Confirmed on the employer's own hiring board on Sep 27, 2026. First seen by Alion on Jul 21, 2026. Candescent scores B on the Alion truth index.
Candescent is a forward-thinking technology company transforming how financial institutions deliver Intelligent Banking experiences. We unite digital banking, account opening, and branch solutions that power and connect digital banking, account opening, and branch solutions-creating seamless engagement across digital, remote, and in-person channels.
Our Experience-Led, Intelligence-Driven approach combines human-centered design with data, automation, and cloud-based innovation. Built on an API-first architecture, our extensible ecosystem enables institutions to adapt quickly, integrate easily, and unlock new opportunities for growth-turning every customer interaction into a moment of clarity, confidence, and connection.
Candescent is seeking a motivated and technically skilledInformation Security Engineer IIto help strengthen and scale our application and edge security capabilities, with a focus onCloudflare-based controls.
This role is responsible for designing, implementing, and maintaining security solutions that protect customer-facing applications and distributed systems. The ideal candidate will bring hands-on experience inweb application security, DNS security, and firewall protection, along with a strong understanding of modern threat vectors includingcredential stuffing and distributed attacks.
You will partner closely with engineering, infrastructure, and incident response teams to proactively identify vulnerabilities, respond to threats, and enhance the organization’s overall security posture in a cloud-first, FinTech environment.
Key Responsibilities and Deliverables:
- Design, implement, and manageCloudflare security controls, including WAF, bot mitigation, rate limiting, and DNS protection
- Strengthenweb application securityby identifying and mitigating common threats (e.g., OWASP Top 10 vulnerabilities)
- Configure and maintainfirewalls and network protection mechanismsto safeguard external and internal systems
- Lead and supportvulnerability remediation efforts, working cross-functionally to prioritize and resolve identified risks
- Protect distributed, cloud-based platforms through strongdistributed systems securitypractices
- Develop detection and mitigation strategies forcredential stuffing prevention and bot-based attacks
- Supportincident response activities, including triage, investigation, containment, and post-incident reviews
- Monitor and analyze security events using Cloudflare and other telemetry sources to identify threats and anomalies
- Maintain and optimizeDNS (Domain Name System) security configurations, including traffic routing and protection against DNS-based attacks
- Collaborate with engineering teams to embed secure design principles into application development and deployment lifecycles
Qualifications and Experience:
- Bachelor’s degree in Computer Science, Cybersecurity, or a related field (or equivalent experience)
- 3-5 years of experience ininformation security engineering or application security roles
- Hands-on experience withCloudflare (WAF, Bot Management, DNS, CDN security)or similar edge security platforms
- Strong knowledge of:
- Web application security
- Firewalls and network protection
- Vulnerability management and remediation
- Distributed systems and cloud security architectures
- Experience managing or responding toincident response scenarios
- Familiarity withcredential stuffing detection/prevention techniques and bot management tools
- Working knowledge ofDNS protocols and security considerations
- Experience in cloud environments (AWS, Azure, or GCP preferred)
- Strong analytical, problem-solving, and communication skills
Preferred Distinctions:
- Experience inFinTech, SaaS, or regulated financial environments
- Relevant certifications (e.g.,CISSP, CEH, Security+, GIAC, Cloudflare certifications)
- Experience implementingzero trust architectures
- Familiarity withDevSecOps practices and CI/CD security integrations
Exposure to fraud prevention or digital banking security use cases
Statement to Third Party Agencies
To ALL recruitment agencies: Candescent only accepts resumes from agencies on the preferred supplier list. Please do not forward resumes to our applicant tracking system, Candescent employees, or any Candescent facility. Candescent is not responsible for any fees or charges associated with unsolicited resumes.

