an uplifting, collaborative work environment and benefits that reflect your value to us. For eligible full-time employees, we offer:

  • Considerable employer contributions for health, dental, and vision programs
  • Generous PTO, paid holidays, and paid parental leave
  • 401(k) matching program
  • Merit advancement opportunities
  • Career development & training

And finally, our team spirit and culture! Wecultivate an environment of community, connection, and belonging across our entire organization.

Beyond Finance does not accept unsolicited resumes from individual recruiters or third-party recruiting agencies in response to job positions.  No fee will be paid to their parties who submit unsolicited candidates directly to Beyond Finance employees or the Beyond Finance HR team.  No placement fee will be paid to any third party unless such a request has been made by the Beyond HR team.

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
374,061 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
In your city
$215k – $240k per year • In office • Full-Time • 5+ years exp • Seattle
Python
Rust
AI/ML
Flyte
OpenAI
DevOps
ArgoCD
AWS
Azure
Buildkite
CI/CD
Docker
GCP
Helm
Kubernetes
Terraform
Apply
$82k – $215k per year (Estimated) • In office • 10+ years exp • Sydney
Node JS
Python
SQL
TypeScript
JavaScript
Frontend
Angular
Vue.js
Mobile
Clean Architecture
DevOps
AWS
CI/CD
Apply
$96k – $154k per year • Remote • 5+ years exp • Bachelor's Degree
Python
Python
Flask
Databases
DynamoDB
DevOps
AWS
AWS Lambda
CI/CD
OpenTofu
Terraform
Marketing
Salesforce
Apply
$96k – $154k per year • Remote • Full-Time • 5+ years exp • Bachelor's Degree • Omaha
Python
Python
Flask
Databases
DynamoDB
DevOps
AWS
AWS Lambda
CI/CD
OpenTofu
Terraform
Marketing
Salesforce
Apply
$131k – $237k per year • In office • Full-Time • 4+ years exp • Bachelor's Degree • Chantilly • Columbia
Bash
Python
TypeScript
JavaScript
Databases
PostgreSQL
Frontend
Angular
DevOps
Ansible
ArgoCD
AWS
Azure
buildah
CI/CD
Docker
Docker Swarm
FluxCD
GitLab
GitLab CI
Grafana
Helm
Kubernetes
Loki
Prometheus
Terraform
Twelve-Factor App
Podman
Apply
$123k – $272k per year (Estimated) • In office • Full-Time • 7+ years exp • Chicago
DevOps
AWS
CI/CD
Terraform
Apply
$123k – $229k per year (Estimated) • Remote • Full-Time • 5+ years exp
Go
Python
Ruby
Ruby
Ruby on Rails
AI/ML
LLM Guardrails
DevOps
AWS
CI/CD
Cloudflare
SLI/SLO/SLA
Terraform
GitHub
IAM
Cybersecurity
OWASP Top 10
Threat Modeling
Wiz
Zero Trust
Apply
$124k – $229k per year (Estimated) • Remote • Full-Time • 7+ years exp
Assembly
Go
Python
Ruby
JavaScript
Ruby
Ruby on Rails
Frontend
React.js
Mobile
React Native
DevOps
Amazon EKS
AWS
CI/CD
Cloudflare
CloudFormation
Terraform
Kubernetes
Amazon ECS
GitHub
IAM
Cybersecurity
Cloudflare WAF
Invicti
OWASP Top 10
Apply
$74k – $212k per year (Estimated) • Remote/Hybrid • Full-Time • 7+ years exp • Chicago
AI/ML
Human-in-the-Loop
DevOps
AWS
Datadog
Cybersecurity
Datadog Cloud Security
PCI DSS
SOC 2
Apply
$134k – $240k per year (Estimated) • Remote • Full-Time • 8+ years exp • Bachelor's Degree
Ruby
SQL
Ruby
Ruby on Rails
Databases
Amazon Aurora
PostgreSQL
AI/ML
AI Agents
DevOps
AWS
Azure
GCP
Platform Engineering
Analytics
ETL/ELT
Marketing
Salesforce
Apply
See all jobs
This is one of many
374,061 more open roles from verified company boards, updated every day.