Lead Security Engineer

Prelim

United States

Remote

USD 180,000 - 240,000

Full time

14 days+
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Benefits offered by this job

Equity
401K
Parental leave
Health insurance
Unlimited PTO
Remote stipend
Lifestyle stipend
Company retreats

Job summary

Prelim, a fintech building digital account-opening infrastructure for community banks, is hiring the first dedicated security engineer. You will shape the security program and work with engineering, DevOps, auditors, and bank risk teams to defend a regulated platform used for onboarding customers.

This role requires hands-on security expertise, SOC 2 readiness, IAM, and incident response planning. Fully remote within the US.

Qualifications

  • 5+ years in security engineering across apps, cloud, and compliance.

Responsibilities

  • Run secure SDLC activities including dependency scanning, static analysis, and annual pen tests coordination.
  • Collaborate with DevOps on IAM, secrets, networks, logging, and detection.
  • Set security policy, risk assessments, and roadmaps for auditors and stakeholders.
  • Own security questionnaires, vendor risk assessments, and customer reviews per FFIEC guidance.
  • Manage endpoint controls, access reviews, phishing resistance, and offboarding hygiene.
  • Drive SOC 2 Type II end-to-end: control design, evidence collection, auditor management.
  • Lead incident response planning, tabletop exercises, and breach-notification readiness.

Skills

Security engineering
Code reading
Scripting
Cloud security controls
SOC 2
Security reviews
Written communication
Risk judgment

Tools

SIEM

Job description

Role overview

This is a founding security role at a small fintech building digital account-opening infrastructure for community banks and credit unions. As the first dedicated security hire, you will shape the security program for a regulated platform that banks depend on for customer onboarding, partnering with engineering, DevOps, auditors, and bank risk teams.


Responsibilities


  • Run a secure SDLC: dependency scanning, static analysis, targeted review of high-risk changes, and coordination of annual penetration tests, with coaching so engineers catch issues early

  • Partner with DevOps on IAM, secrets management, network architecture, logging, and detection

  • Set security policy, risk assessment, and roadmap, defending proportionality to auditors, bankers, and internal stakeholders

  • Own security questionnaires, vendor risk assessments, and customer security reviews aligned with bank third-party risk practices (often against FFIEC guidance)

  • Manage endpoint controls, access reviews, phishing resistance, and offboarding hygiene

  • Drive SOC 2 Type II end to end: control design, evidence collection, auditor management

  • Lead incident response planning, run tabletop exercises, and command real incidents, with fluency in bank breach-notification expectations


Requirements


  • 5+ years in security engineering with breadth across application security, cloud security, and compliance

  • Hands‑on technical skills: reading code, writing scripts, configuring cloud security controls directly

  • Ownership or major contribution to a SOC 2 audit (or ISO 27001 or equivalent)

  • Experience answering enterprise or financial‑institution security reviews

  • Strong written communication

  • Sound judgment about proportionality: knowing which risks matter at this scale and which controls are theater


Nice to have


  • Fintech or banking‑vendor experience, plus familiarity with FFIEC, GLBA, or bank third‑party risk management

  • Background as a first or early security hire

  • Detection engineering or SIEM experience

  • Familiarity with core banking integrations or handling of PII and KYC data flows


Benefits and work setup


  • Equity, sponsored 401K, parental leave, and fully paid health, vision, and dental insurance

  • Unlimited PTO, remote work stipend, lifestyle stipend, and twice-yearly company retreats

  • Fully remote within the US

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Lead Security Engineer
Lead Security Engineer

Prelim • Northern (KY)

Hybrid
USD 120,000 - 180,000
Equity
401K
Parental leave
+5
Member of Technical Staff, Security Engineer
Member of Technical Staff, Security Engineer

Wintermeyer Ventures • New York (NY)

On-site
USD 150,000 - 250,000
On-site in NYC
Foundational security leadership role
Lead Security Engineer
Lead Security Engineer

Ladders • United States

Remote
USD 125,000 - 150,000
Equity options
Sponsored 401(k) retirement plan
Parental leave policy
+4
Lead Cyber Security Engineer
Lead Cyber Security Engineer

capitalbank • United States

Remote
USD 115,000 - 125,000
Medical insurance
Dental insurance
Vision insurance
+2
Senior DevSecOps Engineer
Senior DevSecOps Engineer

Greenboard • New York (NY)

On-site
USD 165,000 - 240,000
Salary + equity
401(k) match
Medical/Dental/Vision
+3
Staff DevSecOps Engineer
Staff DevSecOps Engineer

Bankrate • United States

On-site
USD 150,000 - 225,000
Health Insurance
Life Insurance
Disability Insurance
+6
Remote Senior Security Engineer for FinTech/Banking
Remote Senior Security Engineer for FinTech/Banking

Prelim • Northern (KY)

Hybrid
USD 120,000 - 180,000
Equity
401K
Parental leave
+5
Founding Security Engineer - Fintech (Remote, Equity)
Founding Security Engineer - Fintech (Remote, Equity)

Prelim • United States

Remote
USD 180,000 - 240,000
Equity
401K
Parental leave
+5
Head of Security
Head of Security

Phaxis • New York (NY)

On-site
USD 180,000 - 320,000
Security Engineer
Security Engineer

xbowcareers • United States

Remote
USD 140,000 - 210,000
Competitive salary
Equity or incentive plan
401k plan