Security Engineer

Posted 10 Days Ago
Be an Early Applicant
Tel Aviv, ISR
Hybrid
Senior level
Fintech • Payments
Sunbit the buy now, pay later solution built for local service providers and retailers.
The Role
Lead and execute security programs across cloud, application, AI, and IT domains. Define security standards, embed SSDLC into CI/CD, perform threat modeling and assessments, integrate security tooling, automate controls (Terraform, GitHub Actions), respond to incidents, and remediate cloud misconfigurations while partnering with R&D and DevOps.
Summary Generated by Built In
Description

At Sunbit, we're building financial technology that puts people first. By combining intelligent decisioning with a personalized, transparent approach, we help consumers access the payment options that are right for them while empowering merchants to build stronger customer relationships.

Engineering is at the heart of how we make that happen. We build scalable distributed systems, cloud-native services, intelligent data platforms, and AI-powered solutions that enable real-time financial decisions at scale. By leveraging modern engineering practices and integrating AI into both our products and development workflows, we solve complex technical challenges, accelerate innovation, and continuously improve the way we build software. Every service, model, and architectural decision we make directly impacts our products, our customers, and the future of financial technology.

About the Role

We are looking for a Security Engineer to join our Security Engineering team. This is a generalist, "all-rounder" role — you will work across all security domains, while leading and owning a specific security domain based on your expertise.

You will define and drive security programs, design and implement security controls, and make architecture-level decisions across your domain. You will work closely with R&D, DevOps, and engineering teams, embedding security into how we build and operate at scale, and help shape a security-first culture across the organization.

What You'll Work On

  • Define and maintain security standards, policies, and controls across all security domains — including SSDLC processes and secure development standards across R&D
  • Work hands-on alongside R&D, engineering, and IT teams to implement security controls, drive adoption, and ensure execution
  • Lead and contribute to large-scale security projects with real organizational impact
  • Evaluate, integrate, and operate industry-leading security tooling and platforms — including emerging startups with cutting-edge technologies
  • Build automation, tools, internal processes, Terraform modules, GitHub Actions, and AI agents for engineering teams and for your own team
  • Conduct security assessments and threat modeling.
  • Lead containment, investigation, and forensic analysis during security incidents
  • Identify security gaps and misconfigurations across cloud environments, infrastructure, and internal processes — and drive remediation through scalable, long-term solutions
  • Contribute across all security domains — cloud, application, AI security, detection engineering, IT, and more
Requirements
  • 5+ years in security engineering with strong hands-on expertise across both application and cloud/infrastructure security
  • Hands-on experience with SAST, DAST, SCA, WAF, threat modeling, secure code review, and API security
  • Experience defining and driving secure development lifecycle programs (SSDLC), including embedding security gates into CI/CD pipelines and GitOps workflows
  • Experience securing cloud-native environments (AWS preferred, GCP/Azure a plus), including containers, Kubernetes workloads, and microservices
  • Hands-on experience with Terraform, CSPM/CNAPP tooling, and misconfiguration remediation
  • Solid understanding of networking fundamentals (TCP/IP, DNS, TLS, network segmentation) with practical experience implementing zero trust architectures and ZTNA
  • Experience with Okta, Google Workspace, SSO/SAML/OIDC, and least-privilege access models
  • Familiarity with industry-leading security platforms and tooling across MDM, EDR, SIEM, CSPM/CNAPP, ASPM, WAF, DAST/SAST, ZTNA, and identity security platforms
  • Proficiency in scripting and automation — Python, JavaScript, Bash, or similar
  • Broad generalist mindset with the ability to operate across multiple security domains and connect the dots between them

Recruitment Fraud Disclaimer

We’ve been made aware of fraudsters impersonating Sunbit employees during the hiring process. Please note that all official communication will come from an @sunbit.com email address, through our applicant tracking platform @sunbit.comeet-notifications.com or directly via LinkedIn. We will never ask for your age, Social Security number, bank account details, payment of any kind, or other unrelated personal information during the application process. Our hiring process always includes interviews, either by phone, zoom, or in person, before any offer is made. If something feels suspicious, please contact us at HR to confirm. We ask that you contact HR only about potential instances of fraud. HR does not reach our recruiting team directly. Your application directly through the posting is the best way to ensure that your candidacy is reviewed by our team. Due to the volume of applications, we will not respond to nor forward emails about your candidacy that are sent to HR directly, and your email about your application will be deleted from our systems.

Skills Required

  • 5+ years in security engineering with hands-on application and cloud/infrastructure security experience
  • Hands-on experience with SAST, DAST, SCA, WAF, threat modeling, secure code review, and API security
  • Experience defining and driving SSDLC programs and embedding security gates into CI/CD and GitOps workflows
  • Experience securing cloud-native environments (AWS preferred; GCP/Azure a plus), containers, Kubernetes, and microservices
  • Hands-on experience with Terraform, CSPM/CNAPP tooling, and misconfiguration remediation
  • Strong networking fundamentals (TCP/IP, DNS, TLS, segmentation) and practical zero trust/ZTNA implementation experience
  • Experience with Okta, Google Workspace, SSO/SAML/OIDC, and least-privilege access models
  • Familiarity with MDM, EDR, SIEM, CSPM/CNAPP, ASPM, WAF, DAST/SAST, ZTNA, and identity security platforms
  • Proficiency in scripting and automation (Python, JavaScript, Bash, or similar)
  • Generalist mindset able to operate across multiple security domains and connect cross-domain security work

Sunbit Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Sunbit and has not been reviewed or approved by Sunbit.

  • Healthcare Strength Feedback suggests the benefits package includes broad medical, dental, and vision coverage alongside related supports like life insurance and spending accounts. The overall offering is often described as solid by US tech/fintech norms, even when details vary by role.
  • Retirement Support Feedback suggests a 401(k) with company matching is part of the rewards package. This is positioned as a core, consistent element of the overall benefits offering.
  • Leave & Time Off Breadth Feedback suggests time-off benefits can be generous in some roles, including listings of unlimited PTO and paid holidays. At the same time, certain postings indicate a more traditional fixed PTO structure, implying variability by role type.

Sunbit Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Los Angeles, CA
480 Employees
Year Founded: 2016

What We Do

Sunbit is the preferred buy now, pay later technology of service providers and retailers fulfilling the needs of thousands of local communities. Sunbit eases the stress of buying everyday things by offering access to fast, fair and transparent payment options to people across the credit spectrum. Sunbit technology is offered in-store and online through more than 7,300 locations, including 1 in 4 auto dealership service centers, optical practices, dentist offices and specialty health care services. Payment options through Sunbit can be found at these establishments www.sunbit.com/shop-directory Loans are made by Transportation Alliance Bank, Inc., dba TAB Bank, which determines qualifications for and terms of credit.

Why Work With Us

Sunbit technology is used to reduce the stress from daily purchases by helping shoppers realize the full potential of their buying power while providing local businesses with tools to sell easier. With experts in machine learning, retail, and financial services, we’re trailblazing new technology that helps lenders open the door to fair financing.

Gallery

Gallery

Similar Jobs

Remote or Hybrid
Israel
127 Employees

GitLab Logo GitLab

Security Engineer

Cloud • Security • Software • Cybersecurity • Automation
Easy Apply
In-Office or Remote
5 Locations
2500 Employees
139K-196K Annually

Wiz Logo Wiz

Security Engineer

Cloud • Security • Cybersecurity
In-Office
Tel Aviv, ISR
700 Employees

Irregular Logo Irregular

Security Engineer

Artificial Intelligence • Security • Generative AI
In-Office
Tel Aviv, ISR
35 Employees

Similar Companies Hiring

Hanover Park Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
42 Employees
Kepler  Thumbnail
Artificial Intelligence • Fintech • Software
New York, New York
9 Employees
Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account