# Security Engineer, Privy

**Company:** [Stripe](https://hotfix.jobs/companies/stripe)
**Location:** New York, NY
**Role:** Security Engineering
**Experience:** 3+ years
**Skills:** Python, Go, Ruby, AWS, GCP, IAM, detection engineering, Incident Response, Vulnerability Management, security automation, Cloud Security
**Posted:** 2026-07-30

> Security Engineer responsible for hands-on investigation, incident response, building security tooling and automation, and driving remediation across application, infrastructure, and cloud security at Privy. Requires strong software engineering skills (Python/Go/Ruby), experience investigating security incidents, and familiarity with security operations workflows.

## Job Description

## Responsibilities
- Own security engineering work end to end: investigate alerts, findings, anomalies, and security requests; identify root causes; drive remediation; and clearly document outcomes.
- Participate in Privy’s security on-call rotation, helping respond to incidents, triage alerts, support vulnerability workflows, complete access reviews, and handle security escalations.
- Build and maintain production-quality tooling that reduces manual work, including alert enrichment, automated triage and routing, remediation workflows, access-review automation, and detection improvements.
- Lead focused investigations into suspected security events or compromises, gathering evidence methodically and coordinating the appropriate response.
- Proactively identify recurring sources of operational toil and engineer durable solutions that improve the team’s speed, consistency, and ability to scale.
- Partner with product and engineering teams to assess security risks, review lower-complexity designs and implementation plans, and make practical security tradeoffs to deliver quickly with quality and soundness.
- Contribute across Privy’s application, infrastructure, cloud, and product-security surface area, developing broad context while building deeper expertise over time.

## Minimum Requirements
- Experience as a security engineer, detection engineer, or similarly hands-on engineer in a technically demanding environment.
- Strong software-engineering skills in Python, Go, Ruby, or a similar language. You can build maintainable tooling and contribute directly to production fixes, not only one-off scripts.
- Experience investigating security signals, incidents, vulnerabilities, suspicious activity, or other ambiguous technical problems through to resolution.
- Familiarity with security operations, incident response, vulnerability management, detection engineering, access reviews, or related operational-security workflows.
- A strong understanding of web, browser, infrastructure, or cloud security, with the ability to apply that understanding across a broad range of problems.
- Good judgment under pressure, a methodical approach to investigation, and comfort working independently with agency despite incomplete information.
- Strong communication and collaboration skills, including the ability to explain technical findings, risks, and recommended actions clearly to clients and internal stakeholders alike.
- A self-directed approach to work: you notice gaps, make progress through ambiguity, and reliably close the loop.

## Preferred Qualifications
- Experience with AWS, GCP, or other cloud-security environments.
- Experience with detection engineering, security automation, incident-response tooling, or remediation pipelines.
- Bug-bounty experience, offensive-security exposure, or a strong attacker-minded approach to investigation.
- Experience with IAM, secrets management, secure production access, or secure CI/CD.
- Background in application security, infrastructure security, cryptography, or privacy engineering.
- Experience with fintech, payments, blockchain, or another diligence-forward financial product domain.
- Experience helping shape security operations, incident-response practices, vulnerability-management workflows, or a bug-bounty program.

## Similar roles

- [Product Security Engineer - QRA](https://hotfix.jobs/jobs/b17d7fd9-a657-4140-b506-13f20bae7281) - Zoox - Foster City, CA - $191k – $271k/yr
- [Security Operations Engineer](https://hotfix.jobs/jobs/85bd8ca0-ceb2-4577-bb0c-e5b2694452d0) - Front - San Francisco, CA - $180k – $260k/yr
- [Platform Engineer - Identity Infrastructure](https://hotfix.jobs/jobs/01847c9b-a97d-493b-8845-4217c020f052) - Palantir - Palo Alto, CA
- [Threat Intelligence Researcher (Cloud)](https://hotfix.jobs/jobs/43eb83d5-1e68-45c1-8f55-ba66f66b7288) - Wiz - Remote - $160k – $220k/yr
- [Product Security Engineer](https://hotfix.jobs/jobs/e38e1888-9bc3-4295-8e52-b36f2b011a18) - Cloudflare - Austin, TX

**Apply:** https://hotfix.jobs/jobs/de3e86d8-0c0f-42fd-bba1-2df9d0eb1b8b
**Canonical:** https://hotfix.jobs/jobs/de3e86d8-0c0f-42fd-bba1-2df9d0eb1b8b