Security Engineer II (Offensive)

Flywire

Bengaluru

On-site

INR 1,200,000 - 2,200,000

Full time

4 days ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Benefits offered by this job

Competitive compensation
ESPP
Digital Disconnect & FlyBetter Days
Global induction program
Wellbeing programs

Job summary

Flywire is hiring a Security Engineer II to strengthen its Active Operational Defender track. You will gain hands-on experience in penetration testing, threat detection, and incident response within a fast-paced fintech environment.

You’ll support live operations, improve manual testing and detection engineering, and grow under guidance from senior engineers. You will assist with security reviews, cloud checks, API testing, and contribute to adversarial testing of AI features.

Qualifications

  • Bachelor's degree in Computer Science, Cyber Security, Software Engineering or related field or equivalent practical experience.
  • Indicative range 1 to 3 years of hands-on experience in penetration testing or security operations.
  • Foundational offensive skills including web app testing, exploitation or vulnerability research.
  • SecOps and forensics familiarity with SIEM, EDR tooling or network analysis, and MITRE ATT&CK.
  • Technical language foundation with Python scripting for testing/automation.
  • AI security awareness focusing on OWASP Top 10 for LLMs and adversarial AI testing.
  • Regulatory awareness of PCI-DSS, SOC 2 or DORA; willingness to deepen on the job. Highly preferred OSCP/OSCE/SANS GXPN; GCIH/GCFA advantageous.

Responsibilities

  • Support penetration testing engagements across financial platforms under senior guidance.
  • Assist with manual security reviews including source/API testing and cloud checks.
  • Contribute to adversarial testing of AI features and detection engineering.
  • Design and tune detection rules within the enterprise SIEM.
  • Support SecOps in reviewing coverage against threats using MITRE ATT&CK.
  • Act as first line responder during active security incidents and assist with post-incident analysis.
  • Collaborate cross-functionally to plan security operations and communicate findings.

Skills

Penetration testing
Threat detection
Incident response
SIEM
Python scripting
Adversarial testing

Education

Bachelor's degree in CS/Cyber Security/SE

Tools

Splunk/ELK
EDR tooling
MITRE ATT&CK

Job description

Are you ready to trade your job for a journey? Become a FlyMate!
Passion, excitement & global collaboration are all core to what it means to be a FlyMate. At Flywire, we’re on a mission to deliver the world’s most important and complex payments. We use our Flywire Advantage - the combination of our next-gen payments platform, proprietary payment network and vertical specific software, to help our clients get paid, and help their customers pay with ease - no matter where they are in the world.

What more do we need to truly be unstoppable? Perhaps, that is you!

Who we are:

Flywire is a global payments enablement and software company, founded more than a decade ago to solve high-stakes, high-value payments. We’ve scaled into new regions and industry verticals and expanded our product offerings to deliver meaningful value to our clients across the world.

Today we support more than 5,300 clients across the global education, healthcare, travel & B2B industries, with diverse payment methods across 240 countries & territories and more than 140 currencies.

With over 1,400+ global FlyMates, representing more than 40 nationalities, and in 15 offices world-wide, we’re looking for FlyMates to join the next stage of our journey as we continue to grow.

Job Description

Job Summary:

As a Security Engineer II on the Active Operational Defender track you will build hands on experience across penetration testing, threat detection and incident response, working under the direction of senior and lead engineers. You will support live operational work within a high velocity fintech environment, developing the manual testing and detection engineering skills needed to take on more independent responsibility over time.

Responsibilities and Tasks:

Support penetration testing engagements across financial platforms and product architectures under senior guidance, building practical exploit research experience.

Assist with manual security reviews including source code audits, API testing and cloud configuration checks, working towards independent delivery of smaller engagements.

Contribute to adversarial testing of AI features where in scope, learning to identify prompt injection and related LLM specific weaknesses.

2. Threat Detection Engineering & SIEM

Help design and tune detection rules and alert workflows within the enterprise SIEM, working from senior engineers' guidance and established detection frameworks.

Support SecOps in reviewing detection coverage against current threats, referencing frameworks such as MITRE ATT&CK.

Act as a first line responder during active security incidents, carrying out evidence collection and initial triage under senior direction.

Support post incident analysis by pulling together logs, timelines and technical findings for senior review.

4. Cross Functional Collaboration & Development

Take part in security operations and engineering planning to build a practical understanding of detection and response capability.

Communicate findings from testing and incidents clearly to immediate team members and stakeholders.

Actively seek mentorship from senior and lead security engineers on offensive tooling, detection engineering and incident response practice.

Qualifications

Education: Bachelor's degree in Computer Science, Cyber Security, Software Engineering or a related technical discipline, or equivalent practical experience.

Core Experience: indicative range [1 to 3 years] of hands on experience in penetration testing, security operations or a closely related technical role.

Foundational Offensive Skills: exposure to manual web application testing, CTF style exploitation or vulnerability research, gained through work experience, personal projects or study.

SecOps & Forensics Familiarity: basic working knowledge of SIEM concepts, EDR tooling or network packet analysis, and an interest in frameworks such as MITRE ATT&CK.

Technical Language Foundation: comfort reading and, ideally, writing scripts in a language such as Python to support testing and automation.

AI Security Awareness: a working interest in the OWASP Top 10 for LLMs and how adversarial testing of AI features differs from traditional application testing.

Regulatory Awareness: a general understanding of standards such as PCI-DSS, SOC 2 or DORA, with willingness to build practical depth on the job.
Highly Preferred Certifications

Hands-On Offensive & Red Team: OSCP, OSCE or SANS GXPN (GIAC Exploit Researcher and Advanced Penetration Tester).

Incident Response & Defence: GCIH (GIAC Certified Incident Handler), GCFA (GIAC Certified Forensic Analyst) or a specialised Blue Team certification.
Skills and Abilities

Combines an aggressive, attacker's mindset used to find vulnerabilities with the analytical discipline required to write clear, actionable detection rules.

Stays calm and analytically clear under intense pressure during active, live breach events or business critical system failures.

Communicates exploit chains and log anomalies clearly, turning technical detail into a plain, high impact risk profile for non-technical leadership.

Resilience and analytical clarity in high-pressure scenarios, supporting transparent communication and contributing to risk-based decisions during active security incidents or compressed financial product launch windows.

Balances technical risk reduction with business enablement, supporting security infrastructure that serves as a competitive advantage and helps unblock global revenue and enterprise-client acquisition.

Modern AI Security: OffSec OSAI (Offensive Security AI Red Teamer).

Additional Information

What We Offer:

  • Competitive compensation
  • Employee Stock Purchase Plan (ESPP)
  • Competitive time off, including Digital Disconnect and FlyBetter Days to volunteer in a cause you believe in.
  • Flying Start- Our immersive Global Induction Program (Meet our Execs & Global Teams)
  • Work with brilliant people globally Learn more about their journeys by checking out #InsideFlywire on social media
  • Wellbeing Programs (Mental Health, Wellness, Yoga/Pilates/HIIT Classes) with Global FlyMates
  • Be a meaningful part in our success - every FlyMate makes an impact
  • Great Talent & Development Programs (Managers Taking Flight – for new or aspiring managers, OneFlywire Career Mobility)

We are excited to get to know you! Throughout our process you can expect to meet with different FlyMates including the Hiring Manager, Peers on the team, the VP of the department, and a skills assessment. Your Talent Acquisition Partner will walk you through the steps and be your “go-to” person for any questions.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Security Engineer (Defensive)
Senior Security Engineer (Defensive)

Flywire • Bengaluru

Hybrid
INR 3,000,000 - 6,000,000
Employee Stock Purchase Plan (ESPP)
Competitive time off
Digital Disconnect and FlyBetter Days
+3
Lead Security Engineer
Lead Security Engineer

Flywire • Bengaluru

On-site
INR 5,000,000 - 7,000,000
Competitive compensation
Employee Stock Purchase Plan (ESPP)
Digital Disconnect & FlyBetter Days
+3
Security Engineer II (Defensive)
Security Engineer II (Defensive)

Flywire • Bengaluru

On-site
INR 1,000,000 - 1,500,000
Competitive compensation
ESPP
Digital Disconnect & FlyBetter Days
+3
Senior Security Engineer I, Application Security
Senior Security Engineer I, Application Security

Flywire • Bengaluru

On-site
INR 3,500,000 - 5,500,000
ESPP
Global induction program
Wellbeing programs
+1
Security Engineer II (Offensive)
Security Engineer II (Offensive)

Flywire1 • Bengaluru

On-site
INR 1,200,000 - 1,800,000
Competitive compensation
ESPP
Digital Disconnect & FlyBetter Days
+3
Senior Security Engineer (Offensive)
Senior Security Engineer (Offensive)

Flywire1 • Bengaluru

On-site
INR 3,500,000 - 7,000,000
Competitive compensation
Employee Stock Purchase Plan (ESPP)
Digital Disconnect / FlyBetter Days
Lead Security Engineer
Lead Security Engineer

Flywire1 • Bengaluru

On-site
INR 3,500,000 - 7,000,000
Competitive compensation
Employee Stock Purchase Plan (ESPP)
Digital Disconnect & FlyBetter Days to
+3
Manager II, Software Engineering
Manager II, Software Engineering

Flywire • Karnataka

On-site
INR 6,000,000 - 9,000,000
ESPP
Competitive compensation
Digital Disconnect time off
+2
Security Engineer II (Defensive)
Security Engineer II (Defensive)

Flywire1 • Bengaluru

On-site
INR 1,200,000 - 1,800,000
Competitive compensation
Employee Stock Purchase Plan (ESPP)
Digital Disconnect and FlyBetter Days
Senior Workday Engineer, HCM
Senior Workday Engineer, HCM

Flywire • Karnataka

On-site
INR 1,500,000 - 3,500,000
Competitive compensation
ESPP
Digital Disconnect
+2