An application made for this job — a tailored resume and cover letter that speak straight to the posting.
Flywire1 is seeking a Security Engineer II to build hands-on expertise in secure software design and cloud native infrastructure defense within a high velocity fintech setting.
You will work on automating security in CI/CD, hardening cloud infrastructure, and applying AI-driven security reviews while growing toward independent ownership of AppSec and CloudSec tasks.
As a Security Engineer II on the Defensive Platform Builder track you will build hands on experience across secure software design and cloud native infrastructure defence, working under the direction of senior and lead engineers. You will develop an automation first mindset within a high velocity fintech environment, supporting the integration of security controls into our public cloud and GitLab CI/CD pipelines while building towards independent ownership of AppSec and CloudSec work.
Bachelor's degree in Computer Science, Cyber Security, Software Engineering or a related technical discipline, or equivalent practical experience.
indicative range [1 to 3 years] of hands on experience in application or cloud security, software engineering or a closely related technical role.
exposure to manual code review, dependency or container scanning and cloud security concepts, gained through work experience, personal projects or study.
working knowledge of a public cloud platform such as AWS, plus basic familiarity with containerisation (Docker) and CI/CD pipelines.
comfort reading and writing code in at least one modern language such as Python, Java or Node.js.
a working interest in the OWASP Top 10 for LLMs and how AI features introduce new categories of risk.
a general understanding of standards such as PCI-DSS, SOC 2 or DORA, with willingness to build practical depth on the job.
Balances a builder's engineering empathy with a security first mindset, treating software, SRE and product teams as operational allies rather than a source of friction. Communicates clearly under pressure, able to distill cloud configuration drift or a live vulnerability into a plain, high impact risk summary for non-technical stakeholders. Shows creative, novel problem solving across complex, non-standard application and cloud infrastructure challenges within a distributed financial microservices environment. Resilience and analytical clarity in high-pressure scenarios, supporting transparent communication and contributing to risk-based decisions during active security incidents or compressed financial product launch windows. Balances technical risk reduction with business enablement, supporting security infrastructure that serves as a competitive advantage and helps unblock global revenue and enterprise-client acquisition.