Security Engineer II

Posted 32 Minutes Ago
Be an Early Applicant
Boston, MA, USA
Hybrid
99K-120K Annually
Mid level
Fintech • Payments • Software
Delivering the most important and complex payments.
The Role
The Security Engineer II will secure software development and cloud infrastructure, automate security controls in GitLab CI/CD, harden AWS and containerized environments, and implement AI security governance. Responsibilities include penetration testing, red teaming, threat detection, incident response, forensic collection, SIEM automation, secure architecture, and collaboration with engineering and SRE teams. The role also provides mentorship and supports compliance with PCI-DSS, SOC, and DORA requirements.
Summary Generated by Built In
Company Description

Are you ready to trade your job for a journey? Become a FlyMate!

Passion, excitement & global collaboration are all core to what it means to be a FlyMate. At Flywire, we’re on a mission to deliver the world’s most important and complex payments. We use our Flywire Advantage - the combination of our next-gen payments platform, proprietary payment network and vertical specific software, to help our clients get paid, and help their customers pay with ease - no matter where they are in the world.

What more do we need to truly be unstoppable? Perhaps, that is you! 

Who we are: 
Flywire is a global payments enablement and software company, founded more than a decade ago to solve high-stakes, high-value payments in higher education. We’ve since scaled into new regions and industry verticals and expanded our product offerings to deliver meaningful value to our clients around the world. 

Today we support more than 5,300 clients across the global education, healthcare, travel & B2B industries, with diverse payment methods across 240 countries & territories and more than 140 currencies.

With over 1,400 global FlyMates, representing more than 40 nationalities, and in 15 offices world-wide, we’re looking for FlyMates to join the next stage of our journey as we continue to grow.
 

Job Description

At Flywire, we are looking for a Security Engineer II to join our global Security Engineering team. In this role, you will serve as a technical authority owning secure software design, cloud-native infrastructure defense, offensive penetration testing, and real-time incident detection across Flywire’s global footprint. You will combine a "breaker" mindset with a builder’s engineering empathy, operating fluidly across the entire product and infrastructure security lifecycle.

This role demands an "automation-first" approach embedded within a high-velocity fintech ecosystem. You will actively partner with software engineering and SRE squads to integrate security controls directly into our public cloud and GitLab CI/CD pipelines using AI workflows. Simultaneously, you will serve as an operational responder for threat detection engineering, red team penetration testing, and live incident containment.

Key Responsibilities:

  • Secure SDLC & CI/CD Automation: Own, design, and drive the end-to-end integration of automated technical security requirements and validation tools into high-velocity engineering pipelines. Build custom internal tooling, wrappers, and automated controls to maximize development velocity without friction.

  • SRE & Cloud Infrastructure Hardening: Partner directly with SRE and DevOps teams to establish secure cloud architecture blueprints, manage Infrastructure-as-Code (IaC) security scans (Terraform), and enforce Zero Trust boundaries in containerized environments (Docker/Kubernetes).

  • AI-Driven Security & Governance: Design and deploy automated security review workflows using LLM APIs (e.g., Claude). Establish controls to protect generative AI features against prompt injection, insecure output handling, model inversion, and data poisoning.

  • Offensive Penetration Testing & Red Teaming: Adopt an attacker's mindset to discover logic flaws, perform exploit research, and emulate zero-day adversarial behavior across financial platforms through manual source code audits, API exploitation, and cloud penetration testing.

  • Incident Response & Threat Detection: Lead technical containment, forensic collection, and rapid threat eradication during active security incidents. Design and deploy high-fidelity detection rules and automated alert workflows within the SIEM environment.

  • Cross-Functional Collaboration & Mentorship: Embed within software development and infrastructure sprint planning from inception to ensure security is built-in from day one. Provide actionable code modifications and mentor junior engineers.

Qualifications

Basic Qualifications:

  • Education: Bachelor’s degree in Computer Science, Cyber Security, Software Engineering, or a related technical discipline (or equivalent experience).

  • Experience: 3+ years of progressive engineering experience moving fluidly between Application Security, Cloud Architecture Defense, and Active Security Operations (SecOps/Incident Response/Penetration Testing).

  • Advanced Exploitation & Defense: Proven track record of independently performing deep manual penetration testing, web application exploitation, and incident containment without relying solely on commercial automated scanners.

  • Cloud & DevOps Stack: Strong practical knowledge of AWS or public cloud topologies, containerization (Docker, Kubernetes), network security, and building/maintaining GitLab CI pipelines.

  • Programming Languages: Foundational proficiency with modern web development frameworks and programming languages including Python, Ruby on Rails, Java, or Node.js.

  • AI & Security Domains: Solid understanding of the OWASP Top 10 for LLMs framework, applied cryptography, cloud network isolation, and federated authentication architectures (OAuth2, SAML, OIDC, Zero Trust IAM).

  • SecOps & Forensics: Working proficiency with modern EDR platforms, SIEM systems, network packet analysis (PCAP), threat intelligence frameworks (MITRE ATT&CK), and forensic collection tools.

  • Compliance: Practical experience aligning technical software and infrastructure controls with standards like PCI-DSS (v4.0), SOC 1, SOC 2, or DORA.

Preferred Qualifications / Certifications:

  • Offensive/Red Team: OSCP, OSCE, or SANS GXPN.

  • Cloud & Architecture: AWS Certified Security - Specialty, CKS (Certified Kubernetes Security Specialist), or CISSP.

  • Incident Response: GCIH, GCFA, or specialized Blue Team certifications.

  • AI Security: OffSec OSAI.

Additional Information

Submit today and get started!

We are excited to get to know you! Throughout our process you can expect to meet different FlyMates including the Hiring Manager and other Flymates. Your Talent Acquisition Partner will walk you through the steps and be your “go-to” person for questions.

Flywire is an equal opportunity employer and follows a policy of administering all employment decisions and personnel actions without regard to race, color, religion, sex, pregnancy, gender identity, national origin, age, ancestry, physical or mental disability, sexual orientation, genetic disposition or carrier status, veteran status, or any other category protected under applicable national, federal, state or local law.

The US base salary range for this full-time position is $99,000 - 120,000 and benefits. Our salary ranges are determined by role, position level, and location. The range displayed on this job posting reflects the minimum and maximum target for new hire salaries for the position across all US locations. Within the range, individual pay is determined by work location and several other factors, including job-related skills, experience, relevant education and training. 

#LI-Hybrid

Skills Required

  • Bachelor’s degree in Computer Science, Cyber Security, Software Engineering, or a related technical discipline, or equivalent experience
  • 3+ years of progressive engineering experience spanning Application Security, Cloud Architecture Defense, and Security Operations, Incident Response, or Penetration Testing
  • Experience independently performing manual penetration testing, web application exploitation, and incident containment
  • Practical knowledge of AWS or public cloud topologies, Docker, Kubernetes, network security, and GitLab CI pipelines
  • Foundational proficiency with Python, Ruby on Rails, Java, or Node.js
  • Understanding of the OWASP Top 10 for LLMs, applied cryptography, cloud network isolation, OAuth2, SAML, OIDC, and Zero Trust IAM
  • Working proficiency with EDR platforms, SIEM systems, PCAP analysis, MITRE ATT&CK, and forensic collection tools
  • Experience aligning technical software and infrastructure controls with PCI-DSS 4.0, SOC 1, SOC 2, or DORA
  • OSCP, OSCE, or SANS GXPN certification
  • AWS Certified Security Specialty, CKS, or CISSP certification
  • GCIH, GCFA, or specialized Blue Team certification
  • OffSec OSAI certification

What the Team is Saying

Emma
Allison MacLeod
Annie
Maicol
Ilona
Chinwe
Lucy
Jarrod

Flywire Compensation & Benefits Highlights

  • Leave & Time Off Breadth Generous PTO, company-wide Digital Disconnect Days, and additional Fly Better Days for volunteering are highlighted, alongside paid holidays. These programs encourage unplugging and support work–life balance.
  • Equity Value & Accessibility Roles commonly include Restricted Stock Units, and an employee stock purchase plan is referenced in corporate filings, positioning employees as owners. Equity is presented as a meaningful part of total rewards beyond base pay.
  • Healthcare Strength Employer-verified benefits include medical, dental, vision, mental-health support, and FSA/HSA options, with notes of strong employer cost-sharing and relatively low U.S. premiums. This combination indicates robust core coverage.

Flywire Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Boston, MA
1,200 Employees
Year Founded: 2011

What We Do

Flywire is a global payments enablement and software company. We combine our proprietary global payments network, next-gen payments platform and vertical-specific software to deliver the most important and complex payments for our clients and their customers.

Why Work With Us

Global collaboration is at the heart of what we do at Flywire. We’re excited to watch our unique culture evolve with each new FlyMate; it's our differences as individuals that make us stronger as a team. With over 30 nationalities across 11 countries, we believe our FlyMates are our greatest asset.

Gallery

Gallery
Gallery
Gallery
Gallery
Gallery
Gallery
Gallery
Gallery
Gallery

Flywire Offices

Hybrid Workspace

Employees engage in a combination of remote and on-site work.

We are a remote first company, with 14 beautiful offices around the globe! There is no requirement to go into the office, however the option is there if that's what you prefer. At Flywire, we want you to chose what's best for your lifestyle.

Typical time on-site: Flexible
HQFlywire US HQ
Japan
Canada
Lithuania
Australia
Brisbane, AU
Chicago, IL
Cluj-Napoca, RO
Flywire UK
New Delhi, IN
Pune, IN
Flywire Singapore
Tel Aviv-Yafo, IL
Flywire Spain
Learn more

Similar Jobs

Flywire Logo Flywire

Security Engineer

Fintech • Payments • Software
Hybrid
Boston, MA, USA
1200 Employees
99K-120K Annually

Flywire Logo Flywire

Product Marketing Manager

Fintech • Payments • Software
Hybrid
Boston, MA, USA
1200 Employees
100K-120K Annually

Flywire Logo Flywire

Product Marketing Manager

Fintech • Payments • Software
Hybrid
Boston, MA, USA
1200 Employees
100K-120K Annually

Flywire Logo Flywire

Account Executive

Fintech • Payments • Software
Hybrid
Boston, MA, USA
1200 Employees
60K-80K Annually

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account