615,181open jobs
29,638companies
85,681added this week
Browse all
Salary
$140k – $190k per year
Location
Remote (United States)
Seniority
Senior · 5+ years exp
Employment
Full-Time
Overview
Company
Impact
Profile match
OnePay (formerly known as One) is a leading U.S. consumer financial technology platform backed by Walmart and Ribbit Capital. The all-in-one money app offers digital banking, high-yield savings, credit-building products, point-of-sale financing, and crypto trading through partner financial institutions. By integrating deeply with major retail and employer networks, it aims to deliver accessible, low-fee financial services to millions of everyday consumers and frontline workers.

About OnePay

OnePay is the consumer fintech trusted by millions of Americans to make money better.

Our financial system is broken. High fees, low rates, and too few ways to actually grow your money. We’re fixing it. And we’re moving fast.

We’re an all-in-one financial services platform that brings together banking, high-yield savings, credit cards, point-of-sale lending, investing, and crypto in one place. We also partner with employers, HCM providers, gig platforms, and others to deliver embedded financial services to millions of employees and frontline workers.

We’re backed by Walmart, the world’s largest retailer, and Ribbit Capital, one of fintech’s most respected investors, giving us rare scale, distribution, and the opportunity to build something truly category-defining.

But what really sets OnePay apart is how we move. Our customers don’t have time to wait… and neither do we. This place moves fast, and we’re looking for people who are:

  • Ready to run

  • Hungry and driven by urgency

  • Exceptional at what they do, with low ego

  • Comfortable operating in motion

The Role

As a Security and Threat Operations Engineer at OnePay, your work will have a direct impact on protecting our fast-moving fintech environment. You will turn production signals into actionable detection, response, and hardening initiatives, partnering closely with Product Security, Platform Security, and Engineering teams. Your efforts will enable us to proactively identify, monitor, and stop compromised behaviors across OnePay's products and infrastructure, ensuring the continued safety and trust of our business and customers. You will:

  • Build and tune detections, alerts, and monitoring workflows across cloud, application, identity, and edge environments.

  • Review traffic patterns across APIs, authentication flows, and WAF telemetry to identify malicious activity, abuse patterns, and anomalous behavior.

  • Use AI responsibly as a force multiplier for triage, analysis, and workflow automation, while helping define guardrails for AI-enabled systems.

  • Help operate OnePay's vulnerability management program by triaging, prioritizing, and driving remediation for findings from Wiz, vulnerability scanning, and related workflows.

  • Develop Python-based tooling and automation to improve investigations, enrichment, response, and operational scale.

  • Partner with Product Security to translate threat models, security reviews, and product risks into production detections and response playbooks.

  • Investigate security events end to end, including triage, scoping, containment support, and follow-through on remediation.

  • Support vulnerability management and operational security practices in ways that align with PCI and SOC 2 expectations.

  • Participate in proactive threat hunting, detection improvement, and a 24x7 security incident response on-call rotation.

You Bring

  • 5+ years of experience in information security, threat detection, security operations, detection engineering, or incident response, ideally in a cloud-native or product-focused environment.

  • Strong experience investigating suspicious activity in web, API, authentication, and infrastructure telemetry, with the ability to distinguish attacker behavior from normal production noise.

  • Demonstrated ability to review traffic and event patterns for signs of malicious activity, fraud, account abuse, credential attacks, reconnaissance, and exploitation attempts.

  • Strong Python programming skills and the ability to write maintainable code for automation, enrichment, analysis, and security operations tooling.

  • Experience building and tuning detections in a SIEM or detection platform and working with observability and logging systems such as CloudWatch, Datadog, or similar platforms.

  • Experience operating or supporting a vulnerability management program, including triage, prioritization, remediation tracking, and stakeholder coordination.

  • Familiarity with cloud and application security findings from platforms such as Wiz, including CNAPP, runtime, code, and vulnerability scanning use cases.

  • Experience with at least one major cloud provider, preferably AWS.

  • Working knowledge of identity and access systems, modern authentication flows, and the security implications of internet-facing applications and APIs.

  • Strong understanding of threat modeling, risk prioritization, and practical security controls across applications, infrastructure, and cloud environments.

  • Practical experience using AI tools in security workflows, along with sound judgment about AI-specific risks such as prompt injection, data leakage, excessive tool access, and weak auditability.

  • Excellent analytical, communication, and cross-functional collaboration skills, especially in environments where security needs to move quickly with product and engineering teams.

  • Drive and proactivity - everyone here is a builder and executor

Tools We Use

We use Node and TypeScript on the server, leveraging the NestJS framework within a microservice-oriented architecture running on Kubernetes and AWS. On the client side, we build and ship product features for iOS, Android, and web platforms using React Native. We also embrace AI-assisted development, so engineers have their choice of Claude Code or Cursor to fit their workflow. While you don't need experience with our exact stack, familiarity with modern software engineering practices will help you ramp up quickly.

What We Offer

  • Competitive base salary, stock options, and health benefits from Day 1

  • 401(k) plan with company match

  • Remote-friendly (US), flexible time off (FTO), and opportunities for growth

  • A high-growth, mission-driven, inclusive culture where your work has real impact

Standard Interview Process

Our process varies by role. Most candidates go through:

  • AI-assisted initial screen

  • Interview with Talent Partner

  • Technical or Hiring Manager Interview

  • Team Interview

  • Executive Interview

  • Offer!

Equal Employment Opportunity

To build technology and products that are used and loved by people and solve real-world problems, we need to build a team with many different perspectives and experiences. We are an equal opportunity employer. We do not discriminate on the basis of race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, or disability status. We encourage candidates from all backgrounds to apply. Applicants in need of special assistance or accommodation during the interview process or in accessing our website may contact us at [email protected].

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
615,181 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account Continue with Google
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
In your city
$26k – $65k per year (Estimated) • Equity • Remote/Hybrid • 2+ years exp • Mexico City
Python
JavaScript
TypeScript
AI/ML
Claude
Model Context Protocol
AI Agents
LLM
LLM Guardrails
DevOps
Splunk
Terraform
GCP
CI/CD
AWS
Kubernetes
Cloudflare
IAM
Cybersecurity
SonarQube
Semgrep
ISO 27001
PCI DSS
SOC 2
Auth0
Management
Google Workspace
Apply
$131k – $312k per year (Estimated) • Equity • In office • Full-Time • Sydney
Python
AI/ML
Model Context Protocol
AI Agents
Agentic Workflows
DevOps
Terraform
GCP
AWS
Cybersecurity
Zero Trust
Design
Canva
Apply
In office
Python
Game Dev
Unreal Engine
Design
Maya
Apply
Remote/Hybrid
DevOps
Puppet
Windows Server
AWS
Docker
Proxmox VE
Hyper-V
Cybersecurity
FortiGate
ESET
Design
Maya
Marketing
YouTube
Apply
$82k – $197k per year (Estimated) • Remote • 5+ years exp • Bachelor's Degree
Cybersecurity
ISO 27001
SOC 2
Analytics
Microsoft Excel
Apply
$170k – $200k per year • Remote • Full-Time • 10+ years exp • Bachelor's Degree
SQL
Analytics
Tableau
Looker
Apply
$150k – $190k per year • Equity • Remote • Full-Time • 5+ years exp
JavaScript
TypeScript
SQL
Node JS
Node JS
Nest.JS
AI/ML
Cursor
LangGraph
LangChain
Claude
Claude Code
Model Context Protocol
AI Agents
LLM
Human-in-the-Loop
LLM Guardrails
Frontend
React.js
Mobile
React Native
DevOps
Rest API
GCP
AWS
Kubernetes
Apply
$150k – $220k per year • Equity • Remote • Full-Time • 5+ years exp
JavaScript
TypeScript
Node JS
Node JS
Nest.JS
AI/ML
Cursor
Claude Code
Frontend
React.js
Mobile
React Native
DevOps
AWS
Kubernetes
Platform Engineering
QA
Selenium
Cypress
Playwright
Appium
Apply
$130k – $160k per year • Equity • Remote • Full-Time • 3+ years exp
JavaScript
TypeScript
Node JS
Node JS
Nest.JS
AI/ML
Cursor
Claude
Claude Code
Frontend
React.js
Mobile
React Native
DevOps
AWS
Kubernetes
Apply
$160k – $180k per year • Equity • Remote • Full-Time • 3+ years exp
Apply
See all jobs
This is one of many
615,181 more open roles from verified company boards, updated every day.