Skip to content
PlaidPlaid

Fraud Researcher

Leads complex fraud investigations using Plaid's financial network data, reconstructs attacker behaviors, and collaborates with Data Science, ML, and Product teams to enhance detection models and fraud prevention products. Requires 3+ years applied fraud experience and strong analytical skills.

About the job

Responsibilities

Live Fraud Investigation & Reconstruction

  • Lead investigations into complex fraud cases across identities, accounts, devices, and transaction surfaces
  • Provide support to day-to-day fraud operations including SEVs and alert triage
  • Reconstruct attacker sequences and hypothesize actor intent and tooling
  • Distill patterns from noisy signals into clear narratives and actionable insights
  • Bridge investigation outcomes to product and model improvements

Signal & Tool Utilization at Scale

  • Operate across Plaid's fraud tooling — dashboards, alerting systems, network signals, and analytics platforms — to detect and validate anomalies
  • Stress-test existing capabilities, identify systemic gaps, and define new detection primitives
  • Proactively identify gaps in internal fraud tooling and automation, driving enhancements to improve efficiency and scale

Product & Model Partnership

  • Collaborate with Data Science, ML/AI, and Product teams to improve labeling, feature sets, evaluation frameworks, and model decay monitoring
  • Surface data quality limitations and systematically formalize missing features
  • Translate exploratory research into reusable feature pipelines, model inputs, or rule augmentations
  • Participate in product discovery, roadmap planning, and post-launch evaluation to ensure fraud-awareness by design

Deep Applied Fraud Research

  • Conduct longitudinal and structural analysis of how fraud types manifest in Plaid network data — entity linkages, temporal patterns, attack rotations, tool chains
  • Experiment with network/graph analysis, sequence mining, anomaly detection, and custom heuristics where off-the-shelf approaches fail

Ecosystem Monitoring & Knowledge Leadership

  • Continuously survey external fraud trends, adversary techniques, tooling, and emerging threat vectors
  • Proactively perform threat modeling of abuse surfaces and initiate research proposals when patterns emerge

Case Studies & Reporting

  • Produce clear, evidence-backed technical reports and case studies for product, engineering, operations, legal, and executive stakeholders
  • Document investigation workflows, attack classifications, and proof-of-concept detection logic
  • Drive post-incident learning by capturing lessons from fraud incidents and feeding them back into defenses

Qualifications

  • 3+ years of applied fraud experience in a high-velocity environment (fintech, consumer payments, banking, SaaS, marketplace risk, or security research)
  • Investigator mindset: pattern synthesis, hypothesis testing, and skilled triage between signal and noise
  • End-to-end investigation experience reconstructing attacker intent and behavior in multi-step attack sequences across accounts, devices, and identities
  • Post-containment incident response experience with a deep emphasis on post-mortems and root cause analysis
  • Dark and grey-web navigation and investigation experience; ability to assess source credibility and translate external intelligence into actionable insights
  • Strong communication: ability to explain complex, ambiguous behavior to technical and non-technical audiences
  • Tool fluency with data environments and investigative toolchains (BI tools, anomaly detection, case trackers)

Preferred

  • SQL for deep data querying and exploratory analysis
  • Python for scripting, rapid prototyping, and analytical workflows
  • Graph/network analysis experience to detect linked behavioral structures or actor networks
  • Familiarity with rule engines, signal gating, and large-scale monitoring systems
  • Experience applying AI tools and agents to accelerate investigations and research workflows
  • Ability to translate fraud research into actionable signals, rules, or labeled datasets that improve model performance

Nice to Have

  • Fraud domain certifications (e.g., CFE)
  • Prior work on consumer identity, payments, or risk platform development
  • Exposure to production ML model lifecycles and metrics for drift/decay
  • Experience improving internal fraud tooling, automation, or case management systems

Skills

SQL, Python, Graph Analysis, Network Analysis, Anomaly Detection, BI Tools, Machine Learning, Data Science, Alerting Systems, Rule Engines

Vannevar

Vannevar

United States

Application Security Engineer
$160k+/yrRemote5+ YOESecurity Engineering

The Application Security Engineer will embed security practices throughout the SaaS software development lifecycle, including threat modeling, automated testing, vulnerability remediation, and incident response. The role requires 5+ years of application or product security experience and expertise with DevSecOps workflows, web applications, and CI/CD automation.

Wiz

Wiz

Washington, DC

Cyber Threat Intel Analyst
$160k+/yrOn-site3+ YOESecurity Engineering

The Cyber Threat Intel Analyst tracks, investigates, attributes, and reports on advanced threats targeting cloud, AI, and developer environments. The role requires at least three years of security or threat research experience and strong technical analysis and writing skills.

Fireworks AI

Fireworks AI

San Mateo, CA

GRC Analyst
$160k+/yrOn-site3+ YOESecurity Engineering

The GRC Analyst will operate and mature security and compliance programs across major privacy and security frameworks, supporting risk assessments, access reviews, third-party risk, control monitoring, and audits. The role requires 3–5 years of GRC or information security experience and strong cross-functional communication.

Zoox

Zoox

Foster City, CA

Sensing and Perception System Safety Engineer
$170k+/yrHybrid3+ YOESecurity Engineering

Develops safety requirements, analyses, and fail-operational architectures for autonomous-vehicle sensing and perception systems. The role requires 3+ years analyzing safety-critical systems and familiarity with functional-safety standards, sensing hardware, perception, and cross-functional systems engineering.

Greptile

Greptile

San Francisco, CA

Security Engineer
$170k+/yrOn-site3+ YOESecurity Engineering

Own the security posture of a fast-growing developer product across application, infrastructure, cloud, and internal systems. The role requires at least three years of relevant engineering or security experience, strong vulnerability judgment, and hands-on JavaScript or TypeScript expertise.