# Abuse Investigator

**Company:** [Stripe](https://hotfix.jobs/companies/stripe)
**Location:** Seattle, WA, San Francisco, CA, New York, NY, Dublin, Ireland
**Role:** Security Engineering
**Experience:** 3+ years
**Skills:** Python, SQL, Log Analysis, Network Security, Digital Forensics, Incident Response, Fraud Detection, Databricks, Trino, Pyspark, pandas, scikit-learn, Threat Intelligence, Data Analysis
**Posted:** 2026-09-03

> Investigates and leads response to high-risk fraud and product-abuse incidents, analyzes threat patterns, and drives root-cause and prevention improvements. Requires 3+ years of incident response and fraud-oriented data analysis, plus Python, SQL, and security investigation expertise.

## Job Description

## Responsibilities
- Investigate, mitigate, and remediate urgent fraud incidents, including account takeovers and card testing, using detection and signal-enrichment techniques.
- Analyze high-risk accounts to identify fraudulent merchants, card testing, account takeovers, and other fraud vectors; classify threats using Fraud Taxonomy 3.0 (FT3).
- Lead incident root-cause analyses to identify gaps in systems and strategies and drive improvements for emerging fraud risks.
- Streamline incident-response tooling and processes for clarity, accuracy, and efficiency.
- Collaborate with security, fraud, and data science teams to build agentic solutions for responding to abuse incidents at scale.
- Work with legal and policy teams to assess and mitigate risks.
- Lead projects, mentor teammates, and develop quality standards.

## Requirements
- 3+ years of experience conducting incident response in security, product abuse, or trust domains.
- 3+ years of experience analyzing large datasets to solve problems and/or building behavioral fraud-detection models.
- Bachelor's or master's degree in Computer Science or a related field, or equivalent experience.
- Expert knowledge of Python and SQL, with familiarity with other programming languages.
- Experience with log analysis, network security, digital forensics, and incident-response investigations.
- Strong communication, problem-solving, and risk-reduction skills.

## Nice-to-haves
- Adversarial mindset and understanding of threat-actor goals, behaviors, and tactics, techniques, and procedures (TTPs).
- Experience with engineering, data-processing, and analysis tools such as Databricks and Trino.
- Familiarity with big-data processing and data-science frameworks such as PySpark, Pandas, and scikit-learn.
- Experience with tactical threat intelligence and hunting sophisticated threat actors in enterprise environments.
- Experience addressing complex product-integrity challenges through data-driven, user-centric approaches.

## Similar jobs

- [Security Engineer, Threat Intelligence](https://hotfix.jobs/jobs/a9d333c0-2242-416f-a470-d3a19f982046) - Fluidstack - New York, NY - $220k – $280k/yr
- [Security Scientist](https://hotfix.jobs/jobs/36a4a0c9-f833-41fb-bd29-ad40c4d5050f) - Figma - Remote - $140k – $348k/yr
- [Security Engineer](https://hotfix.jobs/jobs/061a2617-4d6a-4cf3-96a0-ad832100d55f) - hud - San Francisco, CA
- [Abuse Research Engineer](https://hotfix.jobs/jobs/2f1effd6-b955-48c7-9d30-3d0aed220264) - Stripe - Remote
- [Security Engineer, Offensive Security](https://hotfix.jobs/jobs/e5c4fc22-2c3a-4334-8eae-e8ab5bcf2a8a) - Anthropic - San Francisco, CA - $300k – $320k/yr

**Apply:** https://hotfix.jobs/jobs/ba670c7e-d48c-495b-8f3e-648393a93ed7
**Canonical:** https://hotfix.jobs/jobs/ba670c7e-d48c-495b-8f3e-648393a93ed7