8614 office of the ciso & partnershipRemoteFresh role

Staff Security Engineer, Security Partnerships

Stripe
Remote, North America
Apply Now →
📋

OVERVIEW

About the Role

Stripe is a financial infrastructure platform for businesses. Millions of companies—from the world’s largest enterprises to the most ambitious startups—use Stripe to accept payments, grow their revenue, and accelerate new business opportunities. Our mission is to increase the GDP of the internet, and we have a staggering amount of work ahead. That means you have an unprecedented opportunity to put the global economy within everyone’s reach while doing the most important work of your career.

📋

OVERVIEW

About the Role

The Stripe Security team is dedicated to improving the security of Stripe and its users. Our users trust us with some of their most sensitive information, and we make security a first-class consideration in everything we do. Security concerns are ever-evolving, creating an extremely dynamic environment for the Security team.

Our Security Partnerships team enables Stripe to build secure-by-design products.  We leverage strong relationships with both product teams and the rest of the security engineering organization to be successful. Our scope is primarily focused on reviewing early-stage designs, helping develop threat models, scaling impact via automation, curating security patterns, authoring security guidance, training, and championing security initiatives.

We operate with an engineering mindset and are currently building out AI-driven self-service offerings for our customers. While we, sometimes, may execute on tactical projects, one of our core principles is to be strategic in our approach to solving problems.

Some examples of the teams and critical initiatives you might be involved in partnering with:

AI usage/integration both in products as well within Security

Stripe's expansion into the cryptocurrency sector, specifically stablecoins

Better building blocks to accept payments, move funds, etc

Stripe’s core products: Connect, Subscriptions, Checkout, Radar, Issuing, and more

Link, Stripe’s first consumer focused product providing a B2C option at global scale

Security uplift of new acquisitions

Building/Enhancing our automated threat modeling tooling

Identify and help reduce security debt across our product portfolio

What you’ll do

RESPONSIBILITIES

Responsibilities

Work closely with engineering teams to design solutions that are secure by default

Be a security subject matter expert and able to tailor answers to security questions from non-engineers and engineers, alike

Lead threat modeling discussions and help teams strike the right balance between security, user experience and product advancement

Scale security effort by empowering engineering teams with automation, security guidance, tooling, patterns and training

Drive high impact, cross-team security initiatives

Develop a deep understanding of Stripe’s security primitives, frameworks, and invariants

Mentor teammates and others across the organization

Who you are

We’re looking for someone who meets the minimum requirements to be considered for the role. If you meet these requirements, you are encouraged to apply. The preferred qualifications are a bonus, not a requirement.

🎯

REQUIREMENTS

Requirements

8+ years of experience in security

Empathy, strong communication skills and a deep respect for the power of collaboration

A learning mindset, regardless of level or experience

The ability to drive clear next steps when encountering ambiguous spaces without clear lines of ownership

An ability to think creatively and holistically about reducing risk in a complex environment

Breadth of applied knowledge across application and infrastructure security

Demonstrated experience securing applications in a cloud environment

The ability to think like an attacker, develop threat models and help teams reason through different approaches to reducing security risk

A desire to sub-linearly scale security through simple design, abstraction and education

DESIRABLE

Desirable Qualifications

Software engineering experience in a production environment

Mobile security experience (native apps and mobile SDKs)

Experience with multiple Cloud Service Providers (AWS, Azure, GCP)

Experience with containerization and orchestration technologies such as Docker or Kubernetes

Cryptocurrency and related technologies

M&A due diligence and integration experience

Ready to Apply?

Click below to apply directly on the company's website.

Apply for This Position →

Find More Elite Remote Roles

Browse thousands of verified remote opportunities from top companies worldwide.