Staff Security Engineer jobs in United States
cer-icon
Apply on Employer Site
company-logo

Forward Financing · 3 hours ago

Staff Security Engineer

Forward Financing is a financial technology company based in Boston, Massachusetts, on a mission to unlock capital for small businesses across America. They are seeking a highly experienced and proactive Security Engineer to join their team, responsible for building and maintaining secure software and ensuring proactive threat identification and response across their platforms.

FinanceFinancial ServicesFinTech
check
Growth Opportunities
check
H1B Sponsor Likelynote

Responsibilities

Design, architect, and implement scalable detection pipelines across various platforms, including cloud environments (AWS), endpoints, identity, DLP, and SaaS
Mature our Security Information and Event Management (SIEM) and centralized logging capabilities, focusing on enrichment, correlation, and high-signal detections
Develop detection-as-code practices and CI/CD pipelines for deploying and tuning detection logic
Leverage infrastructure-as-code (IAC) technologies to establish automated security configurations for platform hardening and cloud-native control enforcement
Collaborate closely with Information Security and peer partners like Engineering and IT to evaluate, advise on, and deploy new security technologies
Partner with AppSec, offensive security, and Cloud Engineering teams to identify detection opportunities and test control efficacy
Act as the Incident Commander of the Security Incident Response Team (SIRT), overseeing triage, containment, and forensics during investigations
Contribute to the continuous improvement of our vulnerability management program by triaging issues and identifying gaps in pre-production versus post-production detection
Ensure alignment to industry frameworks such as CIS Controls, ISO 27XXX, and NIST, embedding defensible security practices across the stack
Implement necessary security changes to support our Identity Governance Access (IAG) program and Role-Based Access Control (RBAC) models

Qualification

Detection pipelinesSecurity InformationEvent Management (SIEM)Cloud environments (AWS)Detection-as-codeInfrastructure-as-code (IAC)Incident Response Team (SIRT)Adversary TTPs (MITRE ATT&CK)Modern programming languagesCommunication skillsTeam collaboration

Required

Expertise in architecting and deploying detection pipelines across platforms like AWS, GCP, or Azure using tools such as Chronicle, Splunk, Panther, or open-source equivalents
Typically has 7 or more years of experience in detection engineering, security operations, or a similar role
Deep familiarity with adversary TTPs (MITRE ATT&CK), anomaly-based detection techniques, and event correlation strategies
A strong red + blue team mindset; you think like an attacker and build defenses that go beyond surface-level detection
Experience operationalizing detection-as-code pipelines (e.g., CI/CD for detection logic)
Expertise in cloud control plane monitoring, identity threat detection, and infrastructure log analysis
Ability to communicate detection priorities and incident insights to technical and non-technical stakeholders
History of working on a Security Incident Response Team (SIRT) investigating events, triaging potential incidents, containing environments, and conducting forensics analysis
Typically has a Bachelor's Degree in computer science, Mathematics, or equivalent technical degree; or equivalent industry experience
Experience with modern programming languages such as Ruby, Java, Python, or Go

Preferred

Expertise in architecting and deploying detection pipelines across platforms like AWS, GCP, or Azure using tools such as Chronicle, Splunk, Panther, or open-source equivalents
Significant experience in evaluating, running PoCs, and deploying new security tooling solutions
Experience managing multiple AWS environments (VPCs, firewalls, IAM, GuardDuty, CloudTrail, WAF)
Experience leading teams securing containerized services deployed in production on orchestration platforms such as Kubernetes
Demonstrated understanding of modern microservices architectures, design patterns, resiliency techniques, and optimizations
Prior Devops or Software engineer experience is a plus

Benefits

Medical
Dental
Vision
Commuter benefits
A flexible time-off policy
Paid parental leave
401k match for US employees
Wellness reimbursement
Volunteering days
Annual professional development budget
Charitable donation match

Company

Forward Financing

company-logo
Forward Financing is a fintech company that provides fast, flexible working capital to small businesses nationwide.

H1B Sponsorship

Forward Financing has a track record of offering H1B sponsorships. Please note that this does not guarantee sponsorship for this specific role. Below presents additional info for your reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2025 (1)
2023 (1)
2020 (1)

Funding

Current Stage
Late Stage
Total Funding
$540M
2024-09-19Debt Financing· $200M
2021-06-07Debt Financing· $250M
2019-04-08Debt Financing· $90M

Leadership Team

leader-logo
Jason Mullins
President & Chief Executive Officer
linkedin
leader-logo
Justin Bakes
Co-founder & Executive Chairman
linkedin
Company data provided by crunchbase